CNA 2020

VulDB is an officially certified CVE Numbering Authority (CNA) by MITRE and Authorized Data Publisher (ADP) by NIST NVD. We are authorized to handle new vulnerability submissions, assign unique CVEs and disclose them. CVE is an international program to discover vulnerabilities which are then assigned and published to the CVE list. Partners coordinate such CVE entries to communicate consistent descriptions. Information technology and cybersecurity professionals all around the world use CVE records to ensure they are discussing the same issues, and to coordinate their efforts to prioritize and address these properly.

Dobavljača

Proizvoda

Artesãos SEOTools3
SevOne Network Management System3
GE Voluson S83
GENI Portal2
Chris92de AdminServ2

Sanacija

Zvanična ispravka54
Privremena ispravka0
Zaobilazno rešenje1
Nije dostupno6
Nije definisano16

Eksploataцibilnost

Napao0
Visoko funkcionalan1
Funkcionalna1
Dokaz-of-koncept23
Nedokazano0
Nije definisano52

Pristupni vektor

Not Defined0
Physical0
Local3
Adjacent25
Network49

Potvrdu identiteta

Not Defined0
High2
Low61
None14

Interakcija korisnika

Not Defined0
Required28
None49

VulDB

≤10
≤20
≤32
≤422
≤511
≤623
≤714
≤83
≤92
≤100

Iskoristi 0-dan

<1k20
<2k52
<5k5
<10k0
<25k0
<50k0
<100k0
≥100k0
IDRanjivostOpsegOdgovoranProsleđivanjeKreiraliAžuriraCVEProsleđivanjeCNA
329028DCMTK dcmqrscp parseQuota Korupcija memorijeVulDBVulDB10/11/202510/19/202510/31/2025CVE-2020-36855673137
Prihvatio
276269nescalante urlregex Backtracking index.js Uskraćivanje uslugeVulDBVulDB08/31/202409/06/2024CVE-2020-36830
 
Prihvatio
258612DiscuzX install_function.php show_next_step Skriptovanje preko sajtaVulDBVulDB03/29/202404/10/2025CVE-2020-36828
 
Prihvatio
257784AwesomestCode LiveBot parseMessage.js parseSend Skriptovanje preko sajtaVulDBVulDB03/23/202404/13/2025CVE-2020-36826
 
Prihvatio
257782cyberaz0r WebRAT api.php download_file Eskalacija privilegija [Sporne]VulDBVulDB03/23/202407/05/2024CVE-2020-36825
 
Prihvatio
246642rl-institut NESP2 database.py SKL injekcijaVulDBVulDB12/02/202312/22/2023CVE-2020-36768
 
Prihvatio
234248ONS Digital RAS Collection Instrument comment.yml jobs Eskalacija privilegijaVulDBVulDB07/16/202308/06/2023CVE-2020-36762
 
Prihvatio
222233Artesãos SEOTools TwitterCards.php eachValue RedirectVulDBVulDB03/02/202303/30/2023CVE-2020-36665
 
Prihvatio
222232Artesãos SEOTools SEOMeta.php setTitle RedirectVulDBVulDB03/02/202303/30/2023CVE-2020-36664
 
Prihvatio
222231Artesãos SEOTools OpenGraph.php makeTag RedirectVulDBVulDB03/02/202303/30/2023CVE-2020-36663
 
Prihvatio
220642Kong lua-multipart multipart.lua is_header Uskraćivanje uslugeVulDBVulDB02/11/202303/10/2023CVE-2020-36661
 
Prihvatio
220211paxswill EVE Ship Replacement Program User Information api.py Obelodanjivanje informacijaVulDBVulDB02/05/202303/05/2023CVE-2020-36660
 
Prihvatio
218475GENI Portal sliceresource.php no_invocation_id_error Skriptovanje preko sajtaVulDBVulDB01/17/202302/09/2023CVE-2020-36654
 
Prihvatio
218474GENI Portal error-text.php Skriptovanje preko sajtaVulDBVulDB01/17/202302/09/2023CVE-2020-36653
 
Prihvatio
218461youngerheart nodeserver nodeserver.js Direktorijum TraversalVulDBVulDB01/17/202302/09/2023CVE-2020-36651
 
Prihvatio
218019IonicaBizau node-gry Eskalacija privilegijaVulDBVulDB01/11/202302/04/2023CVE-2020-36650
 
Prihvatio
218004mholt PapaParse papaparse.js Uskraćivanje uslugeVulDBVulDB01/11/202302/01/2023CVE-2020-36649
 
Prihvatio
217641pouetnet pouet SKL injekcijaVulDBVulDB01/08/202301/30/2023CVE-2020-36648
 
Prihvatio
217638YunoHost-Apps transmission_ynh nginx.conf Direktorijum TraversalVulDBVulDB01/08/202301/30/2023CVE-2020-36647
 
Prihvatio
217629MediaArea ZenLib Ztring.cpp Date_From_Seconds_1970_Local Uskraćivanje uslugeVulDBVulDB01/07/202301/30/2023CVE-2020-36646
 
