|
209261
|
5.4 |
MEDIUM
Network
|
hucart
|
hucart
|
Cross Site Scripting (XSS) vulnerabilty exists in Hucart CMS 5.7.4 is via the mes_title field. The first user inserts a malicious script into the header field of the outbox and sends it to other user…
|
CWE-79
Cross-site Scripting
|
CVE-2020-18475
|
2024-11-21 14:08 |
2021-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209262
|
5.4 |
MEDIUM
Network
|
rukovoditel
|
rukovoditel
|
Stored cross-site scripting (XSS) vulnerability in the Name of application field found in the General Configuration page in Rukovoditel 2.4.1 allows remote attackers to inject arbitrary web script or…
|
CWE-79
Cross-site Scripting
|
CVE-2020-18470
|
2024-11-21 14:08 |
2021-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209263
|
5.4 |
MEDIUM
Network
|
rukovoditel
|
rukovoditel
|
Stored cross-site scripting (XSS) vulnerability in the Copyright Text field found in the Application page under the Configuration menu in Rukovoditel 2.4.1 allows remote attackers to inject arbitrary…
|
CWE-79
Cross-site Scripting
|
CVE-2020-18469
|
2024-11-21 14:08 |
2021-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209264
|
5.4 |
MEDIUM
Network
|
qdpm
|
qdpm
|
Cross Site Scripting (XSS) vulnerability exists in qdPM 9.1 in the Heading field found in the Login Page page under the General menu via a crafted website name by doing an authenticated POST HTTP req…
|
CWE-79
Cross-site Scripting
|
CVE-2020-18468
|
2024-11-21 14:08 |
2021-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209265
|
5.4 |
MEDIUM
Network
|
bigtreecms
|
bigtree_cms
|
Cross Site Scripting (XSS) vulnerabilty exists in BigTree-CMS 4.4.3 in the tag name field found in the Tags page under the General menu via a crafted website name by doing an authenticated POST HTTP …
|
CWE-79
Cross-site Scripting
|
CVE-2020-18467
|
2024-11-21 14:08 |
2021-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209266
|
5.4 |
MEDIUM
Network
|
popojicms
|
popojicms
|
Cross Site Scripting (XSS) vulnerability exists in PopojiCMS 2.0.1 in admin.php?mod=menumanager--------- edit menu.
|
CWE-79
Cross-site Scripting
|
CVE-2020-18065
|
2024-11-21 14:08 |
2021-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209267
|
5.5 |
MEDIUM
Local
|
broadcom
|
tcpreplay
|
Buffer Overflow in Tcpreplay v4.3.2 allows attackers to cause a Denial of Service via the 'do_checksum' function in 'checksum.c'. It can be triggered by sending a crafted pcap file to the 'tcpreplay-…
|
CWE-120
Classic Buffer Overflow
|
CVE-2020-18976
|
2024-11-21 14:08 |
2021-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209268
|
3.3 |
LOW
Local
|
nasm
|
netwide_assembler
|
Buffer Overflow in Netwide Assembler (NASM) v2.15.xx allows attackers to cause a denial of service via 'crc64i' in the component 'nasmlib/crc64'. This issue is different than CVE-2019-7147.
|
CWE-120
Classic Buffer Overflow
|
CVE-2020-18974
|
2024-11-21 14:08 |
2021-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209269
|
5.5 |
MEDIUM
Local
|
podofo_project
|
podofo
|
Exposure of Sensitive Information to an Unauthorized Actor in PoDoFo v0.9.6 allows attackers to obtain sensitive information via 'IsNextToken' in the component 'src/base/PdfToenizer.cpp'.
|
CWE-668
Exposure of Resource to Wrong Sphere
|
CVE-2020-18972
|
2024-11-21 14:08 |
2021-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209270
|
5.5 |
MEDIUM
Local
|
podofo_project
|
podofo
|
Stack-based Buffer Overflow in PoDoFo v0.9.6 allows attackers to cause a denial of service via the component 'src/base/PdfDictionary.cpp:65'.
|
CWE-787
Out-of-bounds Write
|
CVE-2020-18971
|
2024-11-21 14:08 |
2021-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|