"-Synchronized-Data."

This commit is contained in:
CVE Team 2020-03-26 17:01:15 +00:00
parent f2847541ac
commit 40bd5f45b6
No known key found for this signature in database
GPG Key ID: 5708902F06FEF743
24 changed files with 390 additions and 36 deletions

View File

@ -186,6 +186,11 @@
"refsource": "MISC",
"name": "http://packetstormsecurity.com/files/154957/Linux-Polkit-pkexec-Helper-PTRACE_TRACEME-Local-Root.html",
"url": "http://packetstormsecurity.com/files/154957/Linux-Polkit-pkexec-Helper-PTRACE_TRACEME-Local-Root.html"
},
{
"refsource": "MISC",
"name": "http://packetstormsecurity.com/files/156929/Linux-PTRACE_TRACEME-Local-Root.html",
"url": "http://packetstormsecurity.com/files/156929/Linux-PTRACE_TRACEME-Local-Root.html"
}
]
}

View File

@ -671,6 +671,11 @@
"url": "https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-0646",
"refsource": "MISC",
"name": "https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-0646"
},
{
"refsource": "MISC",
"name": "http://packetstormsecurity.com/files/156930/SharePoint-Workflows-XOML-Injection.html",
"url": "http://packetstormsecurity.com/files/156930/SharePoint-Workflows-XOML-Injection.html"
}
]
}

View File

@ -56,6 +56,11 @@
"url": "http://antoniocannito.it/?p=137#afr",
"refsource": "MISC",
"name": "http://antoniocannito.it/?p=137#afr"
},
{
"refsource": "MISC",
"name": "https://antoniocannito.it/phpkb1#arbitrary-file-renaming-cve-2020-10457",
"url": "https://antoniocannito.it/phpkb1#arbitrary-file-renaming-cve-2020-10457"
}
]
}

View File

@ -56,6 +56,11 @@
"url": "http://antoniocannito.it/?p=137#afld",
"refsource": "MISC",
"name": "http://antoniocannito.it/?p=137#afld"
},
{
"refsource": "MISC",
"name": "https://antoniocannito.it/phpkb1#arbitrary-folder-deletion-cve-2020-10458",
"url": "https://antoniocannito.it/phpkb1#arbitrary-folder-deletion-cve-2020-10458"
}
]
}

View File

@ -56,6 +56,11 @@
"url": "http://antoniocannito.it/?p=137#afl",
"refsource": "MISC",
"name": "http://antoniocannito.it/?p=137#afl"
},
{
"refsource": "MISC",
"name": "https://antoniocannito.it/phpkb1#arbitrary-file-listing-cve-2020-10459",
"url": "https://antoniocannito.it/phpkb1#arbitrary-file-listing-cve-2020-10459"
}
]
}

View File

@ -56,6 +56,11 @@
"url": "http://antoniocannito.it/?p=137#csvinj",
"refsource": "MISC",
"name": "http://antoniocannito.it/?p=137#csvinj"
},
{
"refsource": "MISC",
"name": "https://antoniocannito.it/phpkb1#csv-injection-cve-2020-10460",
"url": "https://antoniocannito.it/phpkb1#csv-injection-cve-2020-10460"
}
]
}

View File

@ -56,6 +56,11 @@
"url": "http://antoniocannito.it/?p=137#bxss2",
"refsource": "MISC",
"name": "http://antoniocannito.it/?p=137#bxss2"
},
{
"refsource": "MISC",
"name": "https://antoniocannito.it/phpkb1#blind-cross-site-scripting-2-cve-2020-10461",
"url": "https://antoniocannito.it/phpkb1#blind-cross-site-scripting-2-cve-2020-10461"
}
]
}

View File

@ -56,6 +56,11 @@
"url": "http://antoniocannito.it/?p=342#xss1",
"refsource": "MISC",
"name": "http://antoniocannito.it/?p=342#xss1"
},
{
"refsource": "MISC",
"name": "https://antoniocannito.it/phpkb2#reflected-cross-site-scripting-when-editing-a-custom-field-cve-2020-10462",
"url": "https://antoniocannito.it/phpkb2#reflected-cross-site-scripting-when-editing-a-custom-field-cve-2020-10462"
}
]
}

