Skip to content

Commit

Permalink
fetch of nuclei cves
Browse files Browse the repository at this point in the history
  • Loading branch information
Marcuccio committed Sep 23, 2024
1 parent 4d8258e commit 8e889bd
Showing 1 changed file with 0 additions and 2 deletions.
2 changes: 0 additions & 2 deletions nuclei.json
Original file line number Diff line number Diff line change
Expand Up @@ -1975,8 +1975,6 @@
,
{"ID":"CVE-2020-35476","Info":{"Name":"OpenTSDB \u003c=2.4.0 - Remote Code Execution","Severity":"critical","Description":"OpenTSDB 2.4.0 and earlier is susceptible to remote code execution via the yrange parameter written to a gnuplot file in the /tmp directory. An attacker can execute malware, obtain sensitive information, modify data, and/or gain full control over a compromised system without entering necessary credentials.\n","Classification":{"CVSSScore":"9.8"}},"file_path":"http/cves/2020/CVE-2020-35476.yaml"}
,
{"ID":"CVE-2020-35489","Info":{"Name":"WordPress Contact Form 7 - Unrestricted File Upload","Severity":"critical","Description":"WordPress Contact Form 7 before 5.3.2 allows unrestricted file upload and remote code execution because a filename may contain special characters.","Classification":{"CVSSScore":"10"}},"file_path":"http/cves/2020/CVE-2020-35489.yaml"}
,
{"ID":"CVE-2020-35580","Info":{"Name":"SearchBlox \u003c9.2.2 - Local File Inclusion","Severity":"high","Description":"SearchBlox prior to version 9.2.2 is susceptible to local file inclusion in FileServlet that allows remote, unauthenticated users to read arbitrary files from the operating system via a /searchblox/servlet/FileServlet?col=url= request. Additionally, this may be used to read the contents of the SearchBlox configuration file (e.g., searchblox/WEB-INF/config.xml), which contains both the Super Admin API key and the base64 encoded SHA1 password hashes of other SearchBlox users.","Classification":{"CVSSScore":"7.5"}},"file_path":"http/cves/2020/CVE-2020-35580.yaml"}
,
{"ID":"CVE-2020-35598","Info":{"Name":"Advanced Comment System 1.0 - Local File Inclusion","Severity":"high","Description":"ACS Advanced Comment System 1.0 is affected by local file inclusion via an advanced_component_system/index.php?ACS_path=..%2f URI.","Classification":{"CVSSScore":"7.5"}},"file_path":"http/cves/2020/CVE-2020-35598.yaml"}
Expand Down

0 comments on commit 8e889bd

Please sign in to comment.