Known Vulnerabilities for Imcat by Txjia
Listed below are 10 of the newest known vulnerabilities associated with "Imcat" by "Txjia".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2021-36444 json | Cross Site Request Forgery (CSRF) vulnerability in imcat 5.4 allows remote attackers to gain escalated privileges via flaws o... | 8.8 - HIGH | 2023-02-03 | 2023-02-09 |
| CVE-2021-36443 json | Cross Site Request Forgery vulnerability in imcat 5.4 allows remote attackers to escalate privilege via lack of token verific... | 8.8 - HIGH | 2023-02-03 | 2023-02-09 |
| CVE-2021-35370 json | An issue found in Peacexie Imcat v5.4 allows attackers to execute arbitrary code via the incomplete filtering function. | 9.8 - CRITICAL | 2023-02-24 | 2023-03-07 |
| CVE-2021-35369 json | Arbitrary File Read vulnerability found in Peacexie ImCat v.5.2 fixed in v.5.4 allows attackers to obtain sensitive informati... | 6.5 - MEDIUM | 2023-02-24 | 2023-03-06 |
| CVE-2020-23520 json | imcat 5.2 allows an authenticated file upload and consequently remote code execution via the picture functionality. | 7.2 - HIGH | 2020-12-09 | 2020-12-10 |
| CVE-2020-22120 json | A remote code execution (RCE) vulnerability in /root/run/adm.php?admin-ediy&part=exdiy of imcat v5.1 allows authenticated att... | 8.8 - HIGH | 2021-08-18 | 2022-10-26 |
| CVE-2020-20392 json | SQL Injection vulnerability in imcat v5.2 via the fm[auser] parameters in coms/add_coms.php. | 9.8 - CRITICAL | 2021-06-23 | 2021-06-25 |
| CVE-2019-14968 json | An issue was discovered in imcat 4.9. There is SQL Injection via the index.php order parameter in a mod=faqs action. | 9.8 - CRITICAL | 2019-08-12 | 2019-08-15 |
| CVE-2019-8436 json | imcat 4.5 has Stored XSS via the root/run/adm.php fm[instop][note] parameter. | 5.4 - MEDIUM | 2019-02-18 | 2019-02-19 |
| CVE-2018-20611 json | imcat 4.4 allow XSS via a crafted cookie to the root/tools/adbug/binfo.php?cookie URI. | 6.1 - MEDIUM | 2018-12-30 | 2019-01-09 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Txjia | Imcat | 5.2 | |||
| Application | Txjia | Imcat | 5.0 | |||
| Application | Txjia | Imcat | 4.9 | |||
| Application | Txjia | Imcat | 4.8 | |||
| Application | Txjia | Imcat | 4.7 | |||
| Application | Txjia | Imcat | 4.6 | |||
| Application | Txjia | Imcat | 4.5 | |||
| Application | Txjia | Imcat | 4.4 | |||
| Application | Txjia | Imcat | 4.3 | |||
| Application | Txjia | Imcat | 4.2 | |||
| Application | Txjia | Imcat | 4.1 | |||
| Application | Txjia | Imcat | 3.9 | |||
| Application | Txjia | Imcat | 3.8 | |||
| Application | Txjia | Imcat | 3.7 | |||
| Application | Txjia | Imcat | 3.6 | |||
| Application | Txjia | Imcat | 3.5 | |||
| Application | Txjia | Imcat | 3.4 | |||
| Application | Txjia | Imcat | 3.3 | |||
| Application | Txjia | Imcat | 3.2 | |||
| Application | Txjia | Imcat | 3.1 |