Violation of secure design principles exists in the communication of CAMS for HIS. Affected products and versions are CENTUM series where LHS4800 is installed (CENTUM CS 3000 and CENTUM CS 3000 Small ...
Continue ReadingJune 28, 2022
Cleartext transmission of sensitive information vulnerability exists in STARDOM FCN Controller and FCJ Controller R1.01 to R4.31, which may allow an adjacent attacker to login the affected products an ...
Continue ReadingJune 28, 2022
The schm_box_size function in GPAC 1.0.1 allows attackers to cause a denial of service via a crafted file in the MP4Box command.Read More ...
Continue ReadingJune 28, 2022
The gf_hinter_track_finalize function in GPAC 1.0.1 allows attackers to cause a denial of service via a crafted file in the MP4Box command.Read More ...
Continue ReadingJune 28, 2022
In GPAC MP4Box 1.1.0, there is a Null pointer reference in the function gf_filter_pid_get_packet function in src/filter_core/filter_pid.c:5394, as demonstrated by GPAC. This can cause a denial of serv ...
Continue ReadingJune 28, 2022
ECShop 4.1.0 has SQL injection vulnerability, which can be exploited by attackers to obtain sensitive information.Read More ...
Continue ReadingJune 28, 2022
Server-Side Request Forgery (SSRF) in GitHub repository dompdf/dompdf prior to 2.0.0.Read More ...
Continue ReadingJune 28, 2022
When an attacker obtaining the administrative account and password, or through a man-in-the-middle attack, the attacker could send a specified crafted packet to the vulnerable interface then lead the ...
Continue ReadingJune 28, 2022
Back to Main