Known Vulnerabilities for products from Txjia
Listed below are 16 of the newest known vulnerabilities associated with the vendor "Txjia".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2021-36444 json | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... | 8.8 - HIGH | 2023-02-03 | 2023-02-09 |
| CVE-2021-36443 json | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... | 8.8 - HIGH | 2023-02-03 | 2023-02-09 |
| CVE-2021-35370 json | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... | 9.8 - CRITICAL | 2023-02-24 | 2023-03-07 |
| CVE-2021-35369 json | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... | 6.5 - MEDIUM | 2023-02-24 | 2023-03-06 |
| CVE-2020-23520 json | imcat 5.2 allows an authenticated file upload and consequently remote code execution via the picture functionality. | 7.2 - HIGH | 2020-12-09 | 2020-12-10 |
| CVE-2020-22120 json | A remote code execution (RCE) vulnerability in /root/run/adm.php?admin-ediy&part=exdiy of imcat v5.1 allows authenticated att... | 8.8 - HIGH | 2021-08-18 | 2022-10-26 |
| CVE-2020-20392 json | SQL Injection vulnerability in imcat v5.2 via the fm[auser] parameters in coms/add_coms.php. | 9.8 - CRITICAL | 2021-06-23 | 2021-06-25 |
| CVE-2019-14968 json | An issue was discovered in imcat 4.9. There is SQL Injection via the index.php order parameter in a mod=faqs action. | 9.8 - CRITICAL | 2019-08-12 | 2019-08-15 |
| CVE-2019-8436 json | imcat 4.5 has Stored XSS via the root/run/adm.php fm[instop][note] parameter. | 5.4 - MEDIUM | 2019-02-18 | 2019-02-19 |
| CVE-2018-20611 json | imcat 4.4 allow XSS via a crafted cookie to the root/tools/adbug/binfo.php?cookie URI. | 6.1 - MEDIUM | 2018-12-30 | 2019-01-09 |
| CVE-2018-20610 json | imcat 4.4 allows directory traversal via the root/run/adm.php efile parameter. | 4.9 - MEDIUM | 2018-12-30 | 2019-01-07 |
| CVE-2018-20609 json | imcat 4.4 allows remote attackers to obtain potentially sensitive configuration information via the root/tools/adbug/check.ph... | 5.3 - MEDIUM | 2018-12-30 | 2019-01-09 |
| CVE-2018-20608 json | imcat 4.4 allows remote attackers to read phpinfo output via the root/tools/adbug/binfo.php?phpinfo1 URI. | 7.5 - HIGH | 2018-12-30 | 2019-01-09 |
| CVE-2018-20607 json | imcat 4.4 allows remote attackers to obtain potentially sensitive debugging information via the root/tools/adbug/binfo.php UR... | 5.3 - MEDIUM | 2018-12-30 | 2019-01-09 |
| CVE-2018-20606 json | imcat 4.4 allows full path disclosure via a dev.php?tools-ipaddr&api=Pcoln&uip= URI. | 7.5 - HIGH | 2018-12-30 | 2019-01-09 |
| CVE-2018-20605 json | imcat 4.4 allows remote attackers to execute arbitrary PHP code by using root/run/adm.php to modify the boot/bootskip.php fil... | 9.8 - CRITICAL | 2018-12-30 | 2019-01-09 |
Known software with vulnerabilities from Txjia
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Txjia | Imcat | 3.0 |