|
209781
|
7.5 |
HIGH
Network
|
setelsa-security
|
conacwin
|
Setelsa Conacwin v3.7.1.2 is vulnerable to a local file inclusion vulnerability. This vulnerability allows a remote unauthenticated attacker to read internal files on the server via an http:IP:PORT/.…
|
CWE-22
Path Traversal
|
CVE-2020-25068
|
2024-11-21 14:17 |
2020-09-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209782
|
6.1 |
MEDIUM
Network
|
ecommerce-codeigniter-bootstrap_project
|
ecommerce-codeigniter-bootstrap
|
Ecommerce-CodeIgniter-Bootstrap before 2020-08-03 allows XSS in blog.php. within application/views/templates/clothesshop, application/views/templates/onepage, and application/views/templates/redlabel.
|
CWE-79
Cross-site Scripting
|
CVE-2020-25093
|
2024-11-21 14:17 |
2020-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209783
|
6.1 |
MEDIUM
Network
|
ecommerce-codeigniter-bootstrap_project
|
ecommerce-codeigniter-bootstrap
|
Ecommerce-CodeIgniter-Bootstrap before 2020-08-03 allows XSS in _parts/header.php, within application/views/templates/clothesshop, application/views/templates/greenlabel, and application/views/templa…
|
CWE-79
Cross-site Scripting
|
CVE-2020-25092
|
2024-11-21 14:17 |
2020-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209784
|
6.1 |
MEDIUM
Network
|
ecommerce-codeigniter-bootstrap_project
|
ecommerce-codeigniter-bootstrap
|
Ecommerce-CodeIgniter-Bootstrap before 2020-08-03 allows XSS in application/modules/vendor/views/add_product.php.
|
CWE-79
Cross-site Scripting
|
CVE-2020-25091
|
2024-11-21 14:17 |
2020-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209785
|
6.1 |
MEDIUM
Network
|
ecommerce-codeigniter-bootstrap_project
|
ecommerce-codeigniter-bootstrap
|
Ecommerce-CodeIgniter-Bootstrap before 2020-08-03 allows XSS in application/modules/admin/views/ecommerce/publish.php.
|
CWE-79
Cross-site Scripting
|
CVE-2020-25090
|
2024-11-21 14:17 |
2020-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209786
|
6.1 |
MEDIUM
Network
|
ecommerce-codeigniter-bootstrap_project
|
ecommerce-codeigniter-bootstrap
|
Ecommerce-CodeIgniter-Bootstrap before 2020-08-03 allows XSS in application/modules/admin/views/ecommerce/discounts.php.
|
CWE-79
Cross-site Scripting
|
CVE-2020-25089
|
2024-11-21 14:17 |
2020-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209787
|
6.1 |
MEDIUM
Network
|
ecommerce-codeigniter-bootstrap_project
|
ecommerce-codeigniter-bootstrap
|
Ecommerce-CodeIgniter-Bootstrap before 2020-08-03 allows XSS in application/modules/admin/views/blog/blogpublish.php.
|
CWE-79
Cross-site Scripting
|
CVE-2020-25088
|
2024-11-21 14:17 |
2020-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209788
|
6.1 |
MEDIUM
Network
|
ecommerce-codeigniter-bootstrap_project
|
ecommerce-codeigniter-bootstrap
|
Ecommerce-CodeIgniter-Bootstrap before 2020-08-03 allows XSS in application/modules/admin/views/advanced_settings/languages.php.
|
CWE-79
Cross-site Scripting
|
CVE-2020-25087
|
2024-11-21 14:17 |
2020-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209789
|
6.1 |
MEDIUM
Network
|
ecommerce-codeigniter-bootstrap_project
|
ecommerce-codeigniter-bootstrap
|
Ecommerce-CodeIgniter-Bootstrap before 2020-08-03 allows XSS in application/modules/admin/views/advanced_settings/adminUsers.php.
|
CWE-79
Cross-site Scripting
|
CVE-2020-25086
|
2024-11-21 14:17 |
2020-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209790
|
8.8 |
HIGH
Network
|
dlink
|
dcs-2530l_firmware dcs-2670l_firmware
|
An issue was discovered on D-Link DCS-2530L before 1.06.01 Hotfix and DCS-2670L through 2.02 devices. cgi-bin/ddns_enc.cgi allows authenticated command injection.
|
CWE-77
Command Injection
|
CVE-2020-25079
|
2024-11-21 14:17 |
2020-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|