|
209161
|
6.1 |
MEDIUM
Network
|
zrlog
|
zrlog
|
Cross Site Scripting vulnerability in ZrLog 2.1.0 via the (1) userName and (2) email parameters in post/addComment.
|
CWE-79
Cross-site Scripting
|
CVE-2020-18066
|
2024-11-21 14:08 |
2021-06-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209162
|
8.8 |
HIGH
Network
|
evernote
|
evernote
|
An issue was found in the Evernote client for Windows 10, 7, and 2008 in the protocol handler. This enables attackers for arbitrary command execution if the user clicks on a specially crafted URL. AK…
|
CWE-77
Command Injection
|
CVE-2020-17759
|
2024-11-21 14:08 |
2021-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209163
|
6.5 |
MEDIUM
Network
|
rc_project rcpro_project
|
rc rcpro
|
An issue was discovered in function addMeByRC in the smart contract implementation for RC, an Ethereum token, allows attackers to transfer an arbitrary amount of tokens to an arbitrary address.
|
NVD-CWE-noinfo
|
CVE-2020-17753
|
2024-11-21 14:08 |
2021-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209164
|
9.8 |
CRITICAL
Network
|
mon_project
|
mon
|
Integer overflow vulnerability in payable function of a smart contract implementation for an Ethereum token, as demonstrated by the smart contract implemented at address 0xB49E984A83d7A638E7F2889fc83…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2020-17752
|
2024-11-21 14:08 |
2021-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209165
|
5.4 |
MEDIUM
Network
|
roundcube
|
webmail
|
Cross Site Scripting (XSS) vulnerability in Roundcube Mail <=1.4.4 via smtp config in /installer/test.php.
|
CWE-79
Cross-site Scripting
|
CVE-2020-18671
|
2024-11-21 14:08 |
2021-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209166
|
5.4 |
MEDIUM
Network
|
roundcube
|
webmail
|
Cross Site Scripting (XSS) vulneraibility in Roundcube mail .4.4 via database host and user in /installer/test.php.
|
CWE-79
Cross-site Scripting
|
CVE-2020-18670
|
2024-11-21 14:08 |
2021-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209167
|
5.4 |
MEDIUM
Network
|
webport
|
web_port
|
Cross Site Scripting (XSS) vulnerabililty in WebPort <=1.19.1 via the description parameter to script/listcalls.
|
CWE-79
Cross-site Scripting
|
CVE-2020-18668
|
2024-11-21 14:08 |
2021-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209168
|
9.8 |
CRITICAL
Network
|
webport
|
webport
|
SQL Injection vulnerability in WebPort <=1.19.1 via the new connection, parameter name in type-conn.
|
CWE-89
SQL Injection
|
CVE-2020-18667
|
2024-11-21 14:08 |
2021-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209169
|
5.3 |
MEDIUM
Network
|
webport
|
web_port
|
Directory Traversal vulnerability in WebPort <=1.19.1 in tags of system settings.
|
CWE-22
Path Traversal
|
CVE-2020-18665
|
2024-11-21 14:08 |
2021-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209170
|
5.4 |
MEDIUM
Network
|
webport
|
web_port
|
Cross Site Scripting (XSS) vulnerability in WebPort <=1.19.1via the connection name parameter in type-conn.
|
CWE-79
Cross-site Scripting
|
CVE-2020-18664
|
2024-11-21 14:08 |
2021-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|