Multiple vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker to conduct SQL injection attacks against the Edg ...
Continue ReadingAugust 22, 2023
Vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker to conduct a stored cross-site scripting (XSS) attack agains ...
Continue ReadingAugust 22, 2023
In Cacti 1.2.19, there is an authentication bypass in the web login functionality because of improper validation in the PHP code: cacti_ldap_auth() allows a zero as the password.Read More ...
Continue ReadingAugust 22, 2023
A reachable Object::getString assertion in Poppler 22.07.0 allows attackers to cause a denial of service due to a failure in markObject.Read More ...
Continue ReadingAugust 22, 2023
GNU Binutils before 2.40 was discovered to contain a memory leak vulnerability var the function find_abstract_instance in dwarf2.c.Read More ...
Continue ReadingAugust 22, 2023
memcached 1.6.7 allows a Denial of Service via multi-packet uploads in UDP.Read More ...
Continue ReadingAugust 22, 2023
In Poppler 22.07.0, PDFDoc::savePageAs in PDFDoc.c callows attackers to cause a denial-of-service (application crashes with SIGABRT) by crafting a PDF file in which the xref data structure is mishandl ...
Continue ReadingAugust 22, 2023
A memory leak in ImageMagick 7.0.10-45 and 6.9.11-22 allows remote attackers to perform a denial of service via the "identify -help" command.Read More ...
Continue ReadingAugust 22, 2023
Back to Main