ShadowTrackr

Search the CVE vulnerability database

Look up vulnerabilities by software, product or CVE number.

1 result for “CVE-2020-37086”

CVEPublishedCVSSShadowTrackr CVSSSummary
CVE:
CVE-2020-37086
Published
2026-02-03
CVSS:
6.9
ShadowTrackr CVSS:
4.6
Summary:
Easy Transfer 1.7 iOS mobile application contains a directory traversal vulnerability that allows remote attackers to access unauthorized file system paths without authentication. Attackers can exploit the vulnerability by manipulating path parameters in GET and POST requests to list or download sensitive system files and inject malicious scripts into application parameters.