Vulnerabilities > Low

DATE CVE VULNERABILITY TITLE RISK
2020-04-24 CVE-2020-6824 Session Fixation vulnerability in Mozilla Firefox
Initially, a user opens a Private Browsing Window and generates a password for a site, then closes the Private Browsing Window but leaves Firefox open.
local
low complexity
mozilla CWE-384
2.8
2020-04-22 CVE-2020-10905 Out-of-bounds Read vulnerability in Foxitsoftware Phantompdf
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PhantomPDF 9.7.1.29511.
local
low complexity
foxitsoftware CWE-125
3.3
2020-04-22 CVE-2020-10903 Out-of-bounds Read vulnerability in Foxitsoftware Phantompdf
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PhantomPDF 9.7.1.29511.
local
low complexity
foxitsoftware CWE-125
3.3
2020-04-22 CVE-2020-10901 Out-of-bounds Read vulnerability in Foxitsoftware Phantompdf
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PhantomPDF 9.7.1.29511.
local
low complexity
foxitsoftware CWE-125
3.3
2020-04-22 CVE-2020-10894 Out-of-bounds Read vulnerability in Foxitsoftware Phantompdf
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PhantomPDF 9.7.1.29511.
local
low complexity
foxitsoftware CWE-125
3.3
2020-04-22 CVE-2020-11692 Incorrect Default Permissions vulnerability in Jetbrains Youtrack
In JetBrains YouTrack before 2020.1.659, DB export was accessible to read-only administrators.
network
low complexity
jetbrains CWE-276
2.7
2020-04-22 CVE-2020-11686 Unspecified vulnerability in Jetbrains Teamcity
In JetBrains TeamCity before 2019.1.4, a project administrator was able to retrieve some TeamCity server settings.
network
low complexity
jetbrains
2.7
2020-04-21 CVE-2020-5301 Improper Handling of Case Sensitivity vulnerability in Simplesamlphp
SimpleSAMLphp versions before 1.18.6 contain an information disclosure vulnerability.
network
high complexity
simplesamlphp CWE-178
3.1
2020-04-21 CVE-2017-18819 Unspecified vulnerability in Netgear Readynas OS
NETGEAR ReadyNAS OS 6 devices, running ReadyNAS OS versions prior to 6.8.0 are affected by incorrect configuration of security settings.
local
low complexity
netgear
3.3
2020-04-20 CVE-2017-18824 Path Traversal vulnerability in Netgear products
Certain NETGEAR devices are affected by directory traversal.
local
low complexity
netgear CWE-22
3.3