CVE-2023-20895

The VMware vCenter Server contains a memory corruption vulnerability in the implementation of the DCERPC protocol. A malicious actor with network access to vCenter Server may trigger a memory corru ...

Continue Reading
CVE-2023-23811

Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Neil Gee Smoothscroller plugin Read More ...

Continue Reading
CVE-2023-34939

Onlyoffice Community Server before v12.5.2 was discovered to contain a remote code execution (RCE) vulnerability via the component UploadProgress.ashx.Read More ...

Continue Reading
CVE-2023-35918

Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in WooCommerce Bulk Stock Management plugin Read More ...

Continue Reading
CVE-2023-29711

An incorrect access control issue was discovered in Interlink PSG-5124 version 1.0.4, allows attackers to execute arbitrary code via crafted GET request.Read More ...

Continue Reading
CVE-2023-35093

Broken Access Control vulnerability in StylemixThemes MasterStudy LMS WordPress Plugin – for Online Courses and Education plugin Read More ...

Continue Reading
CVE-2023-31867

Sage X3 version 12.14.0.50-0 is vulnerable to CSV Injection.Read More ...

Continue Reading
CVE-2023-31868

Sage X3 version 12.14.0.50-0 is vulnerable to Cross Site Scripting (XSS). Some parts of the Web application are dynamically built using user's inputs. Yet, those inputs are not verified nor filtered b ...

Continue Reading

Back to Main

Subscribe for the latest news: