|
198191
|
9.8 |
CRITICAL
Network
|
citsmart
|
citsmart
|
CITSmart before 9.1.2.23 allows LDAP Injection.
|
CWE-74
Injection
|
CVE-2020-35775
|
2024-11-21 14:28 |
2021-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198192
|
6.5 |
MEDIUM
Network
|
imagely
|
nextgen_gallery
|
A Cross-Site Request Forgery (CSRF) issue in the NextGEN Gallery plugin before 3.5.0 for WordPress allows File Upload. (It is possible to bypass CSRF protection by simply not including a nonce parame…
|
CWE-352
Origin Validation Error
|
CVE-2020-35943
|
2024-11-21 14:28 |
2021-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198193
|
8.8 |
HIGH
Network
|
imagely
|
nextgen_gallery
|
A Cross-Site Request Forgery (CSRF) issue in the NextGEN Gallery plugin before 3.5.0 for WordPress allows File Upload and Local File Inclusion via settings modification, leading to Remote Code Execut…
|
CWE-352 CWE-79
Origin Validation Error Cross-site Scripting
|
CVE-2020-35942
|
2024-11-21 14:28 |
2021-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198194
|
8.8 |
HIGH
Network
|
symonics fedoraproject
|
libmysofa fedora
|
Buffer overflow in readDataVar in hdf/dataobject.c in Symonics libmysofa 0.5 - 1.1 allows attackers to execute arbitrary code via a crafted SOFA.
|
CWE-120
Classic Buffer Overflow
|
CVE-2020-36152
|
2024-11-21 14:28 |
2021-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198195
|
6.5 |
MEDIUM
Network
|
symonics fedoraproject
|
libmysofa fedora
|
Incorrect handling of input data in mysofa_resampler_reset_mem function in the libmysofa library 0.5 - 1.1 will lead to heap buffer overflow and overwriting large memory block.
|
CWE-787
Out-of-bounds Write
|
CVE-2020-36151
|
2024-11-21 14:28 |
2021-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198196
|
6.5 |
MEDIUM
Network
|
symonics fedoraproject
|
libmysofa fedora
|
Incorrect handling of input data in loudness function in the libmysofa library 0.5 - 1.1 will lead to heap buffer overflow and access to unallocated memory block.
|
CWE-125
Out-of-bounds Read
|
CVE-2020-36150
|
2024-11-21 14:28 |
2021-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198197
|
6.5 |
MEDIUM
Network
|
symonics fedoraproject
|
libmysofa fedora
|
Incorrect handling of input data in changeAttribute function in the libmysofa library 0.5 - 1.1 will lead to NULL pointer dereference and segmentation fault error in case of restrictive memory protec…
|
CWE-476
NULL Pointer Dereference
|
CVE-2020-36149
|
2024-11-21 14:28 |
2021-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198198
|
6.5 |
MEDIUM
Network
|
symonics fedoraproject
|
libmysofa fedora
|
Incorrect handling of input data in verifyAttribute function in the libmysofa library 0.5 - 1.1 will lead to NULL pointer dereference and segmentation fault error in case of restrictive memory protec…
|
CWE-476
NULL Pointer Dereference
|
CVE-2020-36148
|
2024-11-21 14:28 |
2021-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198199
|
8.8 |
HIGH
Network
|
zohocorp
|
manageengine_applications_manager
|
doFilter in com.adventnet.appmanager.filter.UriCollector in Zoho ManageEngine Applications Manager through 14930 allows an authenticated SQL Injection via the resourceid parameter to showresource.do.
|
CWE-89
SQL Injection
|
CVE-2020-35765
|
2024-11-21 14:28 |
2021-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198200
|
9.8 |
CRITICAL
Network
|
asus
|
rt-ax86u_firmware
|
ASUS RT-AX86U router firmware below version under 9.0.0.4_386 has a buffer overflow in the blocking_request.cgi function of the httpd module that can cause code execution when an attacker constructs …
|
CWE-120
Classic Buffer Overflow
|
CVE-2020-36109
|
2024-11-21 14:28 |
2021-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|