|
210981
|
6.5 |
MEDIUM
Network
|
rc_project rcpro_project
|
rc rcpro
|
An issue was discovered in function addMeByRC in the smart contract implementation for RC, an Ethereum token, allows attackers to transfer an arbitrary amount of tokens to an arbitrary address.
|
NVD-CWE-noinfo
|
CVE-2020-17753
|
2024-11-21 14:08 |
2021-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210982
|
9.8 |
CRITICAL
Network
|
mon_project
|
mon
|
Integer overflow vulnerability in payable function of a smart contract implementation for an Ethereum token, as demonstrated by the smart contract implemented at address 0xB49E984A83d7A638E7F2889fc83…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2020-17752
|
2024-11-21 14:08 |
2021-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210983
|
5.4 |
MEDIUM
Network
|
roundcube
|
webmail
|
Cross Site Scripting (XSS) vulnerability in Roundcube Mail <=1.4.4 via smtp config in /installer/test.php.
|
CWE-79
Cross-site Scripting
|
CVE-2020-18671
|
2024-11-21 14:08 |
2021-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210984
|
5.4 |
MEDIUM
Network
|
roundcube
|
webmail
|
Cross Site Scripting (XSS) vulneraibility in Roundcube mail .4.4 via database host and user in /installer/test.php.
|
CWE-79
Cross-site Scripting
|
CVE-2020-18670
|
2024-11-21 14:08 |
2021-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210985
|
5.4 |
MEDIUM
Network
|
webport
|
web_port
|
Cross Site Scripting (XSS) vulnerabililty in WebPort <=1.19.1 via the description parameter to script/listcalls.
|
CWE-79
Cross-site Scripting
|
CVE-2020-18668
|
2024-11-21 14:08 |
2021-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210986
|
9.8 |
CRITICAL
Network
|
webport
|
webport
|
SQL Injection vulnerability in WebPort <=1.19.1 via the new connection, parameter name in type-conn.
|
CWE-89
SQL Injection
|
CVE-2020-18667
|
2024-11-21 14:08 |
2021-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210987
|
5.3 |
MEDIUM
Network
|
webport
|
web_port
|
Directory Traversal vulnerability in WebPort <=1.19.1 in tags of system settings.
|
CWE-22
Path Traversal
|
CVE-2020-18665
|
2024-11-21 14:08 |
2021-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210988
|
5.4 |
MEDIUM
Network
|
webport
|
web_port
|
Cross Site Scripting (XSS) vulnerability in WebPort <=1.19.1via the connection name parameter in type-conn.
|
CWE-79
Cross-site Scripting
|
CVE-2020-18664
|
2024-11-21 14:08 |
2021-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210989
|
6.1 |
MEDIUM
Network
|
sir
|
gnuboard
|
Cross Site Scripting (XSS) vulnerability in gnuboard5 <=v5.3.2.8 via the act parameter in bbs/move_update.php.
|
CWE-79
Cross-site Scripting
|
CVE-2020-18663
|
2024-11-21 14:08 |
2021-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210990
|
9.8 |
CRITICAL
Network
|
sir
|
gnuboard
|
SQL Injection vulnerability in gnuboard5 <=v5.3.2.8 via the table_prefix parameter in install_db.php.
|
CWE-89
SQL Injection
|
CVE-2020-18662
|
2024-11-21 14:08 |
2021-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|