The affected product is vulnerable to a SQL injection with high attack complexity, which may allow an unauthorized attacker to disclose information.Read More ...
Continue ReadingJuly 22, 2022
The affected product is vulnerable to directory traversal, which may allow an attacker to access unauthorized files and execute arbitrary code.Read More ...
Continue ReadingJuly 22, 2022
The affected product is vulnerable due to missing authentication, which may allow an attacker to read or modify sensitive data and execute arbitrary code, resulting in a denial-of-service condition.Re ...
Continue ReadingJuly 22, 2022
The affected product is vulnerable to two SQL injections that require high privileges for exploitation and may allow an unauthorized attacker to disclose informationRead More ...
Continue ReadingJuly 22, 2022
Under certain circumstances an unauthenticated user could access the the web API for Metasys ADS/ADX/OAS 10 versions prior to 10.1.6 and 11 versions prior to 11.0.2 and enumerate users.Read More ...
Continue ReadingJuly 22, 2022
The Better PDF Exporter add-on 10.0.0 for Atlassian Jira is prone to stored XSS via a crafted description to the PDF Templates overview page.Read More ...
Continue ReadingJuly 22, 2022
Zulip is an open source team chat tool. Due to an incorrect authorization check in Zulip Server 5.4 and earlier, a member of an organization could craft an API call that grants organization administra ...
Continue ReadingJuly 22, 2022
The eziod package in PyPI before v0.0.1 included a code execution backdoor inserted by a third party.Read More ...
Continue ReadingJuly 22, 2022
Back to Main