Silverstripe silverstripe/assets through 1.10 allows XSS.Read More ...
Continue ReadingJune 28, 2022
Silverstripe silverstripe/framework through 4.10.0 allows XSS, inside of script tags that can can be added to website content via XHR by an authenticated CMS user if the cwp-core module is not install ...
Continue ReadingJune 28, 2022
Marval MSM v14.19.0.12476 has a 0-Click Account Takeover vulnerability which allows an attacker to change any user's password in the organization, this means that the user can also escalate achieve Pr ...
Continue ReadingJune 28, 2022
Silverstripe silverstripe/framework through 4.10 allows Session Fixation.Read More ...
Continue ReadingJune 28, 2022
Marval MSM v14.19.0.12476 has an Improper Access Control vulnerability which allows a low privilege user to delete other users API Keys including high privilege and the Administrator users API Keys.Re ...
Continue ReadingJune 28, 2022
Invalid interval in CONNECT_IND leads to Division by Zero. Zephyr versions >= v1.14.0 Divide By Zero (CWE-369). For more information, see https://github.com/zephyrproject-rtos/zephyr/security/advis ...
Continue ReadingJune 28, 2022
Assertion reachable with repeated LL_FEATURE_REQ. Zephyr versions >= v2.5.0 contain Reachable Assertion (CWE-617). For more information, see https://github.com/zephyrproject-rtos/zephyr/security/ad ...
Continue ReadingJune 28, 2022
Assertion reachable with repeated LL_CONNECTION_PARAM_REQ. Zephyr versions >= v1.14 contain Reachable Assertion (CWE-617). For more information, see https://github.com/zephyrproject-rtos/zephyr/sec ...
Continue ReadingJune 28, 2022
Back to Main