|
210731
|
9.8 |
CRITICAL
Network
|
shopex
|
ecshop
|
SQL Injection in ECShop 3.0 via the aid parameter to admin/affiliate_ck.php.
|
CWE-89
SQL Injection
|
CVE-2020-22206
|
2024-11-21 14:13 |
2021-06-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210732
|
9.8 |
CRITICAL
Network
|
shopex
|
ecshop
|
SQL Injection in ECShop 3.0 via the id parameter to admin/shophelp.php.
|
CWE-89
SQL Injection
|
CVE-2020-22205
|
2024-11-21 14:13 |
2021-06-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210733
|
9.8 |
CRITICAL
Network
|
shopex
|
ecshop
|
SQL Injection in ECShop 2.7.6 via the goods_number parameter to flow.php. .
|
CWE-89
SQL Injection
|
CVE-2020-22204
|
2024-11-21 14:13 |
2021-06-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210734
|
9.8 |
CRITICAL
Network
|
phpcms
|
phpcms
|
SQL Injection in phpCMS 2008 sp4 via the genre parameter to yp/job.php.
|
CWE-89
SQL Injection
|
CVE-2020-22203
|
2024-11-21 14:13 |
2021-06-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210735
|
8.8 |
HIGH
Network
|
phpcms
|
phpcms
|
phpCMS 2008 sp4 allowas remote malicious users to execute arbitrary php commands via the pagesize parameter to yp/product.php.
|
CWE-94
Code Injection
|
CVE-2020-22201
|
2024-11-21 14:13 |
2021-06-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210736
|
5.3 |
MEDIUM
Network
|
phpcms
|
phpcms
|
Directory Traversal vulnerability in phpCMS 9.1.13 via the q parameter to public_get_suggest_keyword.
|
CWE-22
Path Traversal
|
CVE-2020-22200
|
2024-11-21 14:13 |
2021-06-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210737
|
9.8 |
CRITICAL
Network
|
phpcms
|
phpcms
|
SQL Injection vulnerability in phpCMS 2007 SP6 build 0805 via the digg_mod parameter to digg_add.php.
|
CWE-89
SQL Injection
|
CVE-2020-22199
|
2024-11-21 14:13 |
2021-06-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210738
|
9.8 |
CRITICAL
Network
|
dedecms
|
dedecms
|
SQL Injection vulnerability in DedeCMS 5.7 via mdescription parameter to member/ajax_membergroup.php.
|
CWE-89
SQL Injection
|
CVE-2020-22198
|
2024-11-21 14:13 |
2021-06-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210739
|
9.8 |
CRITICAL
Network
|
jerryscript
|
jerryscript
|
There is a heap-buffer-overflow at re-parser.c in re_parse_char_escape in JerryScript 2.2.0.
|
CWE-787
Out-of-bounds Write
|
CVE-2020-23323
|
2024-11-21 14:13 |
2021-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210740
|
7.5 |
HIGH
Network
|
jerryscript
|
jerryscript
|
There is an Assertion in 'context_p->token.type == LEXER_RIGHT_BRACE || context_p->token.type == LEXER_ASSIGN || context_p->token.type == LEXER_COMMA' in parser_parse_object_initializer in JerryScrip…
|
CWE-617
Reachable Assertion
|
CVE-2020-23322
|
2024-11-21 14:13 |
2021-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|