|
210491
|
9.8 |
CRITICAL
Network
|
hotel_and_lodge_booking_management_system_project
|
hotel_and_lodge_booking_management_system
|
Sourcecodester Hotel and Lodge Management System 2.0 is vulnerable to unauthenticated SQL injection and can allow remote attackers to execute arbitrary SQL commands via the email parameter to the edi…
|
CWE-89
SQL Injection
|
CVE-2020-21012
|
2024-11-21 14:12 |
2021-10-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210492
|
5.4 |
MEDIUM
Network
|
jeecms
|
jeecms
|
JeeCMS 1.0.1 contains a stored cross-site scripting (XSS) vulnerability which allows attackers to execute arbitrary web scripts or HTML via a crafted payload in the commentText parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2020-20799
|
2024-11-21 14:12 |
2021-10-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210493
|
9.8 |
CRITICAL
Network
|
flamecms_project
|
flamecms
|
FlameCMS 3.3.5 contains a time-based blind SQL injection vulnerability in /account/register.php.
|
CWE-89
SQL Injection
|
CVE-2020-20797
|
2024-11-21 14:12 |
2021-10-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210494
|
9.8 |
CRITICAL
Network
|
flamecms_project
|
flamecms
|
FlameCMS 3.3.5 contains a SQL injection vulnerability in /master/article.php via the "Id" parameter.
|
CWE-89
SQL Injection
|
CVE-2020-20796
|
2024-11-21 14:12 |
2021-10-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210495
|
7.2 |
HIGH
Network
|
tendacn
|
ac9_firmware
|
A stack-based buffer overflow in the httpd server on Tenda AC9 V15.03.06.60_EN allows remote attackers to execute arbitrary code or cause a denial of service (DoS) via a crafted POST request to /gofo…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-20746
|
2024-11-21 14:12 |
2021-10-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210496
|
7.5 |
HIGH
Network
|
rudp_project
|
rudp
|
rudp v0.6 was discovered to contain a memory leak in the component main.c.
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2020-20665
|
2024-11-21 14:12 |
2021-10-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210497
|
6.5 |
MEDIUM
Network
|
libiec_iccp_mod_project
|
libiec_iccp_mod
|
libiec_iccp_mod v1.5 contains a segmentation violation in the component server_example1.c.
|
NVD-CWE-noinfo
|
CVE-2020-20664
|
2024-11-21 14:12 |
2021-10-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210498
|
6.5 |
MEDIUM
Network
|
libiec_iccp_mod_project
|
libiec_iccp_mod
|
libiec_iccp_mod v1.5 contains a heap-buffer-overflow in the component mms_client_connection.c.
|
CWE-787
Out-of-bounds Write
|
CVE-2020-20663
|
2024-11-21 14:12 |
2021-10-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210499
|
6.5 |
MEDIUM
Network
|
libiec_iccp_mod_project
|
libiec_iccp_mod
|
libiec_iccp_mod v1.5 contains a heap-buffer-overflow in the component mms_client_example1.c.
|
CWE-787
Out-of-bounds Write
|
CVE-2020-20662
|
2024-11-21 14:12 |
2021-10-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210500
|
5.4 |
MEDIUM
Network
|
ucms_project
|
ucms
|
A stored cross-site scripting (XSS) vulnerability in /ucms/index.php?do=list_edit of UCMS 1.4.7 allows attackers to execute arbitrary web scripts or HTML via a crafted payload in the title, key words…
|
CWE-79
Cross-site Scripting
|
CVE-2020-20781
|
2024-11-21 14:12 |
2021-09-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|