cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2020-36199,https://securityvulnerability.io/vulnerability/CVE-2020-36199,Command Injection Vulnerability in TinyCheck Product by Kaspersky Lab,"TinyCheck by Kaspersky Lab is susceptible to command injection vulnerabilities due to improper validation of input parameters in multiple instances. This flaw allows attackers to potentially execute arbitrary commands in the context of the application, raising concerns over security in software development practices.",Kaspersky,Kaspersky Tinycheck,9.8,CRITICAL,0.0016199999954551458,false,,false,false,false,,,false,false,,2021-01-26T18:15:00.000Z,0 CVE-2020-36200,https://securityvulnerability.io/vulnerability/CVE-2020-36200,HTTP Request Vulnerability in TinyCheck by Kaspersky Lab,"A security flaw in TinyCheck allows an authenticated attacker to craft and send an HTTP GET request to specially designed URLs. This vulnerability can potentially enable unauthorized access and manipulation, posing a significant risk to the integrity and confidentiality of the affected web applications.",Kaspersky,Kaspersky Tinycheck,6.5,MEDIUM,0.0005000000237487257,false,,false,false,false,,,false,false,,2021-01-26T18:15:00.000Z,0 CVE-2020-35929,https://securityvulnerability.io/vulnerability/CVE-2020-35929,Security Flaw in TinyCheck Tool by Kaspersky Lab,"The installation script of TinyCheck prior to specific commits contains hard-coded credentials, creating potential loopholes for attackers to gain unauthorized access to sensitive backend components of the tool. This exposure can lead to unauthorized access to remote data, thus compromising the security integrity of the application.",Kaspersky,Tinycheck,9.8,CRITICAL,0.0016400000313296914,false,,false,false,false,,,false,false,,2021-01-19T16:53:36.000Z,0