ShadowTrackr

Search the CVE vulnerability database

Look up vulnerabilities by software, product or CVE number.

1 result for “CVE-2020-37078”

CVEPublishedCVSSShadowTrackr CVSSSummary
CVE:
CVE-2020-37078
Published
2026-02-03
CVSS:
7.2
ShadowTrackr CVSS:
5.1
Summary:
i-doit Open Source CMDB 1.14.1 contains a file deletion vulnerability in the import module that allows authenticated attackers to delete arbitrary files by manipulating the delete_import parameter. Attackers can send a POST request to the import module with a crafted filename to remove files from the server's filesystem.