View File

@ -56,6 +56,11 @@
"url": "http://antoniocannito.it/?p=342#xss2",
"refsource": "MISC",
"name": "http://antoniocannito.it/?p=342#xss2"
},
{
"refsource": "MISC",
"name": "https://antoniocannito.it/phpkb2#reflected-cross-site-scripting-when-editing-a-template-cve-2020-10463",
"url": "https://antoniocannito.it/phpkb2#reflected-cross-site-scripting-when-editing-a-template-cve-2020-10463"
}
]
}

View File

@ -56,6 +56,11 @@
"url": "http://antoniocannito.it/?p=342#xss3",
"refsource": "MISC",
"name": "http://antoniocannito.it/?p=342#xss3"
},
{
"refsource": "MISC",
"name": "https://antoniocannito.it/phpkb2#reflected-cross-site-scripting-when-editing-an-article-cve-2020-10464",
"url": "https://antoniocannito.it/phpkb2#reflected-cross-site-scripting-when-editing-an-article-cve-2020-10464"
}
]
}

View File

@ -56,6 +56,11 @@
"url": "http://antoniocannito.it/?p=342#xss4",
"refsource": "MISC",
"name": "http://antoniocannito.it/?p=342#xss4"
},
{
"refsource": "MISC",
"name": "https://antoniocannito.it/phpkb2#reflected-cross-site-scripting-when-editing-a-category-cve-2020-10465",
"url": "https://antoniocannito.it/phpkb2#reflected-cross-site-scripting-when-editing-a-category-cve-2020-10465"
}
]
}

View File

@ -56,6 +56,11 @@
"url": "http://antoniocannito.it/?p=342#xss5",
"refsource": "MISC",
"name": "http://antoniocannito.it/?p=342#xss5"
},
{
"refsource": "MISC",
"name": "https://antoniocannito.it/phpkb2#reflected-cross-site-scripting-when-editing-a-glossary-term-cve-2020-10466",
"url": "https://antoniocannito.it/phpkb2#reflected-cross-site-scripting-when-editing-a-glossary-term-cve-2020-10466"
}
]
}

View File

@ -56,6 +56,11 @@
"url": "http://antoniocannito.it/?p=342#xss6",
"refsource": "MISC",
"name": "http://antoniocannito.it/?p=342#xss6"
},
{
"refsource": "MISC",
"name": "https://antoniocannito.it/phpkb2#reflected-cross-site-scripting-when-editing-a-comment-cve-2020-10467",
"url": "https://antoniocannito.it/phpkb2#reflected-cross-site-scripting-when-editing-a-comment-cve-2020-10467"
}
]
}

View File

@ -56,6 +56,11 @@
"url": "http://antoniocannito.it/?p=342#xss7",
"refsource": "MISC",
"name": "http://antoniocannito.it/?p=342#xss7"
},
{
"refsource": "MISC",
"name": "https://antoniocannito.it/phpkb2#reflected-cross-site-scripting-when-editing-a-news-article-cve-2020-10468",
"url": "https://antoniocannito.it/phpkb2#reflected-cross-site-scripting-when-editing-a-news-article-cve-2020-10468"
}
]
}

View File

@ -56,6 +56,11 @@
"url": "http://antoniocannito.it/?p=342#xss8",
"refsource": "MISC",
"name": "http://antoniocannito.it/?p=342#xss8"
},
{
"refsource": "MISC",
"name": "https://antoniocannito.it/phpkb2#reflected-cross-site-scripting-when-editing-a-department-cve-2020-10469",
"url": "https://antoniocannito.it/phpkb2#reflected-cross-site-scripting-when-editing-a-department-cve-2020-10469"
}
]
}

View File

@ -56,6 +56,11 @@
"url": "http://antoniocannito.it/?p=342#xss9",
"refsource": "MISC",
"name": "http://antoniocannito.it/?p=342#xss9"
},
{
"refsource": "MISC",
"name": "https://antoniocannito.it/phpkb2#reflected-cross-site-scripting-when-sorting-custom-fields-cve-2020-10470",
"url": "https://antoniocannito.it/phpkb2#reflected-cross-site-scripting-when-sorting-custom-fields-cve-2020-10470"
}
]
}

View File

@ -56,6 +56,11 @@
"url": "http://antoniocannito.it/?p=342#xss10",
"refsource": "MISC",
"name": "http://antoniocannito.it/?p=342#xss10"
},
{
"refsource": "MISC",
"name": "https://antoniocannito.it/phpkb2#reflected-cross-site-scripting-when-sorting-articles-cve-2020-10471",
"url": "https://antoniocannito.it/phpkb2#reflected-cross-site-scripting-when-sorting-articles-cve-2020-10471"
}
]
}

