CVE-2020-29000 to CVE-2020-29999
87 CVEs with public proof-of-concept exploits.
- CVE-2020-290071 PoCThe Score extension through 0.3.0 for MediaWiki has a remote code execution vulnerability due to improper sandboxing of the GNU LilyPond…
- CVE-2020-290471 PoCThe wp-hotel-booking plugin through 1.10.2 for WordPress allows remote attackers to execute arbitrary code because of an unserialize…
- CVE-2020-290531 PoCHRSALE 2.0.0 allows XSS via the admin/project/projects_calendar set_date parameter.
- CVE-2020-290701 PoCosCommerce 2.3.4.1 has XSS vulnerability via the authenticated user entering the XSS payload into the title section of newsletters.
- CVE-2020-290711 PoCAn XSS issue was found in the Shares feature of LiquidFiles before 3.3.19. The issue arises from the insecure rendering of HTML files…
- CVE-2020-290721 PoCA Cross-Site Script Inclusion vulnerability was found on LiquidFiles before 3.3.19. This client-side attack requires user interaction…
- CVE-2020-291271 PoCAn issue was discovered on Fujitsu Eternus Storage DX200 S4 devices through 2020-11-25. After logging into the portal as a root user…
- CVE-2020-291331 PoCjsp/upload.jsp in Coremail XT 5.0 allows XSS via an uploaded personal signature, as demonstrated by a .jpg.html filename in the…
- CVE-2020-291343 PoCsThe TOTVS Fluig platform allows path traversal through the parameter "file = .. /" encoded in base64. This affects all versions Fluig Lake…
- CVE-2020-291441 PoCIn Ericsson BSCS iX R18 Billing & Rating iX R18, MX is a web base module in BSCS iX that is vulnerable to stored XSS via an Alert…
- CVE-2020-291451 PoCIn Ericsson BSCS iX R18 Billing & Rating iX R18, ADMX is a web base module in BSCS iX that is vulnerable to stored XSS via the name or…
- CVE-2020-291631 PoCPacsOne Server (PACS Server In One Box) below 7.1.1 is affected by SQL injection.
- CVE-2020-291642 PoCsPacsOne Server (PACS Server In One Box) below 7.1.1 is affected by cross-site scripting (XSS).
- CVE-2020-291651 PoCPacsOne Server (PACS Server In One Box) below 7.1.1 is affected by incorrect access control, which can result in remotely gaining…
- CVE-2020-291661 PoCPacsOne Server (PACS Server In One Box) below 7.1.1 is affected by file read/manipulation, which can result in remote information…
- CVE-2020-291681 PoCSQL Injection vulnerability in Projectworlds Online Doctor Appointment Booking System, allows attackers to gain sensitive information via…
- CVE-2020-291891 PoCIncorrect Access Control vulnerability in TerraMaster TOS <= 4.2.06 allows remote authenticated attackers to bypass read-only restriction…
- CVE-2020-292031 PoCstruct2json before 2020-11-18 is affected by a Buffer Overflow because strcpy is used for S2J_STRUCT_GET_string_ELEMENT.
- CVE-2020-292042 PoCsXXL-JOB 2.2.0 allows Stored XSS (in Add User) to bypass the 20-character limit via…
- CVE-2020-292051 PoCXSS in signup form in Project Worlds Online Examination System 1.0 allows remote attacker to inject arbitrary code via the name field
- CVE-2020-292142 PoCsSQL injection vulnerability in SourceCodester Alumni Management System 1.0 allows the user to inject SQL payload to bypass the…
- CVE-2020-292151 PoCA Cross Site Scripting in SourceCodester Employee Management System 1.0 allows the user to execute alert messages via /Employee Management…
- CVE-2020-292272 PoCsAn issue was discovered in Car Rental Management System 1.0. An unauthenticated user can perform a file inclusion attack against the…
- CVE-2020-292281 PoCEGavilanMedia User Registration and Login System With Admin Panel 1.0 is affected by SQL injection in the User Login Page.
- CVE-2020-292301 PoCEGavilanMedia User Registration and Login System With Admin Panel 1.0 is affected by cross-site scripting (XSS) in the Admin Panel -…
- CVE-2020-292311 PoCEGavilanMedia User Registration and Login System With Admin Panel 1.0 is affected by cross-site scripting (XSS) in the Admin Profile Page.…
- CVE-2020-292331 PoCWonderCMS 3.1.3 is affected by cross-site scripting (XSS) in the Page description component. This vulnerability can allow an attacker to…
- CVE-2020-292383 PoCsAn integer buffer overflow in the Nginx webserver of ExpressVPN Router version 1 allows remote attackers to obtain sensitive information…
- CVE-2020-292391 PoCOnline Birth Certificate System Project V 1.0 is affected by cross-site scripting (XSS). This vulnerability can result in an attacker…
- CVE-2020-292401 PoCLepton-CMS 4.7.0 is affected by cross-site scripting (XSS). An attacker can inject the XSS payload in the URL field of the admin page and…
- CVE-2020-292472 PoCsWonderCMS 3.1.3 is affected by cross-site scripting (XSS) in the Admin Panel. An attacker can inject the XSS payload in Page keywords and…
- CVE-2020-292542 PoCsTikiWiki 21.2 allows templates to be edited without CSRF protection. This could allow an unauthenticated, remote attacker to conduct a…
- CVE-2020-292571 PoCCross-site scripting (XSS) vulnerability in Online Examination System 1.0 via the q parameter to feedback.php.
