General-Purpose System Vulnerabilities
Vulnerabilities related to traditional IT systems, servers, and desktop applications.
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2020-10246 | MISP 2.4.122 has reflected XSS via unsanitized URL parameters. This is related to app/View/Users/statistics_orgs.ctp. | Medium (6.1) | 2020-03-09 | General Purpose |
| CVE-2020-10192 | An issue was discovered in Munkireport before 5.3.0.3923. An unauthenticated actor can send a custom XSS payload throug… | Medium (6.1) | 2020-03-09 | General Purpose |
| CVE-2020-10191 | An issue was discovered in MunkiReport before 5.3.0. An authenticated actor can send a custom XSS payload through the /… | Medium (5.4) | 2020-03-09 | General Purpose |
| CVE-2020-10190 | An issue was discovered in MunkiReport before 5.3.0. An authenticated user could achieve SQL Injection in app/models/ta… | High (8.8) | 2020-03-09 | General Purpose |
| CVE-2019-19614 | An issue was discovered in Halvotec RAQuest 10.23.10801.0. The login page is vulnerable to wildcard injection, allowing… | High (7.5) | 2020-03-09 | General Purpose |