Monstra 3.0.4 does not filter the case of php, which leads to an unrestricted file upload vulnerability.Read More ...
Continue ReadingJune 15, 2022
Access of Memory Location After End of Buffer (CWE-788)Read More ...
Continue ReadingJune 15, 2022
Online Tours And Travels Management System v1.0 was discovered to contain a SQL injection vulnerability via the tname parameter at /admin/operations/tax.php.Read More ...
Continue ReadingJune 15, 2022
Web Based Quiz System v1.0 was discovered to contain a SQL injection vulnerability via the eid parameter at welcome.php.Read More ...
Continue ReadingJune 15, 2022
Theme Park Ticketing System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at edit_ticket.php.Read More ...
Continue ReadingJune 15, 2022
YoudianCMS v9.5.0 was discovered to contain a SQL injection vulnerability via the id parameter at /App/Lib/Action/Admin/SiteAction.class.php.Read More ...
Continue ReadingJune 15, 2022
YoudianCMS v9.5.0 was discovered to contain a SQL injection vulnerability via the MailSendID parameter at /App/Lib/Action/Admin/MailAction.class.php.Read More ...
Continue ReadingJune 15, 2022
Splunk Enterprise deployment servers in versions before 9.0 let clients deploy forwarder bundles to other deployment clients through the deployment server. An attacker that compromised a Universal For ...
Continue ReadingJune 15, 2022
Back to Main