|
210651
|
6.5 |
MEDIUM
Network
|
ffmpeg debian
|
ffmpeg debian_linux
|
FFmpeg 4.2 is affected by a Divide By Zero issue via libavcodec/lpc.h, which allows a remote malicious user to cause a Denial of Service.
|
CWE-369
Divide By Zero
|
CVE-2020-20445
|
2024-11-21 14:12 |
2021-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210652
|
7.5 |
HIGH
Network
|
ffmpeg debian
|
ffmpeg debian_linux
|
Buffer Overflow vulnerability exists in FFmpeg 4.1 via apng_do_inverse_blend in libavcodec/pngenc.c, which could let a remote malicious user cause a Denial of Service
|
CWE-120
Classic Buffer Overflow
|
CVE-2020-21041
|
2024-11-21 14:12 |
2021-05-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210653
|
9.1 |
CRITICAL
Network
|
metinfo
|
metinfo
|
MetInfo 7.0 beta is affected by a file modification vulnerability. Attackers can delete and modify ini files in app/system/language/admin/language_general.class.php and app/system/include/function/fi…
|
CWE-22
Path Traversal
|
CVE-2020-20907
|
2024-11-21 14:12 |
2021-05-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210654
|
6.1 |
MEDIUM
Network
|
halo
|
halo
|
Cross Site Scripting (XSS) vulnerability in Halo 1.1.3 via post publish components in the manage panel, which lets a remote malicious user execute arbitrary code.
|
CWE-79
Cross-site Scripting
|
CVE-2020-21345
|
2024-11-21 14:12 |
2021-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210655
|
8.1 |
HIGH
Network
|
fusionpbx
|
fusionpbx
|
Directory Traversal vulnerability in FusionPBX 4.5.7, which allows a remote malicious user to delete folders on the system via the folder variable to app/edit/folderdelete.php.
|
CWE-22
Path Traversal
|
CVE-2020-21057
|
2024-11-21 14:12 |
2021-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210656
|
4.3 |
MEDIUM
Network
|
fusionpbx
|
fusionpbx
|
Directory Traversal vulnerability exists in FusionPBX 4.5.7, which allows a remote malicious user to create folders via the folder variale to app\edit\foldernew.php.
|
CWE-22
Path Traversal
|
CVE-2020-21056
|
2024-11-21 14:12 |
2021-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210657
|
6.5 |
MEDIUM
Network
|
fusionpbx
|
fusionpbx
|
A Directory Traversal vulnerability exists in FusionPBX 4.5.7 allows malicoius users to rename any file of the system.via the (1) folder, (2) filename, and (3) newfilename variables in app\edit\filer…
|
CWE-22
Path Traversal
|
CVE-2020-21055
|
2024-11-21 14:12 |
2021-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210658
|
6.1 |
MEDIUM
Network
|
fusionpbx
|
fusionpbx
|
Cross Site Scripting (XSS) vulnerability in FusionPBX 4.5.7 allows remote malicious users to inject arbitrary web script or HTML via an unsanitized "f" variable in app\vars\vars_textarea.php.
|
CWE-79
Cross-site Scripting
|
CVE-2020-21054
|
2024-11-21 14:12 |
2021-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210659
|
6.1 |
MEDIUM
Network
|
fusionpbx
|
fusionpbx
|
Cross Site Scriptiong (XSS) vulnerability exists in FusionPBX 4.5.7 allows remote malicious users to inject arbitrary web script or HTML via an unsanitized "query_string" variable in app\devices\devi…
|
CWE-79
Cross-site Scripting
|
CVE-2020-21053
|
2024-11-21 14:12 |
2021-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210660
|
9.8 |
CRITICAL
Network
|
pluck-cms
|
pluck
|
In Pluck-4.7.10-dev2 admin background, a remote command execution vulnerability exists when uploading files.
|
CWE-77
Command Injection
|
CVE-2020-20951
|
2024-11-21 14:12 |
2021-05-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|