A path traversal issue in entry attachments in Devolutions Remote Desktop Manager before 2022.2 allows attackers to create or overwrite files in an arbitrary location.Read More ...
Continue ReadingJune 21, 2022
A maliciously crafted TGA file in Autodesk AutoCAD 2023 may be used to write beyond the allocated buffer while parsing TGA file. This vulnerability may be exploited to execute arbitrary code.Read More ...
Continue ReadingJune 21, 2022
Online Railway Reservation System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /orrs/admin/trains/manage_train.php.Read More ...
Continue ReadingJune 21, 2022
Online Railway Reservation System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /orrs/admin/?page=user/manage_user.Read More ...
Continue ReadingJune 21, 2022
Online Railway Reservation System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /orrs/admin/reservations/view_details.php.Read More ...
Continue ReadingJune 21, 2022
An authenticated attacker could read arbitrary files from the underlying operating system of the scanner using a custom crafted compliance audit file without providing any valid SSH credentials.Read M ...
Continue ReadingJune 21, 2022
IdeaLMS 2022 allows reflected Cross Site Scripting (XSS) via the IdeaLMS/Class/Assessment/ PATH_INFO.Read More ...
Continue ReadingJune 21, 2022
There is a Cross Site Scripting Stored (XSS) vulnerability in NukeViet CMS before 4.5.02.Read More ...
Continue ReadingJune 21, 2022
Back to Main