Vulnerabilities (CVE)

Filtered by vendor Txjia Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-22120 1 Txjia 1 Imcat 2022-07-10 6.5 MEDIUM 8.8 HIGH
A remote code execution (RCE) vulnerability in /root/run/adm.php?admin-ediy&part=exdiy of imcat v5.1 allows authenticated attackers to execute arbitrary code.
CVE-2020-23520 1 Txjia 1 Imcat 2020-12-10 6.5 MEDIUM 7.2 HIGH
imcat 5.2 allows an authenticated file upload and consequently remote code execution via the picture functionality.
CVE-2018-20608 1 Txjia 1 Imcat 2019-01-09 5.0 MEDIUM 7.5 HIGH
imcat 4.4 allows remote attackers to read phpinfo output via the root/tools/adbug/binfo.php?phpinfo1 URI.
CVE-2018-20606 1 Txjia 1 Imcat 2019-01-09 5.0 MEDIUM 7.5 HIGH
imcat 4.4 allows full path disclosure via a dev.php?tools-ipaddr&api=Pcoln&uip= URI.