View File

@ -1,17 +1,61 @@
{
"data_type": "CVE",
"data_format": "MITRE",
"data_version": "4.0",
"CVE_data_meta": {
"ID": "CVE-2020-10823",
"ASSIGNER": "cve@mitre.org",
"STATE": "RESERVED"
"ID": "CVE-2020-10823",
"STATE": "PUBLIC"
},
"affects": {
"vendor": {
"vendor_data": [
{
"product": {
"product_data": [
{
"product_name": "n/a",
"version": {
"version_data": [
{
"version_value": "n/a"
}
]
}
}
]
},
"vendor_name": "n/a"
}
]
}
},
"data_format": "MITRE",
"data_type": "CVE",
"data_version": "4.0",
"description": {
"description_data": [
{
"lang": "eng",
"value": "** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided."
"value": "A stack-based buffer overflow in /cgi-bin/activate.cgi through var parameter on Draytek Vigor3900, Vigor2960, and Vigor300B devices before 1.5.1 allows remote attackers to achieve code execution via a remote HTTP request (issue 1 of 3)."
}
]
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "n/a"
}
]
}
]
},
"references": {
"reference_data": [
{
"refsource": "MISC",
"name": "https://slashd.ga/2020/03/draytek-vulnerabilities/",
"url": "https://slashd.ga/2020/03/draytek-vulnerabilities/"
}
]
}

View File

@ -1,17 +1,61 @@
{
"data_type": "CVE",
"data_format": "MITRE",
"data_version": "4.0",
"CVE_data_meta": {
"ID": "CVE-2020-10824",
"ASSIGNER": "cve@mitre.org",
"STATE": "RESERVED"
"ID": "CVE-2020-10824",
"STATE": "PUBLIC"
},
"affects": {
"vendor": {
"vendor_data": [
{
"product": {
"product_data": [
{
"product_name": "n/a",
"version": {
"version_data": [
{
"version_value": "n/a"
}
]
}
}
]
},
"vendor_name": "n/a"
}
]
}
},
"data_format": "MITRE",
"data_type": "CVE",
"data_version": "4.0",
"description": {
"description_data": [
{
"lang": "eng",
"value": "** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided."
"value": "A stack-based buffer overflow in /cgi-bin/activate.cgi through ticket parameter on Draytek Vigor3900, Vigor2960, and Vigor300B devices before 1.5.1 allows remote attackers to achieve code execution via a remote HTTP request (issue 2 of 3)."
}
]
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "n/a"
}
]
}
]
},
"references": {
"reference_data": [
{
"refsource": "MISC",
"name": "https://slashd.ga/2020/03/draytek-vulnerabilities/",
"url": "https://slashd.ga/2020/03/draytek-vulnerabilities/"
}
]
}

View File

@ -1,17 +1,61 @@
{
"data_type": "CVE",
"data_format": "MITRE",
"data_version": "4.0",
"CVE_data_meta": {
"ID": "CVE-2020-10825",
"ASSIGNER": "cve@mitre.org",
"STATE": "RESERVED"
"ID": "CVE-2020-10825",
"STATE": "PUBLIC"
},
"affects": {
"vendor": {
"vendor_data": [
{
"product": {
"product_data": [
{
"product_name": "n/a",
"version": {
"version_data": [
{
"version_value": "n/a"
}
]
}
}
]
},
"vendor_name": "n/a"
}
]
}
},
"data_format": "MITRE",
"data_type": "CVE",
"data_version": "4.0",
"description": {
"description_data": [
{
"lang": "eng",
"value": "** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided."
"value": "A stack-based buffer overflow in /cgi-bin/activate.cgi while base64 decoding ticket parameter on Draytek Vigor3900, Vigor2960, and Vigor300B devices before 1.5.1 allows remote attackers to achieve code execution via a remote HTTP request (issue 3 of 3)."
}
]
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "n/a"
}
]
}
]
},
"references": {
"reference_data": [
{
"refsource": "MISC",
"name": "https://slashd.ga/2020/03/draytek-vulnerabilities/",
"url": "https://slashd.ga/2020/03/draytek-vulnerabilities/"
}
]
}

