Pexip Infinity 27.x before 27.3 has Improper Input Validation. The client API allows remote attackers to trigger a software abort via a gateway call into Teams.Read More ...
Continue ReadingJuly 17, 2022
Disclosure of information - the system allows you to view usernames and passwords without permissions, thus it will be possible to enter the system. Path access: https://api/sys_username_passwd.cmd - T ...
Continue ReadingJuly 17, 2022
# CVE-2022-24500-RCE CVE-2022-24500 Windows SMB Remote Code Exec...Read More ...
Continue ReadingJuly 17, 2022
A PHP package containing implementations of the accepted PSR-7 HTTP message interfaces [1], as well as a "server" implementation similar to node's http.Server [2]. Documentation: https://docs.laminas ...
Continue ReadingJuly 16, 2022
[ to escape arguments for **cmd.exe** on **Windows**. An attacker can omit all arguments following their input by including a line feed ...
Continue ReadingJuly 15, 2022
### Overview A partial-path traversal issue exists within the `downloadDirectory` method in the AWS S3 TransferManager component of the AWS SDK for Java v1. Applications using the SDK control the `des ...
Continue ReadingJuly 15, 2022
In versions prior to 3.3.2, Hudson exhibits a flaw in its XML API processing that can allow access to potentially sensitive information on the filesystem of the Hudson master server.Read More ...
Continue ReadingJuly 15, 2022
Back to Main