IBM Sterling Partner Engagement Manager 6.1.2, 6.2, and Cloud/SasS 22.2 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmit ...
Continue ReadingJuly 19, 2022
IBM Sterling Partner Engagement Manager 6.1.2, 6.2, and Cloud/SasS 22.2 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vu ...
Continue ReadingJuly 19, 2022
Barangay Management System v1.0 was discovered to contain a SQL injection vulnerability via the hidden_id parameter at /officials/officials.php.Read More ...
Continue ReadingJuly 19, 2022
In grails-databinding in Grails before 3.3.15, 4.x before 4.1.1, 5.x before 5.1.9, and 5.2.x before 5.2.1 (at least when certain Java 8 configurations are used), data binding allows a remote attacker ...
Continue ReadingJuly 19, 2022
A deserialization vulnerability in a .NET framework class used and not properly checked by Safety Designer all versions up to and including 1.11.0 allows an attacker to craft malicious project files. ...
Continue ReadingJuly 19, 2022
A deserialization vulnerability in a .NET framework class used and not properly checked by Flexi Soft Designer in all versions up to and including 1.9.4 SP1 allows an attacker to craft malicious proje ...
Continue ReadingJuly 19, 2022
BigFix Web Reports authorized users may perform HTML injection for the email administrative configuration page.Read More ...
Continue ReadingJuly 19, 2022
BigFix Web Reports authorized users may see SMTP credentials in clear text.Read More ...
Continue ReadingJuly 19, 2022
Back to Main