View File

@ -1,17 +1,61 @@
{
"data_type": "CVE",
"data_format": "MITRE",
"data_version": "4.0",
"CVE_data_meta": {
"ID": "CVE-2020-10826",
"ASSIGNER": "cve@mitre.org",
"STATE": "RESERVED"
"ID": "CVE-2020-10826",
"STATE": "PUBLIC"
},
"affects": {
"vendor": {
"vendor_data": [
{
"product": {
"product_data": [
{
"product_name": "n/a",
"version": {
"version_data": [
{
"version_value": "n/a"
}
]
}
}
]
},
"vendor_name": "n/a"
}
]
}
},
"data_format": "MITRE",
"data_type": "CVE",
"data_version": "4.0",
"description": {
"description_data": [
{
"lang": "eng",
"value": "** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided."
"value": "/cgi-bin/activate.cgi on Draytek Vigor3900, Vigor2960, and Vigor300B devices before 1.5.1 allows remote attackers to achieve command injection via a remote HTTP request in DEBUG mode."
}
]
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "n/a"
}
]
}
]
},
"references": {
"reference_data": [
{
"refsource": "MISC",
"name": "https://slashd.ga/2020/03/draytek-vulnerabilities/",
"url": "https://slashd.ga/2020/03/draytek-vulnerabilities/"
}
]
}

View File

@ -1,17 +1,61 @@
{
"data_type": "CVE",
"data_format": "MITRE",
"data_version": "4.0",
"CVE_data_meta": {
"ID": "CVE-2020-10827",
"ASSIGNER": "cve@mitre.org",
"STATE": "RESERVED"
"ID": "CVE-2020-10827",
"STATE": "PUBLIC"
},
"affects": {
"vendor": {
"vendor_data": [
{
"product": {
"product_data": [
{
"product_name": "n/a",
"version": {
"version_data": [
{
"version_value": "n/a"
}
]
}
}
]
},
"vendor_name": "n/a"
}
]
}
},
"data_format": "MITRE",
"data_type": "CVE",
"data_version": "4.0",
"description": {
"description_data": [
{
"lang": "eng",
"value": "** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided."
"value": "A stack-based buffer overflow in apmd on Draytek Vigor3900, Vigor2960, and Vigor300B devices before 1.5.1 allows remote attackers to achieve code execution via a remote HTTP request."
}
]
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "n/a"
}
]
}
]
},
"references": {
"reference_data": [
{
"refsource": "MISC",
"name": "https://slashd.ga/2020/03/draytek-vulnerabilities/",
"url": "https://slashd.ga/2020/03/draytek-vulnerabilities/"
}
]
}

View File

@ -1,17 +1,61 @@
{
"data_type": "CVE",
"data_format": "MITRE",
"data_version": "4.0",
"CVE_data_meta": {
"ID": "CVE-2020-10828",
"ASSIGNER": "cve@mitre.org",
"STATE": "RESERVED"
"ID": "CVE-2020-10828",
"STATE": "PUBLIC"
},
"affects": {
"vendor": {
"vendor_data": [
{
"product": {
"product_data": [
{
"product_name": "n/a",
"version": {
"version_data": [
{
"version_value": "n/a"
}
]
}
}
]
},
"vendor_name": "n/a"
}
]
}
},
"data_format": "MITRE",
"data_type": "CVE",
"data_version": "4.0",
"description": {
"description_data": [
{
"lang": "eng",
"value": "** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided."
"value": "A stack-based buffer overflow in cvmd on Draytek Vigor3900, Vigor2960, and Vigor300B devices before 1.5.1 allows remote attackers to achieve code execution via a remote HTTP request."
}
]
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "n/a"
}
]
}
]
},
"references": {
"reference_data": [
{
"refsource": "MISC",
"name": "https://slashd.ga/2020/03/draytek-vulnerabilities/",
"url": "https://slashd.ga/2020/03/draytek-vulnerabilities/"
}
]
}

View File

@ -61,6 +61,11 @@
"refsource": "CONFIRM",
"name": "https://www.tp-link.com/in/support/download/archer-c50/v3/#Firmware",
"url": "https://www.tp-link.com/in/support/download/archer-c50/v3/#Firmware"
},
{
"refsource": "MISC",
"name": "http://packetstormsecurity.com/files/156928/TP-Link-Archer-C50-V3-Denial-of-Service.html",
"url": "http://packetstormsecurity.com/files/156928/TP-Link-Archer-C50-V3-Denial-of-Service.html"
}
]
}