Following the coordinated and responsible vulnerability disclosure guidelines of the **[ISO 29147]()** standard, Open Bug Bounty has: a. verified the vulnerability and confirmed its existence; b. not ...
Continue ReadingJune 09, 2022
Just about anywhere you look, organizations are using the cloud in some formand theyre not all large enterprises. Small and medium businesses (SMBs) are also reaping the many benefits that the clo ...
Continue ReadingJune 09, 2022
A Server-Side Request Forgery (SSRF) in the getFileBinary function of nbnbk cms 3 allows attackers to force the application to make arbitrary requests via injection of arbitrary URLs into the URL para ...
Continue ReadingJune 09, 2022
Jizhicms v2.2.5 was discovered to contain a Server-Side Request Forgery (SSRF) vulnerability via the Update function in app/admin/c/TemplateController.php.Read More ...
Continue ReadingJune 09, 2022
Emlog Pro v 1.0.4 cross-site scripting (XSS) in Emlog Pro background management.Read More ...
Continue ReadingJune 09, 2022
The Android application HTTP File Server (Version 1.4.1) by 'slowscript' is affected by a path traversal vulnerability that permits arbitrary directory listing, file read, and file write.Read More ...
Continue ReadingJune 09, 2022
A reflected cross-site scripting (XSS) vulnerability exists in the playerConfUrl parameter in the /defaultui/player/modern.html file for SCORM Engine versions Read More ...
Continue ReadingJune 09, 2022
ZTE's MF297D product has cryptographic issues vulnerability. Due to the use of weak random values, the security of the device is reduced, and it may face the risk of attack.Read More ...
Continue ReadingJune 09, 2022
Back to Main