Home Embedded Vulns General Vulns
CVE ID Description Severity Published Type
CVE-2020-12257 rConfig 3.9.4 is vulnerable to cross-site request forgery (CSRF) because it lacks implementation of CSRF protection suc… High (8.8) 2020-05-18 General Purpose
CVE-2020-10958 In Dovecot before 2.3.10.1, a crafted SMTP/LMTP message triggers an unauthenticated use-after-free bug in submission-lo… Medium (5.3) 2020-05-18 General Purpose
CVE-2020-10957 In Dovecot before 2.3.10.1, unauthenticated sending of malformed parameters to a NOOP command causes a NULL Pointer Der… High (7.5) 2020-05-18 General Purpose
CVE-2020-12259 rConfig 3.9.4 is vulnerable to reflected XSS. The configDevice.php file improperly validates user input. An attacker ca… Medium (5.4) 2020-05-18 General Purpose
CVE-2020-13128 An issue was discovered in Manolo GWTUpload 1.0.3. server/UploadServlet.java (the servlet for handling file upload) acc… High (7.5) 2020-05-18 General Purpose