|
197771
|
9.8 |
CRITICAL
Network
|
online_course_registration_project
|
online_course_registration
|
Online Course Registration v1.0 was discovered to contain hardcoded credentials in the source code which allows attackers access to the control panel if compromised.
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2020-36064
|
2024-11-21 14:28 |
2022-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197772
|
5.4 |
MEDIUM
Network
|
beetel
|
777vr1_firmware
|
Beetel 777VR1-DI Hardware Version REV.1.01 Firmware Version V01.00.09_55 was discovered to contain a cross-site scripting (XSS) vulnerability via the Ping diagnostic option.
|
CWE-79
Cross-site Scripting
|
CVE-2020-36056
|
2024-11-21 14:28 |
2022-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197773
|
6.5 |
MEDIUM
Network
|
aomedia
|
aomedia
|
AOM v2.0.1 was discovered to contain a NULL pointer dereference via the component rate_hist.c.
|
CWE-476
NULL Pointer Dereference
|
CVE-2020-36135
|
2024-11-21 14:28 |
2021-12-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197774
|
6.5 |
MEDIUM
Network
|
aomedia
|
aomedia
|
AOM v2.0.1 was discovered to contain a segmentation violation via the component aom_dsp/x86/obmc_sad_avx2.c.
|
CWE-125
Out-of-bounds Read
|
CVE-2020-36134
|
2024-11-21 14:28 |
2021-12-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197775
|
8.8 |
HIGH
Network
|
aomedia
|
aomedia
|
AOM v2.0.1 was discovered to contain a global buffer overflow via the component av1/encoder/partition_search.h.
|
CWE-120
Classic Buffer Overflow
|
CVE-2020-36133
|
2024-11-21 14:28 |
2021-12-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197776
|
8.8 |
HIGH
Network
|
aomedia
|
aomedia
|
AOM v2.0.1 was discovered to contain a stack buffer overflow via the component stats/rate_hist.c.
|
CWE-787
Out-of-bounds Write
|
CVE-2020-36131
|
2024-11-21 14:28 |
2021-12-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197777
|
6.5 |
MEDIUM
Network
|
aomedia
|
aomedia
|
AOM v2.0.1 was discovered to contain a NULL pointer dereference via the component av1/av1_dx_iface.c.
|
CWE-476
NULL Pointer Dereference
|
CVE-2020-36130
|
2024-11-21 14:28 |
2021-12-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197778
|
8.8 |
HIGH
Network
|
aomedia
|
aomedia
|
AOM v2.0.1 was discovered to contain a stack buffer overflow via the component src/aom_image.c.
|
CWE-787
Out-of-bounds Write
|
CVE-2020-36129
|
2024-11-21 14:28 |
2021-12-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197779
|
9.8 |
CRITICAL
Network
|
water_billing_system_project
|
water_billing_system
|
SQL injection vulnerability in SourceCodester Water Billing System 1.0 via the id parameter to edituser.php.
|
CWE-89
SQL Injection
|
CVE-2020-36033
|
2024-11-21 14:28 |
2021-07-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197780
|
5.4 |
MEDIUM
Network
|
rukovoditel
|
rukovoditel
|
A stored cross site scripting (XSS) vulnerability in the 'Entities List' feature of Rukovoditel 2.7.2 allows authenticated attackers to execute arbitrary web scripts or HTML via a crafted payload ent…
|
CWE-79
Cross-site Scripting
|
CVE-2020-35987
|
2024-11-21 14:28 |
2021-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|