Show filters
95 Total Results
Displaying 51-60 of 95
Sort by:
Attacker Value
Unknown

CVE-2021-25785

Disclosure Date: December 02, 2021 (last updated February 23, 2025)
Taocms v2.5Beta5 was discovered to contain a cross-site scripting (XSS) vulnerability via the component Management column.
Attacker Value
Unknown

CVE-2021-25784

Disclosure Date: December 02, 2021 (last updated February 23, 2025)
Taocms v2.5Beta5 was discovered to contain a blind SQL injection vulnerability via the function Edit Article.
Attacker Value
Unknown

CVE-2021-25783

Disclosure Date: December 02, 2021 (last updated February 23, 2025)
Taocms v2.5Beta5 was discovered to contain a blind SQL injection vulnerability via the function Article Search.
Attacker Value
Unknown

CVE-2021-26807

Disclosure Date: April 30, 2021 (last updated February 22, 2025)
GalaxyClient version 2.0.28.9 loads unsigned DLLs such as zlib1.dll, libgcc_s_dw2-1.dll and libwinpthread-1.dll from PATH, which allows an attacker to potentially run code locally through unsigned DLL loading.
Attacker Value
Unknown

CVE-2020-12838

Disclosure Date: September 24, 2020 (last updated February 22, 2025)
ismartgate PRO 1.5.9 is vulnerable to privilege escalation by appending PHP code to /cron/mailAdmin.php.
Attacker Value
Unknown

CVE-2020-12843

Disclosure Date: September 24, 2020 (last updated February 22, 2025)
ismartgate PRO 1.5.9 is vulnerable to malicious file uploads via the form for uploading sounds to garage doors. The magic bytes for WAV must be used.
Attacker Value
Unknown

CVE-2020-13119

Disclosure Date: September 24, 2020 (last updated February 22, 2025)
ismartgate PRO 1.5.9 is vulnerable to clickjacking.
Attacker Value
Unknown

CVE-2020-12842

Disclosure Date: September 24, 2020 (last updated February 22, 2025)
ismartgate PRO 1.5.9 is vulnerable to privilege escalation by appending PHP code to /cron/checkUserExpirationDate.php.
Attacker Value
Unknown

CVE-2020-12837

Disclosure Date: September 24, 2020 (last updated February 22, 2025)
ismartgate PRO 1.5.9 is vulnerable to malicious file uploads via the form for uploading images to garage doors. The magic bytes of PNG must be used.
Attacker Value
Unknown

CVE-2020-12282

Disclosure Date: September 24, 2020 (last updated February 22, 2025)
iSmartgate PRO 1.5.9 is vulnerable to CSRF via the busca parameter in the form used for searching for users, accessible via /index.php. (This can be combined with reflected XSS.)