In Recipes, versions 0.17.0 through 1.2.5 are vulnerable to Stored Cross-Site Scripting (XSS), in the Name field of Keyword, Food and Unit components. When a victim accesses the Keyword/Food/Unit ...
Continue ReadingJune 21, 2022
In Recipes, versions 1.0.5 through 1.2.5 are vulnerable to Stored Cross-Site Scripting (XSS), in copy to clipboard functionality. When a victim accesses the food list page, then adds a new Food with a ...
Continue ReadingJune 21, 2022
In Recipes, versions 1.0.5 through 1.2.5 are vulnerable to Stored Cross-Site Scripting (XSS), in Add to Cart functionality. When a victim accesses the food list page, then adds a new Food with a m ...
Continue ReadingJune 21, 2022
An unauthenticated, remote attacker could upload malicious logic to devices based on ProConOS/ProConOS eCLR in order to gain full control over the device.Read More ...
Continue ReadingJune 21, 2022
An unauthenticated, remote attacker could upload malicious logic to the devices based on ProConOS/ProConOS eCLR in order to gain full control over the device.Read More ...
Continue ReadingJune 21, 2022
ASUS Control Center API has a broken access control vulnerability. An unauthenticated remote attacker can call privileged API functions to perform partial system operations or cause partial disrupt of ...
Continue ReadingJune 20, 2022
ASUS Control Center is vulnerable to SQL injection. An authenticated remote attacker with general user privilege can inject SQL command to specific API parameters to acquire database schema or access ...
Continue ReadingJune 20, 2022
Hardcoded credentials in the Ricoh myPrint application 2.9.2.4 for Windows and 2.2.7 for Android give access to any externally disclosed myPrint WSDL API, as demonstrated by discovering API secrets of ...
Continue ReadingJune 20, 2022
Back to Main