Improper Limitation of a Pathname leads to a Path Traversal vulnerability in the module King-Avis for Prestashop, allowing a user knowing the download token to read arbitrary local files.This issue af ...
Continue ReadingJune 02, 2023
A vulnerability, which was classified as critical, was found in SourceCodester Online Exam Form Submission 1.0. This affects an unknown part of the file /admin/update_s6.php. The manipulation of the a ...
Continue ReadingJune 02, 2023
A vulnerability was found in 07FLY CRM up to 1.2.0. It has been declared as problematic. This vulnerability affects unknown code of the component User Profile Handler. The manipulation leads to cross ...
Continue ReadingJune 02, 2023
A vulnerability was found in YFCMF up to 3.0.4. It has been rated as problematic. This issue affects some unknown processing of the file app/admin/controller/Ajax.php. The manipulation of the argument ...
Continue ReadingJune 02, 2023
Hitron CODA-5310 has insufficient filtering for specific parameters in the connection test function. A remote attacker authenticated as an administrator, can use the management page to perform command ...
Continue ReadingJune 02, 2023
SGUDA U-Lock central lock control serviceâs user management function has incorrect authorization. A remote attacker with general user privilege can exploit this vulnerability to call privileged A ...
Continue ReadingJune 02, 2023
Hitron Technologies CODA-5310 Telnet function with the default account and password, and there is no warning or prompt to ask users to change the default password and account. An unauthenticated remot ...
Continue ReadingJune 02, 2023
It is identified a vulnerability of insufficient authentication in the system configuration interface of Hitron Technologies CODA-5310. An unauthorized remote attacker can exploit this vulnerability t ...
Continue ReadingJune 02, 2023
Back to Main