Vulnerabilities
Vulnerable Software
Security Vulnerabilities - CVEs Published In April 2020
A use-after-free vulnerability introduced in glibc upstream version 2.14 was found in the way the tilde expansion was carried out. Directory paths containing an initial tilde followed by a valid username were affected by this issue. A local attacker could exploit this flaw by creating a specially crafted path that, when processed by the glob function, would potentially lead to arbitrary code execution. This was fixed in version 2.32.
CVSS Score
7.0
EPSS Score
0.002
Published
2020-04-30
CVE-2020-11651
Known exploited
An issue was discovered in SaltStack Salt before 2019.2.4 and 3000 before 3000.2. The salt-master process ClearFuncs class does not properly validate method calls. This allows a remote user to access some methods without authentication. These methods can be used to retrieve user tokens from the salt master and/or run arbitrary commands on salt minions.
CVSS Score
9.8
EPSS Score
0.944
Published
2020-04-30
CVE-2020-11652
Known exploited
An issue was discovered in SaltStack Salt before 2019.2.4 and 3000 before 3000.2. The salt-master process ClearFuncs class allows access to some methods that improperly sanitize paths. These methods allow arbitrary directory access to authenticated users.
CVSS Score
6.5
EPSS Score
0.939
Published
2020-04-30
SQLiteODBC 0.9996, as packaged for certain Linux distributions as 0.9996-4, has a race condition leading to root privilege escalation because any user can replace a /tmp/sqliteodbc$$ file with new contents that cause loading of an arbitrary library.
CVSS Score
7.0
EPSS Score
0.001
Published
2020-04-30
An archive traversal flaw was found in all ansible-engine versions 2.9.x prior to 2.9.7, when running ansible-galaxy collection install. When extracting a collection .tar.gz file, the directory is created without sanitizing the filename. An attacker could take advantage to overwrite any file within the system.
CVSS Score
5.2
EPSS Score
0.001
Published
2020-04-30
LearnPress Wordpress plugin version prior and including 3.2.6.7 is vulnerable to SQL Injection
CVSS Score
8.8
EPSS Score
0.455
Published
2020-04-30
Cross-site scripting (XSS) vulnerability in mailhive/cloudbeez/cloudloader.php and mailhive/cloudbeez/cloudloader_core.php in the MailBeez plugin for ZenCart before 3.9.22 allows remote attackers to inject arbitrary web script or HTML via the cloudloader_mode parameter.
CVSS Score
6.1
EPSS Score
0.002
Published
2020-04-30
A buffer overflow vulnerability in BMC Control-M/Agent 7.0.00.000 when the On-Do action destination is Mail and the Control-M/Agent is configured to send the email, allows remote attackers to have unspecified impact via vectors related to the configured IP address or SMTP server.
CVSS Score
8.8
EPSS Score
0.005
Published
2020-04-30
BMC Control-M/Agent 7.0.00.000 has an Insecure File Copy.
CVSS Score
8.8
EPSS Score
0.003
Published
2020-04-30
BMC Control-M/Agent 7.0.00.000 allows OS Command Injection.
CVSS Score
8.8
EPSS Score
0.011
Published
2020-04-30


Contact Us

Shodan ® - All rights reserved