ShadowTrackr

Search the CVE vulnerability database

Look up vulnerabilities by software, product or CVE number.

1 result for “CVE-2020-36655”

CVEPublishedCVSSShadowTrackr CVSSSummary
CVE:
CVE-2020-36655
Published
2023-01-21
CVSS:
8.8
ShadowTrackr CVSS:
6.8
Summary:
Yii Yii2 Gii before 2.2.2 allows remote attackers to execute arbitrary code via the Generator.php messageCategory field. The attacker can embed arbitrary PHP code into the model file.