General-Purpose System Vulnerabilities
Vulnerabilities related to traditional IT systems, servers, and desktop applications.
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2020-12478 | TeamPass 2.1.27.36 allows an unauthenticated attacker to retrieve files from the TeamPass web root. This may include ba… | High (7.5) | 2020-04-29 | General Purpose |
| CVE-2020-12477 | The REST API functions in TeamPass 2.1.27.36 allow any user with a valid API token to bypass IP address whitelist restr… | High (7.5) | 2020-04-29 | General Purpose |
| CVE-2020-11943 | An issue was discovered in Open-AudIT 3.2.2. There is Arbitrary file upload. | High (8.8) | 2020-04-29 | General Purpose |
| CVE-2020-11942 | An issue was discovered in Open-AudIT 3.2.2. There are Multiple SQL Injections. | Critical (9.8) | 2020-04-29 | General Purpose |
| CVE-2020-11022 | In jQuery versions greater than or equal to 1.2 and before 3.5.0, passing HTML from untrusted sources - even after sani… | Medium (6.9) | 2020-04-29 | General Purpose |