E3 Site Supervisor Control (firmware version < 2.31F01) MGW contains an API call that lacks input validation. An attacker can use this command to continuously crash the application...Read More ...
Continue ReadingSeptember 02, 2025
creation_timestamp| type| source ---|---|--- 2025-09-02 12:49:48+00:00| seen|...Read More ...
Continue ReadingSeptember 02, 2025
creation_timestamp| type| source ---|---|--- 2025-09-02 12:44:48+00:00| seen|...Read More ...
Continue ReadingSeptember 02, 2025
creation_timestamp| type| source ---|---|--- 2025-09-02 12:39:47+00:00| seen|...Read More ...
Continue ReadingSeptember 02, 2025
Bulletin has no...Read More ...
Continue ReadingSeptember 02, 2025
E3 Site Supervisor Control (firmware version < 2.31F01) RCI service contains an API call to read users info, which returns all usernames and password hashes for the application...Read More ...
Continue ReadingSeptember 02, 2025
A vulnerability has been identified within Rancher Manager in which it did not enforce request body size limits on certain public (unauthenticated) and authenticated API endpoints. This allows a ma ...
Continue ReadingSeptember 02, 2025
A deserialization vulnerability exists in the H2O-3 REST API (POST /99/ImportSQLTable) that affects all versions up to 3.46.0.7. This vulnerability allows remote code execution (RCE) due to improper v ...
Continue ReadingSeptember 02, 2025
Back to Main