In Festo Controller CECC-X-M1 product family in multiple versions, the http-endpoint "cecc-x-web-viewer-request-off" POST request doesnât check for port syntax. This can result in unauthorized ex ...
Continue ReadingJune 13, 2022
A cross-site scripting (XSS) vulnerability in /staff/tools/custom-fields of Helpdeskz v2.0.2 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the email nam ...
Continue ReadingJune 13, 2022
Cross-site Scripting (XSS) - Reflected in GitHub repository neorazorx/facturascripts prior to 2022.06.Read More ...
Continue ReadingJune 13, 2022
Cross-site Scripting (XSS) - Stored in GitHub repository neorazorx/facturascripts prior to 2022.06.Read More ...
Continue ReadingJune 13, 2022
flatCore-CMS version 2.0.8 is affected by Cross Site Scripting (XSS) in the "Create New Page" option through the index page.Read More ...
Continue ReadingJune 13, 2022
SQL Injection in GitHub repository francoisjacquet/rosariosis prior to 9.0.Read More ...
Continue ReadingJune 13, 2022
This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will b ...
Continue ReadingJune 13, 2022
The RSVPMaker plugin for WordPress is vulnerable to unauthenticated SQL Injection due to insufficient escaping and parameterization on user supplied data passed to multiple SQL queries in the ~/rsvpma ...
Continue ReadingJune 13, 2022
Back to Main