Prihvatio
217623square squalor SKL injekcijaVulDBVulDB01/07/202301/06/2026CVE-2020-36645
 
Prihvatio
217597jamesmartin Inline SVG URL Parameter helpers.rb Skriptovanje preko sajtaVulDBVulDB01/07/202301/29/2023CVE-2020-36644
 
Prihvatio
217563intgr uqm-wasm msgbox_macosx.m log_displayBox Format StringVulDBVulDB01/06/202302/03/2023
 
Odbio
217553trampgeek jobe LanguageTask.php run_in_sandbox Eskalacija privilegijaVulDBVulDB01/06/202301/29/2023CVE-2020-36642
 
Prihvatio
217450gturri aXMLRPC ResponseParser.java ResponseParser XML External EntityVulDBVulDB01/05/202309/10/2025CVE-2020-36641
 
Prihvatio
217443bonitasoft bonita-connector-webservice SecureWSConnector.java TransformerConfigurationException XML External EntityVulDBVulDB01/05/202301/28/2023CVE-2020-36640
 
Prihvatio
217354AlliedModders AMX Mod X Console adminvote.sma cmdVoteMap Direktorijum TraversalVulDBVulDB01/04/202306/11/2024CVE-2020-36639
 
Prihvatio
217043Chris92de AdminServ adminserv.php Skriptovanje preko sajtaVulDBVulDB12/30/202204/28/2025CVE-2020-36638
 
Prihvatio
217042Chris92de AdminServ adminserv.php Skriptovanje preko sajtaVulDBVulDB12/30/202204/28/2025CVE-2020-36637
 
Prihvatio
216918OpenMRS Admin UI Module Account Setup AccountPageController.java sendErrorMessage Skriptovanje preko sajtaVulDBVulDB12/28/202201/25/2023CVE-2020-36636
 
Prihvatio
216915OpenMRS Appointment Scheduling Module AppointmentTypeValidator.java validateFieldName Skriptovanje preko sajtaVulDBVulDB12/27/202201/25/2023CVE-2020-36635
 
Prihvatio
216882Indeed Engineering util ViewExportedVariablesServlet.java appendTo Skriptovanje preko sajtaVulDBVulDB12/27/202201/25/2023CVE-2020-36634
 
Prihvatio
216879moodle-block_sitenews block_sitenews.php get_content Falsifikovanje zahteva za unakrsni sajtVulDBVulDB12/27/202201/25/2023CVE-2020-36633
 
Prihvatio
216777hughsk flat index.js unflatten Eskalacija privilegijaVulDBVulDB12/25/202201/24/2023CVE-2020-36632
 
Prihvatio
216772barronwaffles dwc_network_server_emulator gs_database.py update_profile SKL injekcijaVulDBVulDB12/25/202201/24/2023CVE-2020-36631
 
Prihvatio
216771FreePBX cdr Cdr.class.php ajaxHandler SKL injekcijaVulDBVulDB12/25/202201/24/2023CVE-2020-36630
 
Prihvatio
216748SimbCo httpster server.coffee fs.realpathSync Direktorijum TraversalVulDBVulDB12/24/202201/24/2023CVE-2020-36629
 
Prihvatio
216747Calsign APDE ZIP CopyBuildTask.java handleExtract Direktorijum TraversalVulDBVulDB12/24/202201/24/2023CVE-2020-36628
 
Prihvatio
216745Macaron i18n i18n.go RedirectVulDBVulDB12/24/202201/24/2023CVE-2020-36627
 
Prihvatio
216738Modern Tribe Panel Builder Plugin SearchFilter.php add_post_content_filtered_to_search_sql SKL injekcijaVulDBVulDB12/24/202201/24/2023CVE-2020-36626
 
Prihvatio
216521destiny.gg chat main.go websocket.Upgrader Falsifikovanje zahteva za unakrsni sajtVulDBVulDB12/22/202204/28/2025CVE-2020-36625
 
Prihvatio
216520ahorner text-helpers translation.rb Daljinsko izvršenje kodaVulDBVulDB12/22/202201/22/2023CVE-2020-36624
 
Prihvatio
216475Pengu index.js runApp Falsifikovanje zahteva za unakrsni sajtVulDBVulDB12/21/202201/22/2023CVE-2020-36623
 
Prihvatio
216473sah-comp bienlein Falsifikovanje zahteva za unakrsni sajtVulDBVulDB12/21/202201/22/2023CVE-2020-36622
 
Prihvatio
216470chedabob whatismyudid mobileconfig.js exports.enrollment Skriptovanje preko sajtaVulDBVulDB12/21/202201/22/2023CVE-2020-36621
 
Prihvatio
216466Brondahl EnumStringValues EnumExtensions.cs GetStringValuesWithPreferences_Uncache Uskraćivanje uslugeVulDBVulDB12/21/202201/21/2023CVE-2020-36620
 
Prihvatio
216269multimon-ng demod_flex.c add_ch Format StringVulDBVulDB12/19/202201/15/2023CVE-2020-36619
 
