Home Embedded Vulns General Vulns
CVE ID Description Severity Published Type
CVE-2020-8592 eG Manager 7.1.2 allows SQL Injection via the user parameter to com.eg.LoginHelperServlet (aka the Forgot Password feat… Critical (9.8) 2020-02-03 General Purpose
CVE-2020-8591 eG Manager 7.1.2 allows authentication bypass via a com.egurkha.EgLoginServlet?uname=admin&upass=&accessKey=eGm0n1t0r r… Critical (9.8) 2020-02-03 General Purpose
CVE-2019-20174 Auth0 Lock before 11.21.0 allows XSS when additionalSignUpFields is used with an untrusted placeholder. Medium (6.1) 2020-02-03 General Purpose
CVE-2019-18567 Bromium client version 4.0.3.2060 and prior to 4.1.7 Update 1 has an out of bound read results in race condition causin… Medium (6.3) 2020-02-03 General Purpose
CVE-2016-4676 A Cross-origin vulnerability exists in WebKit in Apple Safari before 10.0.1 when processing location attributes, which … High (7.5) 2020-02-03 General Purpose