|
209801
|
6.1 |
MEDIUM
Network
|
74cms
|
74cms
|
74CMS v6.0.4 was discovered to contain a cross-site scripting (XSS) vulnerability via /index.php?m=&c=help&a=help_list&key.
|
CWE-79
Cross-site Scripting
|
CVE-2020-22421
|
2024-11-21 14:13 |
2021-12-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209802
|
5.4 |
MEDIUM
Network
|
shimo
|
document
|
Shimo Document v2.0.1 contains a cross-site scripting (XSS) vulnerability which allows attackers to execute arbitrary web scripts or HTML via a crafted payload inserted into the table content text fi…
|
CWE-79
Cross-site Scripting
|
CVE-2020-22719
|
2024-11-21 14:13 |
2021-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209803
|
8.8 |
HIGH
Network
|
beescms
|
beescms
|
BEESCMS v4.0 was discovered to contain an arbitrary file upload vulnerability via the component /admin/upload.php. This vulnerability allows attackers to execute arbitrary code via a crafted image fi…
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2020-23572
|
2024-11-21 14:13 |
2021-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209804
|
9.8 |
CRITICAL
Network
|
phpjabbers
|
fundraising_script
|
Stivasoft (Phpjabbers) Fundraising Script v1.0 was discovered to contain a SQL injection vulnerability via the pjActionSetAmount function.
|
CWE-89
SQL Injection
|
CVE-2020-22226
|
2024-11-21 14:13 |
2021-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209805
|
9.8 |
CRITICAL
Network
|
phpjabbers
|
fundraising_script
|
Stivasoft (Phpjabbers) Fundraising Script v1.0 was discovered to contain a SQL injection vulnerability via the pjActionLoadForm function.
|
CWE-89
SQL Injection
|
CVE-2020-22225
|
2024-11-21 14:13 |
2021-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209806
|
6.1 |
MEDIUM
Network
|
phpjabbers
|
fundraising_script
|
Stivasoft (Phpjabbers) Fundraising Script v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the pjActionPreview function.
|
CWE-79
Cross-site Scripting
|
CVE-2020-22224
|
2024-11-21 14:13 |
2021-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209807
|
9.8 |
CRITICAL
Network
|
phpjabbers
|
fundraising_script
|
Stivasoft (Phpjabbers) Fundraising Script v1.0 was discovered to contain a SQL injection vulnerability via the pjActionLoad function.
|
CWE-89
SQL Injection
|
CVE-2020-22223
|
2024-11-21 14:13 |
2021-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209808
|
6.1 |
MEDIUM
Network
|
phpjabbers
|
fundraising_script
|
Stivasoft (Phpjabbers) Fundraising Script v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the pjActionLoadCss function.
|
CWE-79
Cross-site Scripting
|
CVE-2020-22222
|
2024-11-21 14:13 |
2021-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209809
|
5.5 |
MEDIUM
Local
|
irfanview
|
irfanview
|
Irfanview v4.53 allows attackers to to cause a denial of service (DoS) via a crafted JPEG 2000 file. Related to "Integer Divide By Zero starting at JPEG2000!ShowPlugInSaveOptions_W+0x00000000000082ea"
|
CWE-369
Divide By Zero
|
CVE-2020-23567
|
2024-11-21 14:13 |
2021-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209810
|
5.5 |
MEDIUM
Local
|
irfanview
|
irfanview
|
Irfanview v4.53 was discovered to contain an infinity loop via JPEG2000!ShowPlugInSaveOptions_W+0x1ecd8.
|
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
|
CVE-2020-23566
|
2024-11-21 14:13 |
2021-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|