Show filters
192 Total Results
Displaying 101-110 of 192
Sort by:
Attacker Value
Unknown
CVE-2020-9274
Disclosure Date: February 26, 2020 (last updated February 21, 2025)
An issue was discovered in Pure-FTPd 1.0.49. An uninitialized pointer vulnerability has been detected in the diraliases linked list. When the *lookup_alias(const char alias) or print_aliases(void) function is called, they fail to correctly detect the end of the linked list and try to access a non-existent list member. This is related to init_aliases in diraliases.c.
0
Attacker Value
Unknown
CVE-2020-8813
Disclosure Date: February 22, 2020 (last updated February 21, 2025)
graph_realtime.php in Cacti 1.2.8 allows remote attackers to execute arbitrary OS commands via shell metacharacters in a cookie, if a guest user has the graph real-time privilege.
0
Attacker Value
Unknown
CVE-2020-9283
Disclosure Date: February 20, 2020 (last updated February 21, 2025)
golang.org/x/crypto before v0.0.0-20200220183623-bac4c82f6975 for Go allows a panic during signature verification in the golang.org/x/crypto/ssh package. A client can attack an SSH server that accepts public keys. Also, a server can attack any SSH client.
0
Attacker Value
Unknown
CVE-2020-6396
Disclosure Date: February 11, 2020 (last updated November 08, 2023)
Inappropriate implementation in Skia in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.
0
Attacker Value
Unknown
CVE-2020-6408
Disclosure Date: February 11, 2020 (last updated November 08, 2023)
Insufficient policy enforcement in CORS in Google Chrome prior to 80.0.3987.87 allowed a local attacker to obtain potentially sensitive information via a crafted HTML page.
0
Attacker Value
Unknown
CVE-2020-6391
Disclosure Date: February 11, 2020 (last updated February 21, 2025)
Insufficient validation of untrusted input in Blink in Google Chrome prior to 80.0.3987.87 allowed a local attacker to bypass content security policy via a crafted HTML page.
0
Attacker Value
Unknown
CVE-2020-6393
Disclosure Date: February 11, 2020 (last updated February 21, 2025)
Insufficient policy enforcement in Blink in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to leak cross-origin data via a crafted HTML page.
0
Attacker Value
Unknown
CVE-2020-6382
Disclosure Date: February 11, 2020 (last updated February 21, 2025)
Type confusion in JavaScript in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
0
Attacker Value
Unknown
CVE-2020-6394
Disclosure Date: February 11, 2020 (last updated November 08, 2023)
Insufficient policy enforcement in Blink in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to bypass content security policy via a crafted HTML page.
0
Attacker Value
Unknown
CVE-2020-6406
Disclosure Date: February 11, 2020 (last updated February 21, 2025)
Use after free in audio in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
0