Shenzhen Guoxin Synthesis image system before 8.3.0 allows unauthorized password resets via the resetPassword...Read More ...
Continue ReadingJune 16, 2024
CVE-2024-4577 In PHP when using Apache and PHP-CGI on Windows, if the system is set up to use certain code pages, Windows may use "Best-Fit" behavior to replace characters in command ...
Continue ReadingJune 15, 2024
CVE-2024-30078 Detection and Command Execution Script This project contains a NASL script that detects the CVE-2024-30078 vulnerability and executes a specified command if the target is vulnerable. Th ...
Continue ReadingJune 15, 2024
CVE-2024-36837 POC write URL in url.txt and run CVE-2024-36837.py CVE-2024-36837 In my freshman year, I found that an educational institution used CRMEB Mall as an online store in an Internet protect ...
Continue ReadingJune 15, 2024
Users with "User:edit" and "Self:api" permissions can promote or demote themselves or other users by performing changes to the group's memberships via API cal ...
Continue ReadingJune 15, 2024
github.com/cilium/cilium is vulnerable to Information Disclosure. The vulnerability is due to the output of cilium-bugtool containing sensitive data when the tool is run with the --envoy-dump flag in ...
Continue ReadingJune 15, 2024
A vulnerability was found in Guangdong Baolun Electronics IP Network Broadcasting Service Platform 2.0. It has been classified as critical. Affected is an unknown function of the file /api/v2/maps. Th ...
Continue ReadingJune 14, 2024
A vulnerability was found in Guangdong Baolun Electronics IP Network Broadcasting Service Platform 2.0. It has been classified as critical. Affected is an unknown function of the file /api/v2/maps. Th ...
Continue ReadingJune 14, 2024
Back to Main