VUMETRIC
CYBER PORTAL
Dashboard
Security News
Latest Vulnerabilities
Browse Vulnerabilities
by Vendors
by Products
by Categories
Weekly Reports
Vulnerabilities
>
Fedoraproject
>
Fedora
> Low
Exclude new CVEs:
DATE
CVE
VULNERABILITY TITLE
RISK
2020-07-27
CVE-2020-15103
In FreeRDP less than or equal to 2.1.2, an integer overflow exists due to missing input sanitation in rdpegfx channel.
network
low complexity
freerdp
fedoraproject
opensuse
canonical
debian
3.5
3.5
2020-06-24
CVE-2020-15005
In MediaWiki before 1.31.8, 1.32.x and 1.33.x before 1.33.4, and 1.34.x before 1.34.2, private wikis behind a caching server using the img_auth.php image authorization security feature may have had their files cached publicly, so any unauthorized user could view them.
network
high complexity
mediawiki
fedoraproject
debian
3.1
3.1
2020-06-18
CVE-2019-13033
Information Exposure vulnerability in multiple products
In CISOfy Lynis 2.x through 2.7.5, the license key can be obtained by looking at the process list when a data upload is being performed.
local
low complexity
cisofy
debian
fedoraproject
CWE-200
3.3
3.3
2020-06-12
CVE-2020-4049
In affected versions of WordPress, when uploading themes, the name of the theme folder can be crafted in a way that could lead to JavaScript execution in /wp-admin on the themes page.
network
low complexity
wordpress
fedoraproject
debian
2.4
2.4
2020-06-12
CVE-2020-4050
In affected versions of WordPress, misuse of the `set-screen-option` filter's return value allows arbitrary user meta fields to be saved.
network
high complexity
wordpress
fedoraproject
debian
3.1
3.1
2020-05-07
CVE-2020-11054
In qutebrowser versions less than 1.11.1, reloading a page with certificate errors shows a green URL.
network
low complexity
qutebrowser
fedoraproject
3.5
3.5
2020-04-27
CVE-2020-11810
Race Condition vulnerability in multiple products
An issue was discovered in OpenVPN 2.4.x before 2.4.9.
network
high complexity
openvpn
debian
fedoraproject
CWE-362
3.7
3.7
2020-04-15
CVE-2020-2754
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Scripting).
network
high complexity
oracle
netapp
fedoraproject
opensuse
canonical
debian
mcafee
3.7
3.7
2020-04-15
CVE-2020-2755
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Scripting).
network
high complexity
oracle
netapp
fedoraproject
opensuse
debian
canonical
mcafee
3.7
3.7
2020-04-15
CVE-2020-2756
Improper Handling of Exceptional Conditions vulnerability in multiple products
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Serialization).
network
high complexity
oracle
netapp
fedoraproject
debian
canonical
opensuse
mcafee
CWE-755
3.7
3.7
«
Previous
1
2
...
6
7
8
(current)
9
10
...
11
12
»
Next