Server-Side Request Forgery (SSRF) in GitHub repository kareadita/kavita prior to 0.5.4.1.Read More ...
Continue ReadingAugust 10, 2022
In JetBrains TeamCity before 2022.04.3 the private SSH key could be written to the server log in some casesRead More ...
Continue ReadingAugust 10, 2022
WMS 3.7 contains a Path Traversal Vulnerability in Device API. An attacker could potentially exploit this vulnerability, to gain unauthorized read access to the files stored on the server filesystem, ...
Continue ReadingAugust 10, 2022
Dell Wyse Management Suite 3.6.1 and below contains an Improper Access control vulnerability in UI. An attacker with no access to Alert Classification page could potentially exploit this vulnerability ...
Continue ReadingAugust 10, 2022
Dell Wyse Management Suite 3.6.1 and below contains Information Disclosure in Devices error pages. An attacker could potentially exploit this vulnerability, leading to the disclosure of certain sensit ...
Continue ReadingAugust 10, 2022
Dell Wyse Management Suite 3.6.1 and below contains a Reflected Cross-Site Scripting Vulnerability in EndUserSummary page. An authenticated attacker could potentially exploit this vulnerability, leadi ...
Continue ReadingAugust 10, 2022
Dell Wyse Management Suite 3.6.1 and below contains an Plain-text Password Storage Vulnerability in UI. An attacker with low privileges could potentially exploit this vulnerability, leading to the dis ...
Continue ReadingAugust 10, 2022
Dell Wyse Management Suite 3.6.1 and below contains a Session Fixation vulnerability. A unauthenticated attacker could exploit this by taking advantage of a user with multiple active sessions in order ...
Continue ReadingAugust 10, 2022
Back to Main