|
209311
|
5.5 |
MEDIUM
Local
|
image-processing_project
|
image-processing
|
An issue was discoverered in in abhijitnathwani image-processing v0.1.0, allows local attackers to cause a denial of service via a crafted image file.
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2020-21573
|
2024-11-21 14:12 |
2021-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209312
|
7.5 |
HIGH
Network
|
gilcc_project
|
gilcc
|
Buffer overflow vulnerability in function src_parser_trans_stage_1_2_3 trgil gilcc before commit 803969389ca9c06237075a7f8eeb1a19e6651759, allows attackers to cause a denial of service.
|
CWE-120
Classic Buffer Overflow
|
CVE-2020-21572
|
2024-11-21 14:12 |
2021-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209313
|
7.5 |
HIGH
Network
|
libiec_iccp_mod_project
|
libiec_iccp_mod
|
Buffer overflow vulnerability in fcovatti libiec_iccp_mod v1.5, allows attackers to cause a denail of service when trying to calloc an unexpectiedly large space.
|
CWE-120
Classic Buffer Overflow
|
CVE-2020-20658
|
2024-11-21 14:12 |
2021-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209314
|
7.5 |
HIGH
Network
|
libiec_iccp_mod_project
|
libiec_iccp_mod
|
Buffer overflow vulnerability in fcovatti libiec_iccp_mod v1.5, allows attackers to cause a denial of service via an unexpected packet while trying to connect.
|
CWE-120
Classic Buffer Overflow
|
CVE-2020-20657
|
2024-11-21 14:12 |
2021-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209315
|
9.8 |
CRITICAL
Network
|
cszcms
|
csz_cms
|
CSZ CMS v1.2.4 was discovered to contain an arbitrary file upload vulnerability in the component /core/MY_Security.php.
|
CWE-89
SQL Injection
|
CVE-2020-21250
|
2024-11-21 14:12 |
2021-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209316
|
5.4 |
MEDIUM
Network
|
akaunting
|
akaunting
|
Akaunting v1.3.17 was discovered to contain a stored cross-site scripting (XSS) vulnerability which allows attackers to execute arbitrary web scripts or HTML via a crafted payload in the Company Name…
|
CWE-79
Cross-site Scripting
|
CVE-2020-20908
|
2024-11-21 14:12 |
2021-10-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209317
|
5.4 |
MEDIUM
Network
|
jeecms
|
jeecms_x
|
JEECMS x1.1 contains a stored cross-site scripting (XSS) vulnerability in the component of /member-vipcenter.htm, which allows attackers to execute arbitrary web scripts or HTML via a crafted payload.
|
CWE-79
Cross-site Scripting
|
CVE-2020-21729
|
2024-11-21 14:12 |
2021-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209318
|
9.8 |
CRITICAL
Network
|
opensns
|
opensns
|
OpenSNS v6.1.0 contains a blind SQL injection vulnerability in /Controller/ChinaCityController.class.php via the cid parameter.
|
CWE-89
SQL Injection
|
CVE-2020-21726
|
2024-11-21 14:12 |
2021-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209319
|
9.8 |
CRITICAL
Network
|
opensns
|
opensns
|
OpenSNS v6.1.0 contains a blind SQL injection vulnerability in /Controller/ChinaCityController.class.php via the pid parameter.
|
CWE-89
SQL Injection
|
CVE-2020-21725
|
2024-11-21 14:12 |
2021-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209320
|
9.8 |
CRITICAL
Network
|
thinkphp50-cms_project
|
thinkphp50-cms
|
ThinkPHP50-CMS v1.0 contains a remote code execution (RCE) vulnerability in the component /public/?s=captcha.
|
NVD-CWE-noinfo
|
CVE-2020-21865
|
2024-11-21 14:12 |
2021-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|