Show filters
508 Total Results
Displaying 261-270 of 508
Sort by:
Attacker Value
Unknown
CVE-2021-26528
Disclosure Date: February 08, 2021 (last updated February 22, 2025)
The mg_http_serve_file function in Cesanta Mongoose HTTP server 7.0 is vulnerable to remote OOB write attack via connection request after exhausting memory pool.
0
Attacker Value
Unknown
CVE-2021-21304
Disclosure Date: February 08, 2021 (last updated February 22, 2025)
Dynamoose is an open-source modeling tool for Amazon's DynamoDB. In Dynamoose from version 2.0.0 and before version 2.7.0 there was a prototype pollution vulnerability in the internal utility method "lib/utils/object/set.ts". This method is used throughout the codebase for various operations throughout Dynamoose. We have not seen any evidence of this vulnerability being exploited. There is no evidence this vulnerability impacts versions 1.x.x since the vulnerable method was added as part of the v2 rewrite. This vulnerability also impacts v2.x.x beta/alpha versions. Version 2.7.0 includes a patch for this vulnerability.
0
Attacker Value
Unknown
CVE-2021-3285
Disclosure Date: January 26, 2021 (last updated February 22, 2025)
jxbrowser in TI Code Composer Studio IDE 8.x through 10.x before 10.1.1 does not verify X.509 certificates for HTTPS.
0
Attacker Value
Unknown
CVE-2020-12525
Disclosure Date: January 14, 2021 (last updated February 22, 2025)
M&M Software fdtCONTAINER Component in versions below 3.5.20304.x and between 3.6 and 3.6.20304.x is vulnerable to deserialization of untrusted data in its project storage.
0
Attacker Value
Unknown
CVE-2020-35184
Disclosure Date: December 17, 2020 (last updated February 22, 2025)
The official composer docker images before 1.8.3 contain a blank password for a root user. System using the composer docker container deployed by affected versions of the docker image may allow a remote attacker to achieve root access with a blank password.
0
Attacker Value
Unknown
CVE-2020-12313
Disclosure Date: November 13, 2020 (last updated November 28, 2024)
Insufficient control flow management in some Intel(R) PROSet/Wireless WiFi products before version 21.110 may allow an unauthenticated user to potentially enable escalation of privilege via adjacent access.
0
Attacker Value
Unknown
CVE-2020-12319
Disclosure Date: November 12, 2020 (last updated February 22, 2025)
Insufficient control flow management in some Intel(R) PROSet/Wireless WiFi products before version 21.110 may allow an unauthenticated user to potentially enable denial of service via adjacent access.
0
Attacker Value
Unknown
CVE-2020-12314
Disclosure Date: November 12, 2020 (last updated February 22, 2025)
Improper input validation in some Intel(R) PROSet/Wireless WiFi products before version 21.110 may allow an unauthenticated user to potentially enable denial of service via adjacent access.
0
Attacker Value
Unknown
CVE-2020-12317
Disclosure Date: November 12, 2020 (last updated November 28, 2024)
Improper buffer restriction in some Intel(R) PROSet/Wireless WiFi products before version 21.110 may allow an unauthenticated user to potentially enable denial of service via adjacent access.
0
Attacker Value
Unknown
CVE-2020-12318
Disclosure Date: November 12, 2020 (last updated November 28, 2024)
Protection mechanism failure in some Intel(R) PROSet/Wireless WiFi products before version 21.110 may allow an authenticated user to potentially enable escalation of privilege via local access.
0