This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will b ...
Continue ReadingJuly 07, 2022
With this SSRF vulnerability, an attacker can reach internal addresses to make a request as the server and read it's contents. This attack can lead to leak of sensitive information.Read More ...
Continue ReadingJuly 06, 2022
HCL Launch stores user credentials in plain clear text which can be read by a local user.Read More ...
Continue ReadingJuly 06, 2022
HCL Launch may store certain data for recurring activities in a plain text format.Read More ...
Continue ReadingJuly 06, 2022
A insecure configuration for certificate verification (http.verify_mode = OpenSSL::SSL::VERIFY_NONE) may lead to verification bypass in Red Hat CloudForms 5.x.Read More ...
Continue ReadingJuly 06, 2022
OpenVPN Access Server 2.10 and prior versions are susceptible to resending multiple packets in a response to a reset packet sent from the client which the client again does not respond to, resulting i ...
Continue ReadingJuly 06, 2022
EidoGo is susceptible to Cross-Site Scripting (XSS) attacks via maliciously crafted SGF input.Read More ...
Continue ReadingJuly 06, 2022
custom-content-type-manager Wordpress plugin can be used by an administrator to achieve arbitrary PHP remote code execution.Read More ...
Continue ReadingJuly 06, 2022
Back to Main