Server-Side Request Forgery (SSRF) in GitHub repository instantsoft/icms2 prior to 2.16.1.Read More ...
Continue ReadingAugust 31, 2023
Possible information exposure through log file vulnerability where sensitive fields are recorded in the configuration log without masking on Brocade SANnav before v2.3.0 and 2.2.2a. Notes: To access ...
Continue ReadingAugust 31, 2023
Session Fixation in GitHub repository instantsoft/icms2 prior to 2.16.1.Read More ...
Continue ReadingAugust 31, 2023
Cross Site Scripting vulnerabiltiy in Badaso v.0.0.1 thru v.2.9.7 allows a remote attacker to execute arbitrary code via a crafted payload to the Name of member parameter in the add new member functio ...
Continue ReadingAugust 31, 2023
An issue in ZIPFoundation v0.9.16 allows attackers to execute a path traversal via extracting a crafted zip file.Read More ...
Continue ReadingAugust 31, 2023
An issue in Archive v3.3.7 allows attackers to execute a path traversal via extracting a crafted zip file.Read More ...
Continue ReadingAugust 31, 2023
Chitor-CMS before v1.1.2 was discovered to contain multiple SQL injection vulnerabilities.Read More ...
Continue ReadingAugust 31, 2023
An unhandled edge case in the component _sanitizedPath of ZipArchive v2.5.4 allows attackers to cause a Denial of Service (DoS) via a crafted zip file.Read More ...
Continue ReadingAugust 31, 2023
Back to Main