2021-current CVE-2020-16261 - Winston 1.5.4 devices allow a U-Boot interrupt, resulting in local root aMarch 7, 2022
2021-current CVE-2020-16260 - Winston 1.5.4 devices do not enforce authorization. This is exploitable fMarch 7, 2022
2021-current CVE-2020-1626 - A vulnerability in Juniper Networks Junos OS Evolved may allow an attackeMarch 7, 2022
2021-current CVE-2020-16259 - Winston 1.5.4 devices have an SSH user account with access from bastion hMarch 7, 2022
2021-current CVE-2020-16258 - Winston 1.5.4 devices make use of a Monit service (not managed during theMarch 7, 2022
2021-current CVE-2020-16257 - Winston 1.5.4 devices are vulnerable to command injection via the API.March 7, 2022
2021-current CVE-2020-16255 - ownCloud (Core) before 10.5 allows XSS in login page 'forgot password.'March 7, 2022
2021-current CVE-2020-16254 - The Chartkick gem through 3.3.2 for Ruby allows Cascading Style Sheets (CMarch 7, 2022