bdrake

2 exploits Active since Jan 2026
CVE-2020-37027 EXPLOITDB CRITICAL python WORKING POC
Sickbeard alpha - Command Injection
Sickbeard alpha contains a remote command injection vulnerability that allows unauthenticated attackers to execute arbitrary commands through the extra scripts configuration. Attackers can set malicious commands in the extra scripts field and trigger processing to execute remote code on the vulnerable Sickbeard installation.
CVSS 9.8
CVE-2020-37026 EXPLOITDB MEDIUM text WORKING POC
Sickbeard alpha - Cross-Site Request Forgery via Crafted Configuration Parameters
Sickbeard alpha contains a cross-site request forgery vulnerability that allows attackers to disable authentication by submitting crafted configuration parameters. Attackers can trick users into submitting a malicious form that clears web username and password, effectively removing authentication protection.
CVSS 5.3