Ingredients Stock Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /classes/Master.php?f=delete_stockin.Read More ...
Continue ReadingAugust 25, 2022
Library Management System v1.0 was discovered to contain a SQL injection vulnerability via the name parameter at /admin/search.php.Read More ...
Continue ReadingAugust 25, 2022
Library Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/changestock.php.Read More ...
Continue ReadingAugust 25, 2022
Nortek Linear eMerge E3-Series devices before 0.32-08f allow an unauthenticated attacker to inject OS commands via ReaderNo. NOTE: this issue exists because of an incomplete fix for CVE-2019-7256.Read ...
Continue ReadingAugust 25, 2022
Nortek Linear eMerge E3-Series 0.32-07p devices are vulnerable to /card_scan.php?CardFormatNo= XSS with session fixation (via PHPSESSID) when they are chained together. This would allow an attacker to ...
Continue ReadingAugust 25, 2022
Archer Platform 6.x before 6.11 P3 contain an HTML injection vulnerability. An authenticated remote attacker could potentially exploit this vulnerability by tricking a victim application user to execu ...
Continue ReadingAugust 25, 2022
An issue was discovered in Blue Prism Enterprise 6.0 through 7.01. In a misconfigured environment that exposes the Blue Prism Application server, it is possible for an authenticated user to reverse en ...
Continue ReadingAugust 25, 2022
An issue was discovered in Blue Prism Enterprise 6.0 through 7.01. In a misconfigured environment that exposes the Blue Prism Application server, it is possible for an authenticated user to reverse en ...
Continue ReadingAugust 25, 2022
Back to Main