A SQL injection vulnerability exists in the âadmin brand portalâ feature of the ScienceLogic SL1 that takes unsanitized user?controlled input and passes it directly to a SQL query. This allo ...
Continue ReadingAugust 09, 2023
A command injection vulnerability exists in the download and convert report feature of the ScienceLogic SL1 that takes unsanitized user?controlled input and passes it directly to a shell command. This ...
Continue ReadingAugust 09, 2023
A SQL injection vulnerability exists in the âschedule editorâ feature of the ScienceLogic SL1 that takes unsanitized user?controlled input and passes it directly to a SQL query. This allows ...
Continue ReadingAugust 09, 2023
A SQL injection vulnerability exists in the âadmin dynamic app mib errorsâ feature of the ScienceLogic SL1 that takes unsanitized user?controlled input and passes it directly to a SQL query. ...
Continue ReadingAugust 09, 2023
A SQL injection vulnerability exists in the âreporting job editorâ feature of the ScienceLogic SL1 that takes unsanitized user?controlled input and passes it directly to a SQL query. This al ...
Continue ReadingAugust 09, 2023
A SQL injection vulnerability exists in the âjson walkerâ feature of the ScienceLogic SL1 that takes unsanitized user?controlled input and passes it directly to a SQL query. This allows for ...
Continue ReadingAugust 09, 2023
A command injection vulnerability in the component diag_backup.php of OPNsense before 23.7 allows attackers to execute arbitrary commands via a crafted backup configuration file.Read More ...
Continue ReadingAugust 09, 2023
A SQL injection vulnerability exists in the ânotes viewâ feature of the ScienceLogic SL1 that takes unsanitized user?controlled input and passes it directly to a SQL query. This allows for t ...
Continue ReadingAugust 09, 2023
Back to Main