Skip to content

eddietcc/CVEnotes

Repository files navigation

CVEnotes

The discovery of these vulnerability is to work with my colleagues.

CVE ID Product Attack Vector Reference
CVE-2018-18950 KindEditor Directory Traversal [CVE][Description]
CVE-2018-19340 Guriddo Form PHP Cross-Site Scripting (XSS) [CVE][Description]
CVE-2018-19434 webERP SQL injection (Blind) [CVE][Description]
CVE-2018-19435 webERP SQL injection (Blind) [CVE][Description]
CVE-2018-19436 webERP SQL injection [CVE][Description]
CVE-2018-19784 PHP-Proxy Sensitive Data Exposure [CVE][Description]
CVE-2018-19785 PHP-Proxy Cross-Site Scripting (XSS) [CVE][Description]
CVE-2018-19970 phpMyAdmin Stored Cross-site Scripting (S-XSS) [CVE][Official Announcement]
CVE-2018-20420 webERP Incorrect Access Control [CVE][Description]
CVE-2019-6798 phpMyAdmin SQL injection [CVE][Official Announcement]
CVE-2019-7316 Chat2 SQL injection [CVE][Description]
CVE-2019-7543 KindEditor Cross-Site Scripting (XSS) [CVE][Description]
CVE-2019-7544 MyWebSQL Stored Cross-site Scripting (S-XSS) [CVE][Description]
CVE-2019-7545 DbNinja Stored Cross-site Scripting (S-XSS) [CVE][Description]
CVE-2019-7546 SIDU Cross-Site Scripting (XSS) [CVE][Description]
CVE-2019-7547 SIDU Stored Cross-site Scripting (S-XSS) [CVE][Description]
CVE-2019-7730 MyWebSQL Cross-site request forgery (CSRF) [CVE][Description]
CVE-2019-7731 MyWebSQL Remote Code Execution (RCE) [CVE][Description]
CVE-2019-7747 DbNinja Broken Authentication [CVE][Description]
CVE-2019-7748 DbNinja Cross-Site Scripting (XSS) [CVE][Description]

About

No description, website, or topics provided.

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published