Export limit exceeded: 79149 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.
Search
Search Results (79149 CVEs found)
| CVE | Vendors | Products | Updated | CVSS v3.1 |
|---|---|---|---|---|
| CVE-2020-21126 | 1 Metinfo | 1 Metinfo | 2024-11-21 | 8.8 High |
| MetInfo 7.0.0 contains a Cross-Site Request Forgery (CSRF) via admin/?n=admin&c=index&a=doSaveInfo. | ||||
| CVE-2020-21057 | 1 Fusionpbx | 1 Fusionpbx | 2024-11-21 | 8.1 High |
| Directory Traversal vulnerability in FusionPBX 4.5.7, which allows a remote malicious user to delete folders on the system via the folder variable to app/edit/folderdelete.php. | ||||
| CVE-2020-21046 | 1 Softonic | 1 Eagleget | 2024-11-21 | 7.8 High |
| A local privilege escalation vulnerability was identified within the "luminati_net_updater_win_eagleget_com" service in EagleGet Downloader version 2.1.5.20 Stable. This issue allows authenticated non-administrative user to escalate their privilege and conduct code execution as a SYSTEM privilege. | ||||
| CVE-2020-21041 | 2 Debian, Ffmpeg | 2 Debian Linux, Ffmpeg | 2024-11-21 | 7.5 High |
| Buffer Overflow vulnerability exists in FFmpeg 4.1 via apng_do_inverse_blend in libavcodec/pngenc.c, which could let a remote malicious user cause a Denial of Service | ||||
| CVE-2020-21013 | 1 Emlog | 1 Emlog | 2024-11-21 | 7.2 High |
| emlog v6.0.0 contains a SQL injection via /admin/comment.php. | ||||
| CVE-2020-20981 | 1 Metinfo | 1 Metinfo | 2024-11-21 | 7.5 High |
| A SQL injection in the /admin/?n=logs&c=index&a=dolist component of Metinfo 7.0 allows attackers to access sensitive database information. | ||||
| CVE-2020-20971 | 1 Pbootcms | 1 Pbootcms | 2024-11-21 | 8.8 High |
| Cross Site Request Forgery (CSRF) vulnerability in PbootCMS v2.0.3 via /admin.php?p=/User/index. | ||||
| CVE-2020-20948 | 1 Jeecg | 1 Jeecg | 2024-11-21 | 7.5 High |
| An arbitrary file download vulnerability in jeecg v3.8 allows attackers to access sensitive files via modification of the "localPath" variable. | ||||
| CVE-2020-20945 | 1 Qibosoft | 1 Qibosoft | 2024-11-21 | 8.8 High |
| A Cross-Site Request Forgery (CSRF) in /admin/index.php?lfj=member&action=editmember of Qibosoft v7 allows attackers to arbitrarily add administrator accounts. | ||||
| CVE-2020-20898 | 1 Ffmpeg | 1 Ffmpeg | 2024-11-21 | 8.8 High |
| Integer Overflow vulnerability in function filter16_prewitt in libavfilter/vf_convolution.c in Ffmpeg 4.2.1, allows attackers to cause a Denial of Service or other unspecified impacts. | ||||
| CVE-2020-20896 | 1 Ffmpeg | 1 Ffmpeg | 2024-11-21 | 8.8 High |
| An issue was discovered in function latm_write_packet in libavformat/latmenc.c in Ffmpeg 4.2.1, allows attackers to cause a Denial of Service or other unspecified impacts due to a Null pointer dereference. | ||||
| CVE-2020-20892 | 1 Ffmpeg | 1 Ffmpeg | 2024-11-21 | 8.8 High |
| An issue was discovered in function filter_frame in libavfilter/vf_lenscorrection.c in Ffmpeg 4.2.1, allows attackers to cause a Denial of Service or other unspecified impacts due to a division by zero. | ||||
| CVE-2020-20891 | 1 Ffmpeg | 1 Ffmpeg | 2024-11-21 | 8.8 High |
| Buffer Overflow vulnerability in function config_input in libavfilter/vf_gblur.c in Ffmpeg 4.2.1, allows attackers to cause a Denial of Service or other unspecified impacts. | ||||
| CVE-2020-20813 | 1 Openvpn | 1 Openvpn | 2024-11-21 | 7.5 High |
| Control Channel in OpenVPN 2.4.7 and earlier allows remote attackers to cause a denial of service via crafted reset packet. | ||||
| CVE-2020-20746 | 1 Tendacn | 2 Ac9, Ac9 Firmware | 2024-11-21 | 7.2 High |
| A stack-based buffer overflow in the httpd server on Tenda AC9 V15.03.06.60_EN allows remote attackers to execute arbitrary code or cause a denial of service (DoS) via a crafted POST request to /goform/SetStaticRouteCfg. | ||||
| CVE-2020-20740 | 3 Debian, Fedoraproject, Pdfresurrect Project | 3 Debian Linux, Fedora, Pdfresurrect | 2024-11-21 | 7.8 High |
| PDFResurrect before 0.20 lack of header validation checks causes heap-buffer-overflow in pdf_get_version(). | ||||
| CVE-2020-20698 | 1 S-cms | 1 S-cms | 2024-11-21 | 7.2 High |
| A remote code execution (RCE) vulnerability in /1.com.php of S-CMS PHP v3.0 allows attackers to getshell via modification of a PHP file. | ||||
| CVE-2020-20693 | 1 Gilacms | 1 Gila Cms | 2024-11-21 | 8.8 High |
| A Cross-Site Request Forgery (CSRF) in GilaCMS v1.11.4 allows authenticated attackers to arbitrarily add administrator accounts. | ||||
| CVE-2020-20692 | 1 Gilacms | 1 Gila Cms | 2024-11-21 | 7.2 High |
| GilaCMS v1.11.4 was discovered to contain a SQL injection vulnerability via the $_GET parameter in /src/core/controllers/cm.php. | ||||
| CVE-2020-20672 | 1 Kitesky | 1 Kitecms | 2024-11-21 | 7.8 High |
| An arbitrary file upload vulnerability in /admin/upload/uploadfile of KiteCMS V1.1 allows attackers to getshell via a crafted PHP file. | ||||