
Look up vulnerabilities by software, product or CVE number.
| CVE | Published | CVSS | ShadowTrackr CVSS | Summary |
|---|---|---|---|---|
CVE: CVE-2020-19705 | Published 2021-08-26 | CVSS: 9.8 | ShadowTrackr CVSS: 7.2 | Summary: thinkphp-zcms as of 20190715 allows SQL injection via index.php?m=home&c=message&a=add. |
CVE: CVE-2020-19709 | Published 2021-08-26 | CVSS: 6.1 | ShadowTrackr CVSS: 0.5 | Summary: Insufficient filtering of the tag parameters in feehicms 0.1.3 allows attackers to execute arbitrary web or HTML via a crafted payload. |
CVE: CVE-2020-19704 | Published 2021-08-26 | CVSS: 5.4 | ShadowTrackr CVSS: 1.1 | Summary: A stored cross-site scripting (XSS) vulnerability via ResourceController.java in spring-boot-admin as of 20190710 allows attackers to execute arbitrary web scripts or HTML. |
CVE: CVE-2020-19703 | Published 2021-08-26 | CVSS: 6.1 | ShadowTrackr CVSS: 0.5 | Summary: A cross-site scripting (XSS) vulnerability in the referer parameter of Dzzoffice 2.02 allows attackers to execute arbitrary web scripts or HTML via a crafted payload. |
CVE: CVE-2020-1970 | Published 2021-02-15 | CVSS: - | ShadowTrackr CVSS: 0.0 | Summary: |