There is a command injection vulnerability in a mobile internet product of ZTE. Due to insufficient validation of SET_DEVICE_LED interface parameter, an authenticated attacker could use the vulnerabil ...
Continue ReadingAugust 25, 2023
Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in ThemeKraft Post Form plugin Read More ...
Continue ReadingAugust 25, 2023
Mattermost fails to restrict which parameters' values it takes from the request during signup allowing an attacker to register users as inactive, thus blocking them from later accessing Mattermost wit ...
Continue ReadingAugust 25, 2023
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in PI Websolution Product page shipping calculator for WooCommerce plugin Read More ...
Continue ReadingAugust 25, 2023
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Gopi Ramasamy iframe popup plugin Read More ...
Continue ReadingAugust 25, 2023
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Wolfgang Ertl weebotLite plugin Read More ...
Continue ReadingAugust 25, 2023
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Palasthotel by Edward Bock, Katharina Rompf Sunny Search plugin Read More ...
Continue ReadingAugust 25, 2023
AdGuard DNS before 2.2 allows remote attackers to cause a denial of service via malformed UDP packets.Read More ...
Continue ReadingAugust 25, 2023
Back to Main