Vulnerabilities (CVE)

Filtered by CWE-838
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-7292 1 Mcafee 1 Web Gateway 2020-09-17 4.3 MEDIUM 4.3 MEDIUM
Inappropriate Encoding for output context vulnerability in McAfee Web Gateway (MWG) prior to 9.2.1 allows a remote attacker to cause MWG to return an ambiguous redirect response via getting a user to click on a malicious URL.
CVE-2019-6110 3 Netapp, Openbsd, Winscp 5 Element Software, Ontap Select Deploy, Storage Automation Store and 2 more 2020-08-24 4.0 MEDIUM 6.8 MEDIUM
In OpenSSH 7.9, due to accepting and displaying arbitrary stderr output from the server, a malicious server (or Man-in-The-Middle attacker) can manipulate the client output, for example to use ANSI control codes to hide additional files being transferred.