- CVE-2020-292581 PoCCross-site scripting (XSS) vulnerability in Online Examination System 1.0 via the w parameter to index.php.
- CVE-2020-292591 PoCCross-site scripting (XSS) vulnerability in Online Examination System 1.0 via the subject or feedback parameter to feedback.php.
- CVE-2020-292792 PoCsPHP remote file inclusion in the assign_resume_tpl method in Application/Common/Controller/BaseController.class.php in 74CMS before 6.0.48…
- CVE-2020-292801 PoCThe Victor CMS v1.0 application is vulnerable to SQL injection via the 'search' parameter on the search.php page.
- CVE-2020-292822 PoCsSQL injection vulnerability in BloodX 1.0 allows attackers to bypass authentication.
- CVE-2020-292831 PoCAn SQL injection vulnerability was discovered in Online Doctor Appointment Booking System PHP and Mysql via the q parameter to getuser.php.
- CVE-2020-292842 PoCsThe file view-chair-list.php in Multi Restaurant Table Reservation System 1.0 does not perform input validation on the table_id parameter…
- CVE-2020-292851 PoCSQL injection vulnerability was discovered in Point of Sales in PHP/PDO 1.0, which can be exploited via the id parameter to…
- CVE-2020-292871 PoCAn SQL injection vulnerability was discovered in Car Rental Management System v1.0 can be exploited via the id parameter in view_car.php…
- CVE-2020-292881 PoCAn SQL injection vulnerability was discovered in Gym Management System In manage_user.php file, GET parameter 'id' is vulnerable.
- CVE-2020-293032 PoCsA cross-site scripting (XSS) vulnerability in the SabaiApp Directories Pro plugin 1.3.45 for WordPress allows remote attackers to inject…
- CVE-2020-293042 PoCsA cross-site scripting (XSS) vulnerability exists in the SabaiApps WordPress Directories Pro plugin version 1.3.45 and previous, allows…
- CVE-2020-293111 PoCUbilling v1.0.9 allows Remote Command Execution as Root user by executing a malicious command that is injected inside the config file and…
- CVE-2020-293151 PoCThinkAdmin version v1 v6 has a stored XSS vulnerability which allows remote attackers to inject an arbitrary web script or HTML.
- CVE-2020-293641 PoCIn NetArt News Lister 1.0.0, the news headlines vulnerable to stored xss attacks. Attackers can inject codes in news titles.
- CVE-2020-293701 PoCAn issue was discovered in kmem_cache_alloc_bulk in mm/slub.c in the Linux kernel before 5.5.11. The slowpath lacks the required TID…
- CVE-2020-293741 PoCAn issue was discovered in the Linux kernel before 5.7.3, related to mm/gup.c and mm/huge_memory.c. The get_user_pages (aka gup)…
- CVE-2020-293841 PoCAn issue was discovered in PNGOUT 2020-01-15. When compressing a crafted PNG file, it encounters an integer overflow.
- CVE-2020-293901 PoCZeroshell 3.9.3 contains a command injection vulnerability in the /cgi-bin/kerbynet StartSessionSubmit parameter that could allow an…
- CVE-2020-293921 PoCThe Estil Hill Lock Password Manager Safe app 2.3 for iOS has a *#06#* backdoor password. An attacker with physical access can unlock the…
- CVE-2020-293941 PoCA buffer overflow in the dlt_filter_load function in dlt_common.c from dlt-daemon through 2.18.5 (GENIVI Diagnostic Log and Trace) allows…
- CVE-2020-293953 PoCsThe EventON plugin through 3.0.5 for WordPress allows addons/?q= XSS via the search field.
- CVE-2020-294361 PoCSonatype Nexus Repository Manager 3.x before 3.29.0 allows a user with admin privileges to configure the system to gain access to content…
- CVE-2020-294371 PoCSQL injection in the Buzz module of OrangeHRM through 4.6 allows remote authenticated attackers to execute arbitrary SQL commands via the…
- CVE-2020-294531 PoCThe CachingResourceDownloadRewriteRule class in Jira Server and Jira Data Center before version 8.5.11, from 8.6.0 before 8.13.3, and from…
- CVE-2020-294581 PoCTextpattern CMS 4.6.2 allows CSRF via the prefs subsystem.
