Search Results (331597 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2020-21834 1 Gnu 1 Libredwg 2024-11-21 6.5 Medium
A null pointer deference issue exists in GNU LibreDWG 0.10 via get_bmp ../../programs/dwgbmp.c:164.
CVE-2020-21833 1 Gnu 1 Libredwg 2024-11-21 8.8 High
A heap based buffer overflow vulnerability exits in GNU LibreDWG 0.10 via: read_2004_section_classes ../../src/decode.c:2440.
CVE-2020-21832 1 Gnu 1 Libredwg 2024-11-21 8.8 High
A heap based buffer overflow vulnerability exists in GNU LibreDWG 0.10 via read_2004_compressed_section ../../src/decode.c:2417.
CVE-2020-21831 1 Gnu 1 Libredwg 2024-11-21 8.8 High
A heap based buffer overflow vulnerability exists in GNU LibreDWG 0.10 via read_2004_section_handles ../../src/decode.c:2637.
CVE-2020-21830 1 Gnu 1 Libredwg 2024-11-21 8.8 High
A heap based buffer overflow vulneraibility exists in GNU LibreDWG 0.10 via bit_calc_CRC ../../src/bits.c:2213.
CVE-2020-21827 1 Gnu 1 Libredwg 2024-11-21 7.8 High
A heap based buffer overflow vulnerability exists in GNU LibreDWG 0.10 via read_2004_compressed_section ../../src/decode.c:2379.
CVE-2020-21819 1 Gnu 1 Libredwg 2024-11-21 8.8 High
A heap based buffer overflow vulnerability exists in GNU LibreDWG 0.10.2641via htmlescape ../../programs/escape.c:51.
CVE-2020-21818 1 Gnu 1 Libredwg 2024-11-21 8.8 High
A heap based buffer overflow vulnerability exists in GNU LibreDWG 0.10.2641 via htmlescape ../../programs/escape.c:48.
CVE-2020-21817 1 Gnu 1 Libredwg 2024-11-21 6.5 Medium
A null pointer dereference issue exists in GNU LibreDWG 0.10.2641 via htmlescape ../../programs/escape.c:29. which causes a denial of service (application crash).
CVE-2020-21816 1 Gnu 1 Libredwg 2024-11-21 8.8 High
A heab based buffer overflow issue exists in GNU LibreDWG 0.10.2641 via htmlescape ../../programs/escape.c:46.
CVE-2020-21815 1 Gnu 1 Libredwg 2024-11-21 6.5 Medium
A null pointer deference issue exists in GNU LibreDWG 0.10.2641 via output_TEXT ../../programs/dwg2SVG.c:114, which causes a denial of service (application crash).
CVE-2020-21814 1 Gnu 1 Libredwg 2024-11-21 8.8 High
A heap based buffer overflow issue exists in GNU LibreDWG 0.10.2641 via htmlwescape ../../programs/escape.c:97.
CVE-2020-21813 1 Gnu 1 Libredwg 2024-11-21 7.8 High
A heap based buffer overflow issue exists in GNU LibreDWG 0.10.2641 via output_TEXT ../../programs/dwg2SVG.c:114.
CVE-2020-21809 1 Nukeviet 1 Nukeviet 2024-11-21 9.8 Critical
SQL Injection vulnerability in NukeViet CMS module Shops 4.0.29 and 4.3 via the (1) listid parameter in detail.php and the (2) group_price or groupid parameters in search_result.php.
CVE-2020-21808 1 Nukeviet 1 Nukeviet 2024-11-21 9.8 Critical
SQL Injection vulnerability in NukeViet CMS 4.0.10 - 4.3.07 via:the topicsid parameter in modules/news/admin/addtotopics.php.
CVE-2020-21806 1 Ectouch 1 Ectouch 2024-11-21 9.8 Critical
SQL Injection Vulnerability in ECTouch v2 via the shop page in index.php..
CVE-2020-21788 1 Crmeb 1 Crmeb 2024-11-21 4.3 Medium
In CRMEB 3.1.0+ strict domain name filtering leads to SSRF(Server-Side Request Forgery). The vulnerable code is in file /crmeb/app/admin/controller/store/CopyTaobao.php.
CVE-2020-21787 1 Crmeb 1 Crmeb 2024-11-21 9.8 Critical
CRMEB 3.1.0+ is vulnerable to File Upload Getshell via /crmeb/crmeb/services/UploadService.php.
CVE-2020-21786 1 Ibos 1 Ibos 2024-11-21 9.8 Critical
In IBOS 4.5.4 Open, Arbitrary File Inclusion causes getshell via /system/modules/dashboard/controllers/CronController.php.
CVE-2020-21785 1 Ibos 1 Ibos 2024-11-21 8.8 High
In IBOS 4.5.4 Open, the database backup has Command Injection Vulnerability.