Category: CVSS3 - MEDIUM
Joomla! 4.2.7 Unauthenticated Information Disclosure Exploit

Post ContentRead More ...

Continue Reading
CVE-2022-47924

An high privileged attacker may pass crafted arguments to the validate function of csaf-validator-lib of a locally installed Secvisogram in versions Read More ...

Continue Reading
CVE-2022-47925

The validate JSON endpoint of the Secvisogram csaf-validator-service in versions Read More ...

Continue Reading
CVE-2023-24839

HGiga MailSherlock’s specific function has insufficient filtering for user input. An unauthenticated remote attacker can exploit this vulnerability to inject JavaScript, conducting a re ...

Continue Reading
CVE-2023-24842

HGiga MailSherlock has vulnerability of insufficient access control. An unauthenticated remote user can exploit this vulnerability to access partial content of another user’s mail by ch ...

Continue Reading
CVE-2023-24834

WisdomGarden Tronclass has improper access control when uploading file. An authenticated remote attacker with general user privilege can exploit this vulnerability to access files belonging to other u ...

Continue Reading
CVE-2023-25018

RIFARTEK IOT Wall transportation function has insufficient filtering for user input. An authenticated remote attacker with general user privilege can inject JavaScript to perform reflected XSS (Reflec ...

Continue Reading
CVE-2023-22902

Openfind Mail2000 file uploading function has insufficient filtering for user input. An authenticated remote attacker with general user privilege can exploit this vulnerability to inject JavaScript, c ...

Continue Reading
Cross-Site Scripting (XSS)

github.com/mattermost/mattermost-server is vulnerable to Cross-Site Scripting (XSS) attacks. An attacker is able to send AJAX requests on behalf of the victim through OAuth flow completion endpoints v ...

Continue Reading
Exploit for CVE-2023-23752

# CVE-2023-23752 Joomla Unauthorized Access Vulnerability (CVE-2...Read More ...

Continue Reading
Load more