This vulnerability exists in Apex Softcell LD Geo due to improper validation of the certain parameters (Client ID, DPID or BOID) in the API endpoint. An authenticated remote attacker could exploit thi ...
Continue ReadingSeptember 19, 2024
This vulnerability exists in Apex Softcell LD Geo due to missing restrictions for excessive failed authentication attempts on its API based login. A remote attacker could exploit this vulnerability by ...
Continue ReadingSeptember 19, 2024
This vulnerability exists in the Apex Softcell LD Geo due to improper validation of the transaction token ID in the API endpoint. An authenticated remote attacker could exploit this vulnerability by m ...
Continue ReadingSeptember 19, 2024
Mass Assigner is a powerful tool designed to identify and exploit mass assignment vulnerabilities in web applications. It achieves this by first retrieving data from a specified request, such as fetch ...
Continue ReadingSeptember 19, 2024
Part 1: Overview of the Problem ASM Solves and a High-Level Description of ASM and Its Components Welcome to the first installment of our multipart series, "Help! I Can’t See! A Primer for ...
Continue ReadingSeptember 19, 2024
CVE-2023-1177 | | MLFlow Path Traversal | Tested on MLflow 2.2.0 | src: https://github.com/iumiro/CVE-2023-1177-MLFlow | .. code-block:: bash #!/bin/bash RAND="EXPLOIT-$((1+$RANDOM%9999))& ...
Continue ReadingSeptember 19, 2024
spicedb is an Open Source, Google Zanzibar-inspired permissions database to enable fine-grained authorization for customer applications. Multiple caveats over the same indirect subject type on the sam ...
Continue ReadingSeptember 19, 2024
This vulnerability exists in Apex Softcell LD Geo due to improper validation of the certain parameters (Client ID, DPID or BOID) in the API endpoint. An authenticated remote attacker could exploit thi ...
Continue ReadingSeptember 19, 2024
Back to Main