CVE Database

Comprehensive vulnerability intelligence with advanced analytics

7.8

An elevation of privilege vulnerability exists when the Windows Background Intelligent Transfer Service (BITS) improperly handles symbolic links, aka 'Windows Background Intelligent Transfer Service Elevation of Privilege Vulnerability'.

Published: Mar 12, 2020
Modified: Oct 29, 2025
Product: microsoft windows_10_1607
EPSS: 70.22%
View Details
9.8

CVE-2020-10181

Critical KEV

goform/formEMR30 in Sumavision Enhanced Multimedia Router (EMR) 3.0.4.27 allows creation of arbitrary users with elevated privileges (administrator) on a device, as demonstrated by a setString=new_useradministrator123456 request.

Published: Mar 11, 2020
Modified: Nov 07, 2025
Product: sumavision enhanced_multimedia_router_firmware
EPSS: 20.55%
View Details
9.8

CVE-2020-6207

Critical KEV

SAP Solution Manager (User Experience Monitoring), version- 7.2, due to Missing Authentication Check does not perform any authentication for a service resulting in complete compromise of all SMDAgents connected to the Solution Manager.

Published: Mar 10, 2020
Modified: Oct 31, 2025
Product: sap solution_manager
EPSS: 94.15%
View Details
7.8

In the ioctl handlers of the Mediatek Command Queue driver, there is a possible out of bounds write due to insufficient input sanitization and missing SELinux restrictions. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android…

Published: Mar 10, 2020
Modified: Oct 23, 2025
Product: google android
EPSS: 0.71%
View Details
7.8

In binder_transaction of binder.c, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-145988638References: Upstream kernel

Published: Mar 10, 2020
Modified: Oct 23, 2025
Product: google android
EPSS: 21.24%
View Details
7.2

setSystemCommand on D-Link DCS-930L devices before 2.12 allows a remote attacker to execute code via an OS command in the SystemCommand parameter.

Published: Mar 09, 2020
Modified: Nov 05, 2025
EPSS: 91.25%
View Details
7.8

D-Link DWL-2600AP 4.2.0.15 Rev A devices have an authenticated OS command injection vulnerability via the Save Configuration functionality in the Web interface, using shell metacharacters in the admin.cgi?action=config_save configBackup or downloadServerip parameter.

Published: Mar 05, 2020
Modified: Nov 07, 2025
EPSS: 92.07%
View Details
9.8

CVE-2020-9054

Critical KEV

Multiple ZyXEL network-attached storage (NAS) devices running firmware version 5.21 contain a pre-authentication command injection vulnerability, which may allow a remote, unauthenticated attacker to execute arbitrary code on a vulnerable device. ZyXEL NAS devices achieve authentication by using the weblogin.cgi CGI executable. This program fails to properly sanitize the username…

Published: Mar 04, 2020
Modified: Nov 10, 2025
Product: zyxel usg60_firmware
EPSS: 94.31%
View Details
6.5

CVE-2020-3153

Medium KEV

A vulnerability in the installer component of Cisco AnyConnect Secure Mobility Client for Windows could allow an authenticated local attacker to copy user-supplied files to system level directories with system level privileges. The vulnerability is due to the incorrect handling of directory paths. An attacker could exploit this vulnerability by…

Published: Feb 19, 2020
Modified: Oct 28, 2025
EPSS: 25.09%
View Details
7.5

Netis WF2419 is vulnerable to authenticated Remote Code Execution (RCE) as root through the router Web management page. The vulnerability has been found in firmware version V1.2.31805 and V2.2.36123. After one is connected to this page, it is possible to execute system commands as root through the tracert diagnostic tool…

Published: Feb 07, 2020
Modified: Nov 07, 2025
Product: netis-systems wf2419_firmware
EPSS: 91.09%
View Details
7.0

TeamViewer Desktop through 14.7.1965 allows a bypass of remote-login access control because the same key is used for different customers' installations. It used a shared AES key for all installations since at least as far back as v7.0.43148, and used it for at least OptionsPasswordAES in the current version of…

Published: Feb 07, 2020
Modified: Nov 07, 2025
Product: teamviewer teamviewer
EPSS: 10.41%
View Details
7.8

An issue was discovered in EyesOfNetwork 5.3. The sudoers configuration is prone to a privilege escalation vulnerability, allowing the apache user to run arbitrary commands as root via a crafted NSE script for nmap 7.

