• Skip to primary navigation
  • Skip to main content
CVE Vulnerability

CVE Vulnerability

  • CVE’s
  • Products
  • Vendors

NVD-CWE-noinfo

CVE-2020-15867

February 26, 2023 by

The git hook feature in Gogs 0.5.5 through 0.12.2 allows for authenticated remote code execution. There can be a privilege escalation if access to this hook feature is granted to a user who does not have administrative privileges. NOTE: because this is mentioned in the documentation but not in the UI, it could be considered a “Product UI does not Warn User of Unsafe Actions” issue.

CVE-2020-15868

February 26, 2023 by

Sonatype Nexus Repository Manager OSS/Pro before 3.26.0 has Incorrect Access Control.

CVE-2020-1587

February 26, 2023 by

An elevation of privilege vulnerability exists when the Windows Ancillary Function Driver for WinSock improperly handles memory.To exploit this vulnerability, an attacker would first have to gain execution on the victim system, aka ‘Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability’.

CVE-2020-15871

February 26, 2023 by

Sonatype Nexus Repository Manager OSS/Pro version before 3.25.1 allows Remote Code Execution.

CVE-2020-1581

February 26, 2023 by

An elevation of privilege vulnerability exists in the way that Microsoft Office Click-to-Run (C2R) components handle objects in memory, aka ‘Microsoft Office Click-to-Run Elevation of Privilege Vulnerability’.

CVE-2020-15817

February 26, 2023 by

In JetBrains YouTrack before 2020.1.1331, an external user could execute commands against arbitrary issues.

  • « Go to Previous Page
  • Go to page 1
  • Interim pages omitted …
  • Go to page 790
  • Go to page 791
  • Go to page 792
  • Go to page 793
  • Go to page 794
  • Interim pages omitted …
  • Go to page 2387
  • Go to Next Page »

Copyright CVE Vulnerabilities 2023
Data Sources:

  • NIST
  • MITRE
  • CVE Search
  • Open CVE