|
197961
|
8.8 |
HIGH
Network
|
tailor_mangement_system_project
|
tailor_mangement_system
|
SQL injection vulnerability found in Tailor Mangement System v.1 allows a remote attacker to execute arbitrary code via the title parameter.
|
CWE-89
SQL Injection
|
CVE-2020-36074
|
2024-11-21 14:28 |
2023-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197962
|
8.8 |
HIGH
Network
|
tailor_management_system_project
|
tailor_management_system
|
SQL injection vulnerability found in Tailor Management System v.1 allows a remote attacker to execute arbitrary code via the detail parameter of the document.php page.
|
CWE-89
SQL Injection
|
CVE-2020-36073
|
2024-11-21 14:28 |
2023-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197963
|
8.8 |
HIGH
Network
|
tailor_management_system_project
|
tailor_management_system
|
SQL injection vulnerability found in Tailor Management System v.1 allows a remote attacker to execute arbitrary code via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2020-36072
|
2024-11-21 14:28 |
2023-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197964
|
8.8 |
HIGH
Network
|
tailor_management_system_project
|
tailor_management_system
|
SQL injection vulnerability found in Tailor Management System v.1 allows a remote authenticated attacker to execute arbitrary code via the customer parameter of the email.php page.
|
CWE-89
SQL Injection
|
CVE-2020-36071
|
2024-11-21 14:28 |
2023-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197965
|
6.5 |
MEDIUM
Network
|
fiserv
|
prologue
|
Fiserv Prologue through 2020-12-16 does not properly protect the database password. If an attacker were to gain access to the configuration file (specifically, the LogPassword attribute within appcon…
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2020-35992
|
2024-11-21 14:28 |
2022-08-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197966
|
9.8 |
CRITICAL
Network
|
phpgurukul
|
dairy_farm_shop_management_system
|
Dairy Farm Shop Management System v1.0 was discovered to contain hardcoded credentials in the source code which allows attackers access to the control panel if compromised.
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2020-36062
|
2024-11-21 14:28 |
2022-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197967
|
9.8 |
CRITICAL
Network
|
online_course_registration_project
|
online_course_registration
|
Online Course Registration v1.0 was discovered to contain hardcoded credentials in the source code which allows attackers access to the control panel if compromised.
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2020-36064
|
2024-11-21 14:28 |
2022-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197968
|
5.4 |
MEDIUM
Network
|
beetel
|
777vr1_firmware
|
Beetel 777VR1-DI Hardware Version REV.1.01 Firmware Version V01.00.09_55 was discovered to contain a cross-site scripting (XSS) vulnerability via the Ping diagnostic option.
|
CWE-79
Cross-site Scripting
|
CVE-2020-36056
|
2024-11-21 14:28 |
2022-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197969
|
6.5 |
MEDIUM
Network
|
aomedia
|
aomedia
|
AOM v2.0.1 was discovered to contain a NULL pointer dereference via the component rate_hist.c.
|
CWE-476
NULL Pointer Dereference
|
CVE-2020-36135
|
2024-11-21 14:28 |
2021-12-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197970
|
6.5 |
MEDIUM
Network
|
aomedia
|
aomedia
|
AOM v2.0.1 was discovered to contain a segmentation violation via the component aom_dsp/x86/obmc_sad_avx2.c.
|
CWE-125
Out-of-bounds Read
|
CVE-2020-36134
|
2024-11-21 14:28 |
2021-12-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|