Published: Feb 07, 2020
Modified: Nov 10, 2025
Product: eyesofnetwork eyesofnetwork
EPSS: 81.33%
View Details
9.8

CVE-2020-8657

Critical KEV

An issue was discovered in EyesOfNetwork 5.3. The installation uses the same API key (hardcoded as EONAPI_KEY in include/api_functions.php for API version 2.4.2) by default for all installations, hence allowing an attacker to calculate/guess the admin access token.

Published: Feb 06, 2020
Modified: Nov 10, 2025
Product: eyesofnetwork eyesofnetwork
EPSS: 86.39%
View Details
8.8

A vulnerability in the Cisco Discovery Protocol implementation for Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to execute arbitrary code or cause a reload on an affected device. The vulnerability is due to improper validation of string input from certain fields in Cisco Discovery Protocol messages. An…

Published: Feb 05, 2020
Modified: Oct 28, 2025
Product: cisco ios_xr
EPSS: 0.29%
View Details
9.8

CVE-2020-2551

Critical KEV

Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: WLS Core Components). Supported versions that are affected are 10.3.6.0.0, 12.1.3.0.0, 12.2.1.3.0 and 12.2.1.4.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via IIOP to compromise Oracle WebLogic Server. Successful attacks of this vulnerability can result in…

Published: Jan 15, 2020
Modified: Oct 27, 2025
Product: oracle weblogic_server
EPSS: 94.41%
View Details
7.8

An elevation of privilege vulnerability exists in the way the Update Notification Manager handles files.To exploit this vulnerability, an attacker would first have to gain execution on the victim system, aka 'Update Notification Manager Elevation of Privilege Vulnerability'.

Published: Jan 14, 2020
Modified: Oct 29, 2025
Product: microsoft windows_server_1803
EPSS: 1.48%
View Details
7.5

A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka 'Scripting Engine Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2019-1221.

Published: Sep 23, 2019
Modified: Oct 29, 2025
Product: microsoft internet_explorer
EPSS: 89.69%
View Details
9.8

CVE-2019-16057

Critical KEV

The login_mgr.cgi script in D-Link DNS-320 through 2.05.B10 is vulnerable to remote command injection.

Published: Sep 16, 2019
Modified: Nov 06, 2025
EPSS: 93.75%
View Details
9.8

CVE-2019-16256

Critical KEV

Some Samsung devices include the SIMalliance Toolbox Browser (aka S@T Browser) on the UICC, which might allow remote attackers to retrieve location and IMEI information, or retrieve other data or execute certain commands, via SIM Toolkit (STK) instructions in an SMS message, aka Simjacker.

Published: Sep 12, 2019
Modified: Nov 12, 2025
Product: trustedconnectivityalliance s\@t_browser
EPSS: 61.19%
View Details
8.8

A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'.

Published: Sep 11, 2019
Modified: Oct 29, 2025
Product: microsoft office
EPSS: 30.84%
View Details
7.8

An elevation of privilege vulnerability exists when the Windows Common Log File System (CLFS) driver improperly handles objects in memory, aka 'Windows Common Log File System Driver Elevation of Privilege Vulnerability'.

Published: Sep 11, 2019
Modified: Oct 29, 2025
Product: microsoft windows_10_1607
EPSS: 3.68%
View Details
7.5

Citrix StoreFront Server before 1903, 7.15 LTSR before CU4 (3.12.4000), and 7.6 LTSR before CU8 (3.0.8000) allows XXE attacks.

Published: Aug 29, 2019
Modified: Nov 06, 2025
EPSS: 28.88%
View Details
9.8

CVE-2019-0344

Critical KEV

Due to unsafe deserialization used in SAP Commerce Cloud (virtualjdbc extension), versions 6.4, 6.5, 6.6, 6.7, 1808, 1811, 1905, it is possible to execute arbitrary code on a target machine with 'Hybris' user rights, resulting in Code Injection.

Published: Aug 14, 2019
Modified: Oct 31, 2025
Product: sap commerce_cloud
EPSS: 52.44%
View Details
9.8

CVE-2019-11581

Critical KEV

There was a server-side template injection vulnerability in Jira Server and Data Center, in the ContactAdministrators and the SendBulkMail actions. An attacker is able to remotely execute code on systems that run a vulnerable version of Jira Server or Data Center. All versions of Jira Server and Data Center from…

Published: Aug 09, 2019
Modified: Oct 24, 2025
Product: atlassian jira_server
EPSS: 94.36%
View Details