ShadowTrackr

Search the CVE vulnerability database

Look up vulnerabilities by software, product or CVE number.

1 result for “CVE-2020-36364”

CVEPublishedCVSSShadowTrackr CVSSSummary
CVE:
CVE-2020-36364
Published
2021-05-19
CVSS:
9.1
ShadowTrackr CVSS:
7.0
Summary:
An issue was discovered in Smartstore (aka SmartStoreNET) before 4.1.0. Administration/Controllers/ImportController.cs allows path traversal (for copy and delete actions) in the ImportController.Create method via a TempFileName field.