
Look up vulnerabilities by software, product or CVE number.
| CVE | Published | CVSS | ShadowTrackr CVSS | Summary |
|---|---|---|---|---|
CVE: CVE-2020-19698 | Published 2023-04-04 | CVSS: 6.1 | ShadowTrackr CVSS: 0.5 | Summary: Cross Site Scripting vulnerability found in Pandao Editor.md v.1.5.0 allows a remote attacker to execute arbitrary code via a crafted script to the editor parameter. |
CVE: CVE-2020-19695 | Published 2023-04-04 | CVSS: 9.8 | ShadowTrackr CVSS: 7.2 | Summary: Buffer Overflow found in Nginx NJS allows a remote attacker to execute arbitrary code via the njs_object_property parameter of the njs/njs_vm.c function. |
CVE: CVE-2020-19697 | Published 2023-04-04 | CVSS: 6.1 | ShadowTrackr CVSS: 0.5 | Summary: Cross Site Scripting vulnerability found in Pandao Editor.md v.1.5.0 allows a remote attacker to execute arbitrary code via a crafted script in the <iframe>src parameter. |
CVE: CVE-2020-19699 | Published 2023-04-04 | CVSS: 6.1 | ShadowTrackr CVSS: 0.5 | Summary: Cross Site Scripting vulnerability found in KOHGYLW Kiftd v.1.0.18 allows a remote attacker to execute arbitrary code via the <ifram> tag in the upload file page. |
CVE: CVE-2020-19692 | Published 2023-04-04 | CVSS: 9.8 | ShadowTrackr CVSS: 8.2 | Summary: Buffer Overflow vulnerabilty found in Nginx NJS v.0feca92 allows a remote attacker to execute arbitrary code via the njs_module_read in the njs_module.c file. |
CVE: CVE-2020-19693 | Published 2023-04-04 | CVSS: 9.8 | ShadowTrackr CVSS: 7.2 | Summary: An issue found in Espruino Espruino 6ea4c0a allows an attacker to execute arbitrrary code via oldFunc parameter of the jswrap_object.c:jswrap_function_replacewith endpoint. |
CVE: CVE-2020-1969 | Published 2021-02-15 | CVSS: - | ShadowTrackr CVSS: 0.0 | Summary: |