|
208571
|
7.5 |
HIGH
Network
|
gilcc_project
|
gilcc
|
Buffer overflow vulnerability in function src_parser_trans_stage_1_2_3 trgil gilcc before commit 803969389ca9c06237075a7f8eeb1a19e6651759, allows attackers to cause a denial of service.
|
CWE-120
Classic Buffer Overflow
|
CVE-2020-21572
|
2024-11-21 14:12 |
2021-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208572
|
7.5 |
HIGH
Network
|
libiec_iccp_mod_project
|
libiec_iccp_mod
|
Buffer overflow vulnerability in fcovatti libiec_iccp_mod v1.5, allows attackers to cause a denail of service when trying to calloc an unexpectiedly large space.
|
CWE-120
Classic Buffer Overflow
|
CVE-2020-20658
|
2024-11-21 14:12 |
2021-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208573
|
7.5 |
HIGH
Network
|
libiec_iccp_mod_project
|
libiec_iccp_mod
|
Buffer overflow vulnerability in fcovatti libiec_iccp_mod v1.5, allows attackers to cause a denial of service via an unexpected packet while trying to connect.
|
CWE-120
Classic Buffer Overflow
|
CVE-2020-20657
|
2024-11-21 14:12 |
2021-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208574
|
9.8 |
CRITICAL
Network
|
cszcms
|
csz_cms
|
CSZ CMS v1.2.4 was discovered to contain an arbitrary file upload vulnerability in the component /core/MY_Security.php.
|
CWE-89
SQL Injection
|
CVE-2020-21250
|
2024-11-21 14:12 |
2021-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208575
|
5.4 |
MEDIUM
Network
|
akaunting
|
akaunting
|
Akaunting v1.3.17 was discovered to contain a stored cross-site scripting (XSS) vulnerability which allows attackers to execute arbitrary web scripts or HTML via a crafted payload in the Company Name…
|
CWE-79
Cross-site Scripting
|
CVE-2020-20908
|
2024-11-21 14:12 |
2021-10-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208576
|
5.4 |
MEDIUM
Network
|
jeecms
|
jeecms_x
|
JEECMS x1.1 contains a stored cross-site scripting (XSS) vulnerability in the component of /member-vipcenter.htm, which allows attackers to execute arbitrary web scripts or HTML via a crafted payload.
|
CWE-79
Cross-site Scripting
|
CVE-2020-21729
|
2024-11-21 14:12 |
2021-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208577
|
9.8 |
CRITICAL
Network
|
opensns
|
opensns
|
OpenSNS v6.1.0 contains a blind SQL injection vulnerability in /Controller/ChinaCityController.class.php via the cid parameter.
|
CWE-89
SQL Injection
|
CVE-2020-21726
|
2024-11-21 14:12 |
2021-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208578
|
9.8 |
CRITICAL
Network
|
opensns
|
opensns
|
OpenSNS v6.1.0 contains a blind SQL injection vulnerability in /Controller/ChinaCityController.class.php via the pid parameter.
|
CWE-89
SQL Injection
|
CVE-2020-21725
|
2024-11-21 14:12 |
2021-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208579
|
9.8 |
CRITICAL
Network
|
thinkphp50-cms_project
|
thinkphp50-cms
|
ThinkPHP50-CMS v1.0 contains a remote code execution (RCE) vulnerability in the component /public/?s=captcha.
|
NVD-CWE-noinfo
|
CVE-2020-21865
|
2024-11-21 14:12 |
2021-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208580
|
6.5 |
MEDIUM
Network
|
wdja
|
wdja_cms
|
A Cross-Site Request Forgery (CSRF) in WDJA CMS v1.5.2 allows attackers to arbitrarily add administrator accounts via a crafted URL.
|
CWE-352
Origin Validation Error
|
CVE-2020-21658
|
2024-11-21 14:12 |
2021-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|