Splunk Enterprise peers in Splunk Enterprise versions before 9.0 and Splunk Cloud Platform versions before 8.2.2203 did not validate the TLS certificates during Splunk-to-Splunk communications by defa ...
Continue ReadingJune 15, 2022
The httplib and urllib Python libraries that Splunk shipped with Splunk Enterprise did not validate certificates using the certificate authority (CA) certificate stores by default in Splunk Enterprise ...
Continue ReadingJune 15, 2022
kkcms v1.3.7 was discovered to contain a SQL injection vulnerability via the cid parameter at /template/wapian/vlist.php.Read More ...
Continue ReadingJune 15, 2022
A lack of password masking in Devolutions Remote Desktop Manager allows physically proximate attackers to observe sensitive data. A caching issue can cause sensitive fields to sometimes stay revealed ...
Continue ReadingJune 15, 2022
Monstra 3.0.4 does not filter the case of php, which leads to an unrestricted file upload vulnerability.Read More ...
Continue ReadingJune 15, 2022
Access of Memory Location After End of Buffer (CWE-788)Read More ...
Continue ReadingJune 15, 2022
Online Tours And Travels Management System v1.0 was discovered to contain a SQL injection vulnerability via the tname parameter at /admin/operations/tax.php.Read More ...
Continue ReadingJune 15, 2022
Web Based Quiz System v1.0 was discovered to contain a SQL injection vulnerability via the eid parameter at welcome.php.Read More ...
Continue ReadingJune 15, 2022
Back to Main