A broken authentication vulnerability in 4D SAS 4D Server software v17, v18, v19 R7, and earlier allows attackers to send crafted TCP packets containing requests to perform arbitrary actions.Read More ...
Continue ReadingJune 16, 2023
A lack of exception handling in the Volkswagen Discover Media Infotainment System Software Version 0876 allows attackers to cause a Denial of Service (DoS) via supplying crafted media files when conne ...
Continue ReadingJune 16, 2023
CData RSB Connect v22.0.8336 was discovered to contain a Server-Side Request Forgery (SSRF).Read More ...
Continue ReadingJune 16, 2023
The ipandlanguageredirect extension before 5.1.2 for TYPO3 allows SQL Injection.Read More ...
Continue ReadingJune 16, 2023
The ke_search (aka Faceted Search) extension before 4.0.3, 4.1.x through 4.6.x before 4.6.6, and 5.x before 5.0.2 for TYPO3 allows XSS via indexed data.Read More ...
Continue ReadingJune 16, 2023
Simple Customer Relationship Management 1.0 is vulnerable to SQL Injection via the email parameter.Read More ...
Continue ReadingJune 16, 2023
Cross-site Scripting (XSS) - DOM in GitHub repository saleor/react-storefront prior to c29aab226f07ca980cc19787dcef101e11b83ef7.Read More ...
Continue ReadingJune 16, 2023
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in nicolly WP No External Links plugin Read More ...
Continue ReadingJune 16, 2023
Back to Main