- CVE-2020-294691 PoCWonderCMS 3.1.3 is affected by cross-site scripting (XSS) in the Menu component. This vulnerability can allow an attacker to inject the…
- CVE-2020-294701 PoCOpenCart 3.0.3.6 is affected by cross-site scripting (XSS) in the Subject field of mail. This vulnerability can allow an attacker to…
- CVE-2020-294711 PoCOpenCart 3.0.3.6 is affected by cross-site scripting (XSS) in the Profile Image. An admin can upload a profile image as a malicious code…
- CVE-2020-294722 PoCsEGavilan Media Under Construction page with cPanel 1.0 contains a SQL injection vulnerability. An attacker can gain Admin Panel access…
- CVE-2020-294742 PoCsEGavilan Media EGM Address Book 1.0 contains a SQL injection vulnerability. An attacker can gain Admin Panel access using malicious SQL…
- CVE-2020-294751 PoCnopCommerce Store 4.30 is affected by cross-site scripting (XSS) in the Schedule tasks name field. This vulnerability can allow an…
- CVE-2020-294771 PoCInvision Community 4.5.4 is affected by cross-site scripting (XSS) in the Field Name field. This vulnerability can allow an attacker to…
- CVE-2020-295291 PoCHashiCorp go-slug up to 0.4.3 did not fully protect against directory traversal while unpacking tar archives, and protections could be…
- CVE-2020-295391 PoCA Cross-Site Scripting (XSS) issue in WebUI Translation in Systran Pure Neural Server before 9.7.0 allows a threat actor to have a remote…
- CVE-2020-295401 PoCAPI calls in the Translation API feature in Systran Pure Neural Server before 9.7.0 allow a threat actor to use the Systran Pure Neural…
- CVE-2020-295503 PoCsAn issue was discovered in URVE Build 24.03.2020. The password of an integration user account (used for the connection of the MS Office…
- CVE-2020-295513 PoCsAn issue was discovered in URVE Build 24.03.2020. Using the _internal/pc/shutdown.php path, it is possible to shutdown the system. Among…
- CVE-2020-295523 PoCsAn issue was discovered in URVE Build 24.03.2020. By using the _internal/pc/vpro.php?mac=0&ip=0&operation=0&usr=0&pass=0%3bpowershell+-c+"…
- CVE-2020-295641 PoCThe official Consul Docker images 0.7.1 through 1.4.2 contain a blank password for a root user. System using the Consul Docker container…
- CVE-2020-295832 PoCsKEVFirmware version 4.60 of Zyxel USG devices contains an undocumented account (zyfwp) with an unchangeable password. The password for this…
- CVE-2020-295871 PoCSimplCommerce 1.0.0-rc uses the Bootbox.js library, which allows creation of programmatic dialog boxes using Bootstrap modals. The…
- CVE-2020-295963 PoCsMiniWeb HTTP server 0.8.19 allows remote attackers to cause a denial of service (daemon crash) via a long name for the first parameter in…
- CVE-2020-295973 PoCsIncomCMS 2.0 has a modules/uploader/showcase/script.php insecure file upload vulnerability. This vulnerability allows unauthenticated…
- CVE-2020-295993 PoCsImageMagick before 6.9.11-40 and 7.x before 7.0.10-40 mishandles the -authenticate option, which allows setting a password for…
- CVE-2020-296031 PoCIn manage_proj_edit_page.php in MantisBT before 2.24.4, any unprivileged logged-in user can retrieve Private Projects' names via the…
- CVE-2020-296041 PoCAn issue was discovered in MantisBT before 2.24.4. A missing access check in bug_actiongroup.php allows an attacker (with rights to create…
- CVE-2020-296051 PoCAn issue was discovered in MantisBT before 2.24.4. Due to insufficient access-level checks, any logged-in user allowed to perform Group…
- CVE-2020-2960710 PoCsA file upload restriction bypass vulnerability in Pluck CMS before 4.7.13 allows an admin privileged user to gain access in the host…
- CVE-2020-296591 PoCA buffer overflow in the web server of Flexense DupScout Enterprise 10.0.18 allows a remote anonymous attacker to execute code as SYSTEM…
- CVE-2020-296602 PoCsA locking inconsistency issue was discovered in the tty subsystem of the Linux kernel through 5.9.13. drivers/tty/tty_io.c and…
- CVE-2020-296611 PoCA locking issue was discovered in the tty subsystem of the Linux kernel through 5.9.13. drivers/tty/tty_jobctrl.c allows a use-after-free…
- CVE-2020-296641 PoCA command injection issue in dji_sys in DJI Mavic 2 Remote Controller before firmware version 01.00.0510 allows for code execution via a…
- CVE-2020-296693 PoCsIn the Macally WIFISD2-2A82 Media and Travel Router 2.000.010, the Guest user is able to reset its own password. This process has a…