IBM Sterling Partner Engagement Manager 6.1, 6.2, and Cloud 22.2 do not limit the length of a connection which could cause the server to become unresponsive. IBM X-Force ID: 230932.Read More ...
Continue ReadingJuly 26, 2022
In Zoho ManageEngine SupportCenter Plus before 11023, V3 API requests are vulnerable to authentication bypass. (An API request may, in effect, be executed with the credentials of a user who authentica ...
Continue ReadingJuly 26, 2022
Paymoney v3.3 was discovered to contain multiple reflected cross-site scripting (XSS) vulnerabilities via the first_name and last_name parameters.Read More ...
Continue ReadingJuly 26, 2022
Fruits Bazar v1.0 was discovered to contain a SQL injection vulnerability via the recover_email parameter at user_password_recover.php.Read More ...
Continue ReadingJuly 26, 2022
Inout Blockchain AltExchanger v1.2.1 was discovered to contain a cross-site scripting (XSS) vulnerability via the component /admin/js.Read More ...
Continue ReadingJuly 26, 2022
insufficient TLB flush for x86 PV guests in shadow mode For migration as well as to work around kernels unaware of L1TF (see XSA-273), PV guests may be run in shadow paging mode. To address XSA-401, c ...
Continue ReadingJuly 26, 2022
Online Fire Reporting System 1.0 is vulnerable to SQL Injection via the date parameter.Read More ...
Continue ReadingJuly 26, 2022
An issue was discovered in yasm version 1.3.0. There is a NULL pointer dereference in expand_smacro() in modules/preprocs/nasm/nasm-pp.c.Read More ...
Continue ReadingJuly 26, 2022
Back to Main