ShadowTrackr

Search the CVE vulnerability database

Look up vulnerabilities by software, product or CVE number.

4 results for “CVE-2020-1822”

CVEPublishedCVSSShadowTrackr CVSSSummary
CVE:
CVE-2020-1822
Published
2024-12-28
CVSS:
3.7
ShadowTrackr CVSS:
1.7
Summary:
There are multiple out of bounds (OOB) read vulnerabilities in the implementation of the Common Open Policy Service (COPS) protocol of some Huawei products. The specific decoding function may occur out-of-bounds read when processes an incoming data packet. Successful exploit of these vulnerabilities may disrupt service on the affected device. (Vulnerability ID: HWPSIRT-2018-12275,HWPSIRT-2018-12276,HWPSIRT-2018-12277,HWPSIRT-2018-12278,HWPSIRT-2018-12279,HWPSIRT-2018-12280 and HWPSIRT-2018-12289) The seven vulnerabilities have been assigned seven Common Vulnerabilities and Exposures (CVE) IDs: CVE-2020-1818, CVE-2020-1819, CVE-2020-1820, CVE-2020-1821, CVE-2020-1822, CVE-2020-1823 and CVE-2020-1824.
CVE:
CVE-2020-18229
Published
2021-05-27
CVSS:
4.8
ShadowTrackr CVSS:
0.2
Summary:
Cross Site Scripting (XSS) in PHPMyWind v5.5 allows remote attackers to execute arbitrary code by injecting scripts into the parameter "$cfg_copyright" of component " /admin/web_config.php".
CVE:
CVE-2020-18221
Published
2021-05-26
CVSS:
6.1
ShadowTrackr CVSS:
0.5
Summary:
Cross Site Scripting (XSS) in Typora v0.9.65 and earlier allows remote attackers to execute arbitrary code by injecting commands during block rendering of a mathematical formula.
CVE:
CVE-2020-18220
Published
2021-05-20
CVSS:
7.5
ShadowTrackr CVSS:
4.6
Summary:
Weak Encoding for Password in DoraCMS v2.1.1 and earlier allows attackers to obtain sensitive information as it does not use a random salt or IV for its AES-CBC encryption, causes password encrypted for users to be susceptible to dictionary attacks.