|
210351
|
7.8 |
HIGH
Local
|
irfanview
|
irfanview
|
IrfanView 4.54 allows a user-mode write access violation starting at FORMATS!GetPlugInInfo+0x0000000000007e82.
|
CWE-787
Out-of-bounds Write
|
CVE-2020-23550
|
2024-11-21 14:13 |
2022-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210352
|
9.8 |
CRITICAL
Network
|
owasp debian
|
owasp_modsecurity_core_rule_set debian_linux
|
Modsecurity owasp-modsecurity-crs 3.2.0 (Paranoia level at PL1) has a SQL injection bypass vulnerability. Attackers can use the comment characters and variable assignments in the SQL syntax to bypass…
|
CWE-89
SQL Injection
|
CVE-2020-22669
|
2024-11-21 14:13 |
2022-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210353
|
5.4 |
MEDIUM
Network
|
phpgurukul
|
online_marriage_registration_system
|
Cross Site Scripting (XSS) vulnerability exists in the phpgurukul Online Marriage Registration System 1.0 allows attackers to run arbitrary code via the wzipcode field.
|
CWE-79
Cross-site Scripting
|
CVE-2020-23466
|
2024-11-21 14:13 |
2022-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210354
|
7.5 |
HIGH
Network
|
cling_project
|
cling
|
An issue in the UPnP protocol in 4thline cling 2.0.0 through 2.1.2 allows remote attackers to cause a denial of service via an unchecked CALLBACK parameter in the request header
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2020-23622
|
2024-11-21 14:13 |
2022-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210355
|
5.5 |
MEDIUM
Local
|
irfanview
|
irfanview
|
IrfanView 4.54 allows a user-mode write access violation starting at FORMATS!ShowPlugInSaveOptions_W+0x0000000000002cba.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2020-23563
|
2024-11-21 14:13 |
2022-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210356
|
5.5 |
MEDIUM
Local
|
irfanview
|
irfanview
|
IrfanView 4.54 allows a user-mode write access violation starting at FORMATS!ShowPlugInSaveOptions_W+0x000000000000aefe.
|
NVD-CWE-noinfo
|
CVE-2020-23562
|
2024-11-21 14:13 |
2022-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210357
|
5.5 |
MEDIUM
Local
|
irfanview
|
irfanview
|
IrfanView 4.54 allows a user-mode write access violation starting at FORMATS!ShowPlugInSaveOptions_W+0x0000000000005722.
|
NVD-CWE-noinfo
|
CVE-2020-23561
|
2024-11-21 14:13 |
2022-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210358
|
8.1 |
HIGH
Network
|
microstrategy
|
microstrategy_web
|
A Server-Side Request Forgery (SSRF) vulnerability exists in MicroStrategy Web SDK 11.1 and earlier, allows remote unauthenticated attackers to conduct a server-side request forgery (SSRF) attack via…
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2020-22983
|
2024-11-21 14:13 |
2022-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210359
|
6.1 |
MEDIUM
Network
|
microstrategy
|
microstrategy_web_sdk
|
Cross-Site Scripting (XSS) vulnerability in MicroStrategy Web SDK 10.11 and earlier, allows remote unauthenticated attackers to execute arbitrary code via the fileToUpload parameter to the uploadFile…
|
CWE-79
Cross-site Scripting
|
CVE-2020-22987
|
2024-11-21 14:13 |
2022-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210360
|
6.1 |
MEDIUM
Network
|
microstrategy
|
microstrategy_web_sdk
|
Cross-Site Scripting (XSS) vulnerability in MicroStrategy Web SDK 10.11 and earlier, allows remote unauthenticated attackers to execute arbitrary code via the searchString parameter to the wikiScrapp…
|
CWE-79
Cross-site Scripting
|
CVE-2020-22986
|
2024-11-21 14:13 |
2022-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|