Total
32233 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2020-24003 | 1 Microsoft | 1 Skype | 2024-11-21 | 2.1 LOW | 3.3 LOW |
Microsoft Skype through 8.59.0.77 on macOS has the disable-library-validation entitlement, which allows a local process (with the user's privileges) to obtain unprompted microphone and camera access by loading a crafted library and thereby inheriting Skype Client's microphone and camera access. | |||||
CVE-2020-23864 | 1 Iobit | 1 Malware Fighter | 2024-11-21 | 6.9 MEDIUM | 7.8 HIGH |
An issue exits in IOBit Malware Fighter version 8.0.2.547. Local escalation of privileges is possible by dropping a malicious DLL file into the WindowsApps folder. | |||||
CVE-2020-23811 | 1 Xuxueli | 1 Xxl-job | 2024-11-21 | 5.0 MEDIUM | 7.5 HIGH |
xxl-job 2.2.0 allows Information Disclosure of username, model, and password via job/admin/controller/UserController.java. | |||||
CVE-2020-23768 | 1 Phpyun | 1 Phpyun | 2024-11-21 | 5.0 MEDIUM | 7.5 HIGH |
An information disclosure vulnerability was discovered in alipay_function.php in the log file of Alibaba payment interface on PHPPYUN prior to version 5.0.1. If exploited, this vulnerability will allow attackers to obtain users' personally identifiable information including e-mail address and telephone numbers. | |||||
CVE-2020-23741 | 1 Amoisoft | 1 Anyview | 2024-11-21 | 4.9 MEDIUM | 5.5 MEDIUM |
In AnyView (network police) network monitoring software 4.6.0.1, there is a local denial of service vulnerability in AnyView, attackers can use a constructed program to cause a computer crash (BSOD). | |||||
CVE-2020-23738 | 1 Advancedsystemcare | 1 Advanced Systemcare | 2024-11-21 | 4.9 MEDIUM | 5.5 MEDIUM |
There is a local denial of service vulnerability in Advanced SystemCare 13 PRO 13.5.0.174. Attackers can use a constructed program to cause a computer crash (BSOD) | |||||
CVE-2020-23736 | 1 Dadajiasu | 1 Dada Accelerator | 2024-11-21 | 4.9 MEDIUM | 5.5 MEDIUM |
There is a local denial of service vulnerability in DaDa accelerator 5.6.19.816,, attackers can use constructed programs to cause computer crashes (BSOD). | |||||
CVE-2020-23727 | 1 Antiy | 1 Antiy Zhijia Terminal Defense System | 2024-11-21 | 4.9 MEDIUM | 5.5 MEDIUM |
There is a local denial of service vulnerability in the Antiy Zhijia Terminal Defense System 5.0.2.10121559 and an attacker can cause a computer crash (BSOD). | |||||
CVE-2020-23726 | 1 Wisecleaner | 1 Wise Care 365 | 2024-11-21 | 4.9 MEDIUM | 5.5 MEDIUM |
There is a local denial of service vulnerability in Wise Care 365 5.5.4, attackers can cause computer crash (BSOD). | |||||
CVE-2020-23691 | 1 Yfcmf | 1 Yfcmf | 2024-11-21 | 7.5 HIGH | 9.8 CRITICAL |
YFCMF v2.3.1 has a Remote Command Execution (RCE) vulnerability in the index.php. | |||||
CVE-2020-23680 | 1 Text2pdf Project | 1 Text2pdf | 2024-11-21 | 6.8 MEDIUM | 7.8 HIGH |
An issue was discovered in function StartPage in text2pdf.c in pdfcorner text2pdf 1.1, allows attackers to cause denial of service or possibly other undisclosed impacts. | |||||
CVE-2020-23580 | 1 Pbootcms | 1 Pbootcms | 2024-11-21 | 7.5 HIGH | 9.8 CRITICAL |
Remote Code Execution vulnerability in PbootCMS 2.0.8 in the message board. | |||||
CVE-2020-23565 | 1 Irfanview | 1 Irfanview | 2024-11-21 | 6.8 MEDIUM | 7.8 HIGH |
Irfanview v4.53 allows attackers to execute arbitrary code via a crafted JPEG 2000 file. Related to a "Data from Faulting Address controls Branch Selection starting at JPEG2000!ShowPlugInSaveOptions_W+0x0000000000032850". | |||||
CVE-2020-23562 | 1 Irfanview | 1 Irfanview | 2024-11-21 | N/A | 5.5 MEDIUM |
IrfanView 4.54 allows a user-mode write access violation starting at FORMATS!ShowPlugInSaveOptions_W+0x000000000000aefe. | |||||
CVE-2020-23561 | 1 Irfanview | 1 Irfanview | 2024-11-21 | N/A | 5.5 MEDIUM |
IrfanView 4.54 allows a user-mode write access violation starting at FORMATS!ShowPlugInSaveOptions_W+0x0000000000005722. | |||||
CVE-2020-23549 | 1 Irfanview | 1 Irfanview | 2024-11-21 | 6.8 MEDIUM | 7.8 HIGH |
IrfanView 4.54 allows attackers to cause a denial of service or possibly other unspecified impacts via a crafted .cr2 file, related to a "Data from Faulting Address controls Branch Selection starting at FORMATS!GetPlugInInfo+0x00000000000047f6". | |||||
CVE-2020-23546 | 1 Irfanview | 1 Irfanview | 2024-11-21 | 6.8 MEDIUM | 7.8 HIGH |
IrfanView 4.54 allows attackers to cause a denial of service or possibly other unspecified impacts via a crafted XBM file, related to a "Data from Faulting Address is used as one or more arguments in a subsequent Function Call starting at FORMATS!ReadMosaic+0x0000000000000981. | |||||
CVE-2020-23545 | 1 Irfanview | 1 Irfanview | 2024-11-21 | 6.8 MEDIUM | 7.8 HIGH |
IrfanView 4.54 allows a user-mode write access violation starting at FORMATS!ReadXPM_W+0x0000000000000531. | |||||
CVE-2020-23490 | 1 Wwbn | 1 Avideo | 2024-11-21 | 5.0 MEDIUM | 7.5 HIGH |
There was a local file disclosure vulnerability in AVideo < 8.9 via the proxy streaming. An unauthenticated attacker can exploit this issue to read an arbitrary file on the server. Which could leak database credentials or other sensitive information such as /etc/passwd file. | |||||
CVE-2020-23469 | 1 Gmate Project | 1 Gmate | 2024-11-21 | 5.0 MEDIUM | 7.5 HIGH |
gmate v0.12+bionic contains a regular expression denial of service (ReDoS) vulnerability in the gedit3 plugin. |