Show filters
200 Total Results
Displaying 71-80 of 200
Sort by:
Attacker Value
Unknown
CVE-2020-25175
Disclosure Date: December 14, 2020 (last updated February 22, 2025)
GE Healthcare Imaging and Ultrasound Products may allow specific credentials to be exposed during transport over the network.
0
Attacker Value
Unknown
CVE-2020-25179
Disclosure Date: December 14, 2020 (last updated February 22, 2025)
GE Healthcare Imaging and Ultrasound Products may allow specific credentials to be exposed during transport over the network.
0
Attacker Value
Unknown
CVE-2020-24376
Disclosure Date: September 16, 2020 (last updated February 22, 2025)
A DNS rebinding vulnerability in the UPnP IGD implementations in Freebox v5 before 1.5.29 and Freebox Server before 4.2.3.
0
Attacker Value
Unknown
CVE-2020-24373
Disclosure Date: September 16, 2020 (last updated February 22, 2025)
A CSRF vulnerability in the UPnP MediaServer implementation in Freebox Server before 4.2.3.
0
Attacker Value
Unknown
CVE-2020-24377
Disclosure Date: September 16, 2020 (last updated February 22, 2025)
A DNS rebinding vulnerability in the Freebox OS web interface in Freebox Server before 4.2.3.
0
Attacker Value
Unknown
CVE-2020-16117
Disclosure Date: July 29, 2020 (last updated February 21, 2025)
In GNOME evolution-data-server before 3.35.91, a malicious server can crash the mail client with a NULL pointer dereference by sending an invalid (e.g., minimal) CAPABILITY line on a connection attempt. This is related to imapx_free_capability and imapx_connect_to_server.
0
Attacker Value
Unknown
CVE-2020-14928
Disclosure Date: July 17, 2020 (last updated February 21, 2025)
evolution-data-server (eds) through 3.36.3 has a STARTTLS buffering issue that affects SMTP and POP3. When a server sends a "begin TLS" response, eds reads additional data and evaluates it in a TLS context, aka "response injection."
0
Attacker Value
Unknown
CVE-2020-11879
Disclosure Date: April 17, 2020 (last updated February 21, 2025)
An issue was discovered in GNOME Evolution before 3.35.91. By using the proprietary (non-RFC6068) "mailto?attach=..." parameter, a website (or other source of mailto links) can make Evolution attach local files or directories to a composed email message without showing a warning to the user, as demonstrated by an attach=. value.
0
Attacker Value
Unknown
CVE-2013-4166
Disclosure Date: February 06, 2020 (last updated February 21, 2025)
The gpg_ctx_add_recipient function in camel/camel-gpg-context.c in GNOME Evolution 3.8.4 and earlier and Evolution Data Server 3.9.5 and earlier does not properly select the GPG key to use for email encryption, which might cause the email to be encrypted with the wrong key and allow remote attackers to obtain sensitive information.
0
Attacker Value
Unknown
CVE-2011-3355
Disclosure Date: November 25, 2019 (last updated November 27, 2024)
evolution-data-server3 3.0.3 through 3.2.1 used insecure (non-SSL) connection when attempting to store sent email messages into the Sent folder, when the Sent folder was located on the remote server. An attacker could use this flaw to obtain login credentials of the victim.
0