In "Gin-Vue-Admin", versions v2.5.1 through v2.5.3b are vulnerable to Unrestricted File Upload that leads to execution of javascript code, through the "Compress Upload" functionality to the Media Libr ...
Continue ReadingOctober 17, 2022
# CVE-2022-42889-MASS-RCE (another LOG4SHELL) Mass exploitation ...Read More ...
Continue ReadingOctober 17, 2022
Multiple Trumpf Products in multiple versions use default privileged Windows users and passwords. An adversary may use these accounts to remotely gain full access to the system.Read More ...
Continue ReadingOctober 17, 2022
## Summary IBM Sterliing File Gateway has addressed multiple security vulnerabilities in Bouncy Castle. ## Vulnerability Details ** CVEID: **[CVE-2016-1000343]() ** DESCRIPTION: **Bouncy Castle JCE Pr ...
Continue ReadingOctober 14, 2022
Adobe Commerce versions 2.4.4-p1 (and earlier) and 2.4.5 (and earlier) are affected by a Stored Cross-site Scripting vulnerability. Exploitation of this issue does not require user interaction and cou ...
Continue ReadingOctober 14, 2022
Adobe ColdFusion versions Update 14 (and earlier) and Update 4 (and earlier) are affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could ...
Continue ReadingOctober 14, 2022
Adobe ColdFusion versions Update 14 (and earlier) and Update 4 (and earlier) are affected by a Use of Hard-coded Credentials vulnerability that could result in application denial-of-service by gaining ...
Continue ReadingOctober 14, 2022
Adobe ColdFusion versions Update 14 (and earlier) and Update 4 (and earlier) are affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could ...
Continue ReadingOctober 14, 2022
Back to Main