|
211891
|
5.4 |
MEDIUM
Network
|
roundcube
|
webmail
|
Cross Site Scripting (XSS) vulneraibility in Roundcube mail .4.4 via database host and user in /installer/test.php.
|
CWE-79
Cross-site Scripting
|
CVE-2020-18670
|
2024-11-21 14:08 |
2021-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211892
|
5.4 |
MEDIUM
Network
|
webport
|
web_port
|
Cross Site Scripting (XSS) vulnerabililty in WebPort <=1.19.1 via the description parameter to script/listcalls.
|
CWE-79
Cross-site Scripting
|
CVE-2020-18668
|
2024-11-21 14:08 |
2021-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211893
|
9.8 |
CRITICAL
Network
|
webport
|
webport
|
SQL Injection vulnerability in WebPort <=1.19.1 via the new connection, parameter name in type-conn.
|
CWE-89
SQL Injection
|
CVE-2020-18667
|
2024-11-21 14:08 |
2021-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211894
|
5.3 |
MEDIUM
Network
|
webport
|
web_port
|
Directory Traversal vulnerability in WebPort <=1.19.1 in tags of system settings.
|
CWE-22
Path Traversal
|
CVE-2020-18665
|
2024-11-21 14:08 |
2021-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211895
|
5.4 |
MEDIUM
Network
|
webport
|
web_port
|
Cross Site Scripting (XSS) vulnerability in WebPort <=1.19.1via the connection name parameter in type-conn.
|
CWE-79
Cross-site Scripting
|
CVE-2020-18664
|
2024-11-21 14:08 |
2021-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211896
|
6.1 |
MEDIUM
Network
|
sir
|
gnuboard
|
Cross Site Scripting (XSS) vulnerability in gnuboard5 <=v5.3.2.8 via the act parameter in bbs/move_update.php.
|
CWE-79
Cross-site Scripting
|
CVE-2020-18663
|
2024-11-21 14:08 |
2021-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211897
|
9.8 |
CRITICAL
Network
|
sir
|
gnuboard
|
SQL Injection vulnerability in gnuboard5 <=v5.3.2.8 via the table_prefix parameter in install_db.php.
|
CWE-89
SQL Injection
|
CVE-2020-18662
|
2024-11-21 14:08 |
2021-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211898
|
6.1 |
MEDIUM
Network
|
sir
|
gnuboard
|
Cross Site Scripting (XSS) vulnerability in gnuboard5 <=v5.3.2.8 via the url parameter to bbs/login.php.
|
CWE-79
Cross-site Scripting
|
CVE-2020-18661
|
2024-11-21 14:08 |
2021-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211899
|
6.1 |
MEDIUM
Network
|
get-simple
|
getsimplecms
|
GetSimpleCMS <=3.3.15 has an open redirect in admin/changedata.php via the redirect function to the url parameter.
|
CWE-601
Open Redirect
|
CVE-2020-18660
|
2024-11-21 14:08 |
2021-06-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211900
|
6.1 |
MEDIUM
Network
|
get-simple
|
getsimplecms
|
Cross Site Scripting vulnerability in GetSimpleCMS <=3.3.15 via the (1) sitename, (2) username, and (3) email parameters to /admin/setup.php
|
CWE-79
Cross-site Scripting
|
CVE-2020-18659
|
2024-11-21 14:08 |
2021-06-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|