Export limit exceeded: 88023 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.

Search

Search Results (88023 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2020-17368 4 Debian, Fedoraproject, Firejail Project and 1 more 4 Debian Linux, Fedora, Firejail and 1 more 2024-11-21 9.8 Critical
Firejail through 0.9.62 mishandles shell metacharacters during use of the --output or --output-stderr option, which may lead to command injection.
CVE-2020-17365 1 Pango 1 Hotspot Shield 2024-11-21 7.8 High
Improper directory permissions in the Hotspot Shield VPN client software for Windows 10.3.0 and earlier may allow an authorized user to potentially enable escalation of privilege via local access. The vulnerability allows a local user to corrupt system files: a local user can create a specially crafted symbolic link to a critical file on the system and overwrite it with privileges of the application.
CVE-2020-17364 1 Usvn 1 User-friendly Svn 2024-11-21 6.1 Medium
USVN (aka User-friendly SVN) before 1.0.9 allows XSS via SVN logs.
CVE-2020-17363 1 Usvn 1 Usvn 2024-11-21 9.9 Critical
USVN (aka User-friendly SVN) before 1.0.9 allows remote code execution via shell metacharacters in the number_start or number_end parameter to LastHundredRequest (aka lasthundredrequestAction) in the Timeline module. NOTE: this may overlap CVE-2020-25069.
CVE-2020-17362 1 Themeinprogress 1 Nova Lite 2024-11-21 6.1 Medium
search.php in the Nova Lite theme before 1.3.9 for WordPress allows Reflected XSS.
CVE-2020-17361 1 Readytalk 1 Avian 2024-11-21 5.5 Medium
An issue was discovered in ReadyTalk Avian 1.2.0. The vm::arrayCopy method defined in classpath-common.h returns silently when a negative length is provided (instead of throwing an exception). This could result in data being lost during the copy, with varying consequences depending on the subsequent use of the destination buffer. NOTE: This vulnerability only affects products that are no longer supported by the maintainer
CVE-2020-17360 1 Readytalk 1 Avian 2024-11-21 7.8 High
An issue was discovered in ReadyTalk Avian 1.2.0. The vm::arrayCopy method defined in classpath-common.h contains multiple boundary checks that are performed to prevent out-of-bounds memory read/write. However, two of these boundary checks contain an integer overflow that leads to a bypass of these checks, and out-of-bounds read/write. NOTE: This vulnerability only affects products that are no longer supported by the maintainer
CVE-2020-17352 1 Sophos 1 Xg Firewall Firmware 2024-11-21 8.8 High
Two OS command injection vulnerabilities in the User Portal of Sophos XG Firewall through 2020-08-05 potentially allow an authenticated attacker to remotely execute arbitrary code.
CVE-2020-17083 1 Microsoft 1 Exchange Server 2024-11-21 5.5 Medium
Microsoft Exchange Server Remote Code Execution Vulnerability
CVE-2020-17058 1 Microsoft 5 Edge, Internet Explorer, Windows 10 and 2 more 2024-11-21 7.5 High
Microsoft Browser Memory Corruption Vulnerability
CVE-2020-17054 1 Microsoft 5 Chakracore, Edge, Windows 10 and 2 more 2024-11-21 4.2 Medium
Chakra Scripting Engine Memory Corruption Vulnerability
CVE-2020-17053 1 Microsoft 3 Internet Explorer, Windows 10, Windows Server 2019 2024-11-21 7.5 High
Internet Explorer Memory Corruption Vulnerability
CVE-2020-17052 1 Microsoft 10 Edge, Internet Explorer, Windows 10 and 7 more 2024-11-21 7.5 High
Scripting Engine Memory Corruption Vulnerability
CVE-2020-17048 1 Microsoft 5 Chakracore, Edge, Windows 10 and 2 more 2024-11-21 4.2 Medium
Chakra Scripting Engine Memory Corruption Vulnerability
CVE-2020-17021 1 Microsoft 1 Dynamics 365 2024-11-21 5.4 Medium
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
CVE-2020-17018 1 Microsoft 1 Dynamics 365 2024-11-21 5.4 Medium
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
CVE-2020-17010 1 Microsoft 9 Windows 10, Windows 10 1809, Windows 10 1909 and 6 more 2024-11-21 7.8 High
Win32k Elevation of Privilege Vulnerability
CVE-2020-17006 1 Microsoft 1 Dynamics Crm 2015 2024-11-21 5.4 Medium
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
CVE-2020-17005 1 Microsoft 1 Dynamics 365 2024-11-21 5.4 Medium
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
CVE-2020-16990 1 Microsoft 1 Azure Sphere 2024-11-21 6.2 Medium
Azure Sphere Information Disclosure Vulnerability