General-Purpose System Vulnerabilities
Vulnerabilities related to traditional IT systems, servers, and desktop applications.
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2019-20179 | SOPlanning 1.45 has SQL injection via the user_list.php "by" parameter. | High (8.8) | 2020-01-09 | General Purpose |
| CVE-2019-20178 | Advisto PEEL Shopping 9.2.1 has CSRF via administrer/utilisateurs.php to delete a user. | Medium (6.5) | 2020-01-09 | General Purpose |
| CVE-2012-2950 | Gateway Geomatics MapServer for Windows before 3.0.6 contains a Local File Include Vulnerability which allows remote at… | High (8.1) | 2020-01-09 | General Purpose |
| CVE-2019-20372 | NGINX before 1.17.7, with certain error_page configurations, allows HTTP request smuggling, as demonstrated by the abil… | Medium (5.3) | 2020-01-09 | General Purpose |
| CVE-2019-20180 | The TablePress plugin 1.9.2 for WordPress allows tablepress[data] CSV injection by Editor users. Note: The vendor dispu… | Medium (6.8) | 2020-01-09 | General Purpose |