|
211461
|
7.8 |
HIGH
Local
|
irfanview
|
irfanview
|
Irfanview v4.53 allows attackers to execute arbitrary code via a crafted JPEG 2000 file. Related to a "Data from Faulting Address controls Branch Selection starting at JPEG2000!ShowPlugInSaveOptions_…
|
NVD-CWE-noinfo
|
CVE-2020-23565
|
2024-11-21 14:13 |
2021-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211462
|
7.8 |
HIGH
Local
|
text2pdf_project
|
text2pdf
|
An issue was discovered in function StartPage in text2pdf.c in pdfcorner text2pdf 1.1, allows attackers to cause denial of service or possibly other undisclosed impacts.
|
NVD-CWE-noinfo
|
CVE-2020-23680
|
2024-11-21 14:13 |
2021-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211463
|
9.8 |
CRITICAL
Network
|
linux_network_project
|
linux_network_project
|
Buffer overflow vulnerability in Renleilei1992 Linux_Network_Project 1.0, allows attackers to execute arbitrary code, via the password field.
|
CWE-120
Classic Buffer Overflow
|
CVE-2020-23679
|
2024-11-21 14:13 |
2021-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211464
|
6.1 |
MEDIUM
Network
|
chamilo
|
chamilo_lms
|
Chamilo LMS version 1.11.10 contains an XSS vulnerability in the personal profile edition form, affecting the user him/herself and social network friends.
|
CWE-79
Cross-site Scripting
|
CVE-2020-23126
|
2024-11-21 14:13 |
2021-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211465
|
8.1 |
HIGH
Network
|
struktur
|
libheif
|
Buffer overflow vulnerability in function convert_colorspace in heif_colorconversion.cc in libheif v1.6.2, allows attackers to cause a denial of service and disclose sensitive information, via a craf…
|
CWE-120
Classic Buffer Overflow
|
CVE-2020-23109
|
2024-11-21 14:13 |
2021-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211466
|
9.8 |
CRITICAL
Network
|
tendacn
|
ac10u_firmware ac9_firmware
|
Stack-based buffer overflow in Tenda AC-10U AC1200 Router US_AC10UV1.0RTL_V15.03.06.48_multi_TDE01 allows remote attackers to execute arbitrary code via the timeZone parameter to goform/SetSysTimeCfg.
|
CWE-787
Out-of-bounds Write
|
CVE-2020-22079
|
2024-11-21 14:13 |
2021-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211467
|
7.8 |
HIGH
Local
|
irfanview
|
irfanview
|
IrfanView 4.54 allows attackers to cause a denial of service or possibly other unspecified impacts via a crafted .cr2 file, related to a "Data from Faulting Address controls Branch Selection starting…
|
NVD-CWE-noinfo
|
CVE-2020-23549
|
2024-11-21 14:13 |
2021-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211468
|
7.8 |
HIGH
Local
|
irfanview
|
irfanview
|
IrfanView 4.54 allows attackers to cause a denial of service or possibly other unspecified impacts via a crafted XBM file, related to a "Data from Faulting Address is used as one or more arguments in…
|
NVD-CWE-noinfo
|
CVE-2020-23546
|
2024-11-21 14:13 |
2021-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211469
|
6.1 |
MEDIUM
Network
|
hznuoj_project
|
hznuoj
|
A cross-site scripting (XSS) vulnerability was discovered in the OJ/admin-tool /cal_scores.php function of HZNUOJ v1.0.
|
CWE-79
Cross-site Scripting
|
CVE-2020-22312
|
2024-11-21 14:13 |
2021-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211470
|
6.1 |
MEDIUM
Network
|
froala
|
froala_editor
|
A cross site scripting (XSS) vulnerability in the Insert Video function of Froala WYSIWYG Editor 3.1.0 allows attackers to execute arbitrary web scripts or HTML.
|
CWE-79
Cross-site Scripting
|
CVE-2020-22864
|
2024-11-21 14:13 |
2021-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|