Prihvatio
216252Furqan node-whois index.coffee Eskalacija privilegijaVulDBVulDB12/19/202201/15/2023CVE-2020-36618
 
Prihvatio
216205ewxrjk sftpserver parse.c sftp_parse_path Eskalacija privilegija [Sporne]VulDBVulDB12/18/202208/04/2024CVE-2020-36617
 
Prihvatio
215116annyshow DuxCMS Falsifikovanje zahteva za unakrsni sajtVulDBVulDB12/08/202207/31/2023CVE-2020-36610
 
Prihvatio
215115annyshow DuxCMS Article edit Skriptovanje preko sajtaVulDBVulDB12/08/202207/31/2023CVE-2020-36609
 
Prihvatio
212816Tribal Systems Zenario CMS Error Log admin_organizer.js Skriptovanje preko sajtaVulDBVulDB11/02/202212/03/2022CVE-2020-36608
 
Prihvatio
164513Server Status HTTP Status/SMTP Status Skriptovanje preko sajtaVulDBVulDB11/08/202005/27/2022CVE-2020-36527
 
Prihvatio
164512Countdown Timer Macro Skriptovanje preko sajtaVulDBVulDB11/08/202005/27/2022CVE-2020-36526
 
Prihvatio
164511Linking New Windows Macro Skriptovanje preko sajtaVulDBVulDB11/08/202005/27/2022CVE-2020-36525
 
Prihvatio
164510Refined Toolkit UI-Image/UI-Button Skriptovanje preko sajtaVulDBVulDB11/08/202005/27/2022CVE-2020-36524
 
Prihvatio
164509PlantUML Database Information Macro Skriptovanje preko sajtaVulDBVulDB11/08/202005/27/2022CVE-2020-36523
 
Prihvatio
162264Platinum Mobile MobileHandler.ashx Eskalacija privilegijaVulDBVulDB10/04/202005/27/2022CVE-2020-36528
 
Prihvatio
162263SevOne Network Management System Device Manager Eskalacija privilegijaVulDBVulDB10/04/202006/03/2022CVE-2020-36531
 
Prihvatio
162262SevOne Network Management System Alert Summary SKL injekcijaVulDBVulDB10/04/202006/03/2022CVE-2020-36530
 
Prihvatio
162261SevOne Network Management System Traceroute traceroute.php Eskalacija privilegijaVulDBVulDB10/04/202006/03/2022CVE-2020-36529
 
Prihvatio
160763Klapp App JSON Web Token slaba autentifikacijaVulDBVulDB09/07/202006/03/2022CVE-2020-36533
 
Prihvatio
160762Klapp App Authorization Credentials Obelodanjivanje informacijaVulDBVulDB09/07/202006/03/2022CVE-2020-36532
 
Prihvatio
160278easyii CMS out Falsifikovanje zahteva za unakrsni sajtVulDBVulDB08/26/202011/07/2022CVE-2020-36534
 
Prihvatio
159957MINMAX newsDia.php SKL injekcijaVulDBVulDB08/14/202008/17/202006/03/2022CVE-2020-36535187
Prihvatio
159956Brandbugle main.php SKL injekcijaVulDBVulDB08/14/202008/17/202006/03/2022CVE-2020-36536186
Prihvatio
159955Eatan CMS SKL injekcijaVulDBVulDB08/14/202008/17/202006/03/2022CVE-2020-36538185
Prihvatio
159954Everywhere CMS SKL injekcijaVulDBVulDB08/14/202008/17/202006/03/2022CVE-2020-36537184
Prihvatio
159953Lógico y Creativo SKL injekcijaVulDBVulDB08/14/202008/17/202006/03/2022CVE-2020-36539183
Prihvatio
159438Neetai Tech product.php SKL injekcijaVulDBVulDB07/08/202008/10/202006/03/2022CVE-2020-36540179
Prihvatio
159435Demokratian install3.php Eskalacija privilegijaVulDBVulDB08/10/202006/03/2022CVE-2020-36542
 
Prihvatio
159434Demokratian genera_select.php SKL injekcijaVulDBVulDB05/05/202008/10/202006/03/2022CVE-2020-36541170
Prihvatio
159430SialWeb CMS Search Skriptovanje preko sajtaVulDBVulDB08/10/202006/04/2022CVE-2020-36544
 
Prihvatio
159429SialWeb CMS about.php SKL injekcijaVulDBVulDB03/22/202008/10/202006/04/2022CVE-2020-36543158
Prihvatio
129835GE Voluson S8 Windows Operating System Patches Eskalacija privilegijaVulDBVulDB01/17/201907/01/2023CVE-2020-36549
 
Prihvatio
129834GE Voluson S8 Service Browser users.cgi slaba autentifikacijaVulDBVulDB01/17/201907/01/2023CVE-2020-36548
 
Prihvatio
129833GE Voluson S8 Service Browser slaba autentifikacijaVulDBVulDB01/17/201907/01/2023CVE-2020-36547
 
Prihvatio

Are you interested in using VulDB?

Download the whitepaper to learn more about our service!