|
208801
|
- |
|
-
|
-
|
An arbitrary file upload vulnerability in the Add Category function of Codoforum v4.9 allows attackers to execute arbitrary code via uploading a crafted file.
|
-
|
CVE-2020-22539
|
2024-11-21 14:13 |
2024-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208802
|
9.8 |
CRITICAL
Network
|
mybb
|
mybb
|
Installer RCE on settings file write in MyBB before 1.8.22.
|
NVD-CWE-noinfo
|
CVE-2020-22612
|
2024-11-21 14:13 |
2023-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208803
|
5.5 |
MEDIUM
Local
|
tukaani
|
xz
|
An issue discovered in XZ 5.2.5 allows attackers to cause a denial of service via decompression of a crafted file. NOTE: the vendor disputes the claims of "endless output" and "denial of service" bec…
|
NVD-CWE-noinfo
|
CVE-2020-22916
|
2024-11-21 14:13 |
2023-08-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208804
|
6.5 |
MEDIUM
Network
|
libraw
|
libraw
|
Buffer Overflow vulnerability in LibRaw::stretch() function in libraw\src\postprocessing\aspect_ratio.cpp.
|
CWE-120
Classic Buffer Overflow
|
CVE-2020-22628
|
2024-11-21 14:13 |
2023-08-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208805
|
7.5 |
HIGH
Network
|
memcached
|
memcached
|
Memcached 1.6.0 before 1.6.3 allows remote attackers to cause a denial of service (daemon crash) via a crafted meta command.
|
CWE-77
Command Injection
|
CVE-2020-22570
|
2024-11-21 14:13 |
2023-08-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208806
|
6.5 |
MEDIUM
Network
|
freeimage_project
|
freeimage
|
Buffer Overflow vulnerability in FreeImage_Load function in FreeImage Library 3.19.0(r1828) allows attackers to cuase a denial of service via crafted PFM file.
|
CWE-120
Classic Buffer Overflow
|
CVE-2020-22524
|
2024-11-21 14:13 |
2023-08-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208807
|
7.5 |
HIGH
Network
|
libssh2
|
libssh2
|
An issue was discovered in function _libssh2_packet_add in libssh2 1.10.0 allows attackers to access out of bounds memory.
|
CWE-787
Out-of-bounds Write
|
CVE-2020-22218
|
2024-11-21 14:13 |
2023-08-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208808
|
5.9 |
MEDIUM
Network
|
c-ares debian
|
c-ares debian_linux
|
Buffer overflow vulnerability in c-ares before 1_16_1 thru 1_17_0 via function ares_parse_soa_reply in ares_parse_soa_reply.c.
|
CWE-125
Out-of-bounds Read
|
CVE-2020-22217
|
2024-11-21 14:13 |
2023-08-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208809
|
6.1 |
MEDIUM
Network
|
samsung
|
sww-3400rw_firmware
|
A reflected cross site scripting (XSS) vulnerability was discovered on Samsung sww-3400rw Router devices via the m2 parameter of the sess-bin/command.cgi
|
CWE-79
Cross-site Scripting
|
CVE-2020-22181
|
2024-11-21 14:13 |
2023-08-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208810
|
8.8 |
HIGH
Network
|
yzmcms
|
yzmcms
|
Cross Site Request Forgery (CSRF) vulnerability in yzmcms version 5.6, allows remote attackers to escalate privileges and gain sensitive information sitemodel/add.html endpoint.
|
CWE-352
Origin Validation Error
|
CVE-2020-23595
|
2024-11-21 14:13 |
2023-08-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|