E3 Site Supervisor Control (firmware version < 2.31F01) MGW contains an API call that lacks input validation. An attacker can use this command to continuously crash the application...Read More ...
Continue ReadingSeptember 02, 2025
E3 Site Supervisor Control (firmware version < 2.31F01) contains a hidden API call in the application services that enables SSH and Shellinabox, which exist but are disabled by default. An atta ...
Continue ReadingSeptember 02, 2025
Name of the Vulnerable Software and Affected Versions: Deporsite by T-INNOVA (affected versions not specified) Description: A lack of authorization exists in Deporsite by T-INNOVA. An unauthenticated ...
Continue ReadingSeptember 02, 2025
A deserialization vulnerability exists in the H2O-3 REST API (POST /99/ImportSQLTable) that affects all versions up to 3.46.0.7. This vulnerability allows remote code execution (RCE) due to improper v ...
Continue ReadingSeptember 02, 2025
A vulnerability has been identified within Rancher Manager in which it did not enforce request body size limits on certain public (unauthenticated) and authenticated API endpoints. This allows a ma ...
Continue ReadingSeptember 02, 2025
A vulnerability has been identified within Rancher Manager in which it did not enforce request body size limits on certain public (unauthenticated) and authenticated API endpoints. This allows a ma ...
Continue ReadingSeptember 02, 2025
Elaina-SSRF-Probe An Advanced, Multi-Dimensional Framework for SSRF Vulnerability Discovery and Exploitation Features | Installation | Usage | Deep Dive | Disclaimer 📜 Abstract El ...
Continue ReadingSeptember 02, 2025
E3 Site Supervisor Control (firmware version < 2.31F01) MGW contains an API call that lacks input validation. An attacker can use this command to continuously crash the application...Read More ...
Continue ReadingSeptember 02, 2025
Back to Main