Directory traversal vulnerability in Snow Monkey Forms versions v5.1.0 and earlier allows a remote unauthenticated attacker to delete arbitrary files on the server.Read More ...
Continue ReadingJune 28, 2023
Reflected XSS affects the âmodeâ parameter in the /admin functionality of the web application in versions...Read More ...
Continue ReadingJune 28, 2023
The Subscribe2 plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 10.40. This is due to missing or incorrect nonce validation when sending test emails. ...
Continue ReadingJune 28, 2023
The Subscribe2 plugin for WordPress is vulnerable to unauthorized access to email functionality due to a missing capability check when sending test emails in versions up to, and including, 10.40. This ...
Continue ReadingJune 28, 2023
Improper Neutralization of Special Elements used in an OS Command vulnerability in NEC Corporation Aterm WG2200HP all versions allows a attacker to execute an arbitrary OS command with the ro ...
Continue ReadingJune 28, 2023
Improper Limitation of a Pathname to a Restricted Directory vulnerability in NEC Corporation Aterm WG2200HP all versions allows a attacker to obtain specific files in the product .Read More ...
Continue ReadingJune 28, 2023
Improper Neutralization of Input During Web Page Generation vulnerability in NEC Corporation Aterm WG2200HP all versions allows a attacker to execute an arbitrary script, after obtaining a hi ...
Continue ReadingJune 28, 2023
The Salon Booking System plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 8.4.6. This is due to missing or incorrect nonce validation on the 'sav ...
Continue ReadingJune 28, 2023
Back to Main