
Look up vulnerabilities by software, product or CVE number.
| CVE | Published | CVSS | ShadowTrackr CVSS | Summary |
|---|---|---|---|---|
CVE: CVE-2020-19660 | Published 2023-05-08 | CVSS: 6.1 | ShadowTrackr CVSS: 0.5 | Summary: Cross Site Scripting (XSS) pandao editor.md 1.5.0 allows attackers to execute arbitrary code via crafted linked url values. |
CVE: CVE-2020-19669 | Published 2021-08-18 | CVSS: 8.8 | ShadowTrackr CVSS: 6.6 | Summary: Cross Site Request Forgery (CSRF) vulnerability exists in Eyoucms 1.3.6 that can add an admin account via /login.php?m=admin&c=Admin&a=admin_add&lang=cn. |
CVE: CVE-2020-1966 | Published 2021-02-15 | CVSS: - | ShadowTrackr CVSS: 0.0 | Summary: |
CVE: CVE-2020-19664 | Published 2020-12-31 | CVSS: 8.8 | ShadowTrackr CVSS: 6.8 | Summary: DrayTek Vigor2960 1.5.1 allows remote command execution via shell metacharacters in a toLogin2FA action to mainfunction.cgi. |
CVE: CVE-2020-19668 | Published 2020-11-20 | CVSS: 6.5 | ShadowTrackr CVSS: 5.0 | Summary: Unverified indexs into the array lead to out of bound access in the gif_out_code function in fromgif.c in libsixel 1.8.6. |
CVE: CVE-2020-19667 | Published 2020-11-20 | CVSS: 7.8 | ShadowTrackr CVSS: 6.2 | Summary: Stack-based buffer overflow and unconditional jump in ReadXPMImage in coders/xpm.c in ImageMagick 7.0.10-7. |