|
210601
|
7.2 |
HIGH
Network
|
s-cms
|
s-cms
|
A remote code execution (RCE) vulnerability in /1.com.php of S-CMS PHP v3.0 allows attackers to getshell via modification of a PHP file.
|
CWE-862
Missing Authorization
|
CVE-2020-20698
|
2024-11-21 14:12 |
2021-07-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210602
|
9.8 |
CRITICAL
Network
|
beckhoff
|
cx9020
|
Incorrect Access Control in Beckhoff Automation GmbH & Co. KG CX9020 with firmware version CX9020_CB3011_WEC7_HPS_v602_TC31_B4016.6 allows remote attackers to bypass authentication via the "CE Remote…
|
NVD-CWE-Other
|
CVE-2020-20741
|
2024-11-21 14:12 |
2021-07-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210603
|
9.8 |
CRITICAL
Network
|
motorola
|
cx2_firmware
|
An command injection vulnerability in HNAP1/SetWLanApcliSettings of Motorola CX2 router CX 1.0.2 Build 20190508 Rel.97360n allows attackers to execute arbitrary system commands.
|
CWE-78
OS Command
|
CVE-2020-21937
|
2024-11-21 14:12 |
2021-07-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210604
|
5.3 |
MEDIUM
Network
|
motorola
|
cx2_firmware
|
An issue in HNAP1/GetMultipleHNAPs of Motorola CX2 router CX 1.0.2 Build 20190508 Rel.97360n allows attackers to access the components GetStationSettings, GetWebsiteFilterSettings and GetNetworkSetti…
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2020-21936
|
2024-11-21 14:12 |
2021-07-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210605
|
9.8 |
CRITICAL
Network
|
motorola
|
cx2_firmware
|
A command injection vulnerability in HNAP1/GetNetworkTomographySettings of Motorola CX2 router CX 1.0.2 Build 20190508 Rel.97360n allows attackers to execute arbitrary code.
|
CWE-78
OS Command
|
CVE-2020-21935
|
2024-11-21 14:12 |
2021-07-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210606
|
7.5 |
HIGH
Network
|
motorola
|
cx2_firmware
|
An issue was discovered in Motorola CX2 router CX 1.0.2 Build 20190508 Rel.97360n where authentication to download the Syslog could be bypassed.
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2020-21934
|
2024-11-21 14:12 |
2021-07-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210607
|
7.5 |
HIGH
Network
|
motorola
|
cx2_firmware
|
An issue was discovered in Motorola CX2 router CX 1.0.2 Build 20190508 Rel.97360n where the admin password and private key could be found in the log tar package.
|
CWE-532
Inclusion of Sensitive Information in Log Files
|
CVE-2020-21933
|
2024-11-21 14:12 |
2021-07-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210608
|
5.3 |
MEDIUM
Network
|
motorola
|
cx2_firmware
|
A vulnerability in /Login.html of Motorola CX2 router CX 1.0.2 Build 20190508 Rel.97360n allows attackers to bypass login and obtain a partially authorized token and uid.
|
CWE-287
Improper Authentication
|
CVE-2020-21932
|
2024-11-21 14:12 |
2021-07-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210609
|
9.8 |
CRITICAL
Network
|
metinfo
|
metinfo
|
SQL Injection vulnerability in Metinfo 7.0.0 beta in member/getpassword.php?lang=cn&a=dovalid.
|
CWE-89
SQL Injection
|
CVE-2020-21133
|
2024-11-21 14:12 |
2021-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210610
|
9.8 |
CRITICAL
Network
|
metinfo
|
metinfo
|
SQL Injection vulnerability in Metinfo 7.0.0beta in index.php.
|
CWE-89
SQL Injection
|
CVE-2020-21132
|
2024-11-21 14:12 |
2021-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|