...Read More ...
Continue ReadingSeptember 10, 2024
...Read More ...
Continue ReadingSeptember 10, 2024
Microsoft AllJoyn API Information Disclosure...Read More ...
Continue ReadingSeptember 10, 2024
Marinus Pfund, member of the AXIS OS Bug Bounty Program, has found the VAPIX API ledlimit.cgi was vulnerable for path traversal attacks allowing to list folder/file names on the local file system of ...
Continue ReadingSeptember 10, 2024
Marinus Pfund, member of the AXIS OS Bug Bounty Program, has found the VAPIX API alwaysmulti.cgi was vulnerable for file globbing which could lead to resource exhaustion of the Axis device. Axis has ...
Continue ReadingSeptember 10, 2024
51l3nc3, member of the AXIS OS Bug Bounty Program, has found that a Guard Tour VAPIX API parameter allowed the use of arbitrary values allowing for an attacker to block access to the guard tour config ...
Continue ReadingSeptember 10, 2024
An improper access control vulnerability [CWE-284] in FortiEDR Manager API 6.2.0 through 6.2.2, 6.0 all versions may allow in a shared environment context an authenticated admin with REST API permiss ...
Continue ReadingSeptember 10, 2024
Back to Main