Click to open the Alert Filter

 
Year Month
Severity
Categories
Search by Alert Name
Page(s) : 1 ... 287 288 289 290 291 292 293 294 295 296 [297] 298 299 300 301 302 303 304 305 306 307 ... Result(s) : 43290

Alerts Feed Alerts

DATE NAME CATEGORIES DETAIL
9.8 2023-09-14 CVE-2023-37755 cve i-doit pro 25 and below and I-doit open 25 and below are configured with insecure default administrator credentials, and there is no warning or prompt to ask users to change the...
9.8 2023-09-14 CVE-2023-37756 cve I-doit pro 25 and below and I-doit open 25 and below employ weak password requirements for Administrator account creation. Attackers are able to easily guess users' passwor...
9.8 2023-09-14 CVE-2023-38912 cve SQL injection vulnerability in Super Store Finder PHP Script v.3.6 allows a remote attacker to execute arbitrary code via a crafted payload to the username parameter.
9.8 2023-09-14 CVE-2023-39638 cve D-LINK DIR-859 A1 1.05 and A1 1.06B01 Beta01 was discovered to contain a command injection vulnerability via the lxmldbc_system function at /htdocs/cgibin.
9.8 2023-09-14 CVE-2023-42405 cve SQL injection vulnerability in FIT2CLOUD RackShift v1.7.1 allows attackers to execute arbitrary code via the `sort` parameter to taskService.list(), bareMetalService.list(), and...
9.8 2023-09-13 CVE-2023-41892 cve Craft CMS is a platform for creating digital experiences. This is a high-impact, low-complexity attack vector. Users running Craft installations before 4.4.15 are encouraged to ...
9.8 2023-09-12 CVE-2023-40784 cve DedeCMS 5.7.102 has a File Upload vulnerability via uploads/dede/module_make.php.
9.8 2023-09-12 CVE-2023-29332 cve Microsoft Azure Kubernetes Service Elevation of Privilege Vulnerability
9.8 2023-09-12 CVE-2023-36758 cve Visual Studio Elevation of Privilege Vulnerability
9.8 2023-09-12 CVE-2023-36765 cve Microsoft Office Elevation of Privilege Vulnerability
9.8 2023-09-12 CVE-2023-4501 cve User authentication with username and password credentials is ineffective in OpenText (Micro Focus) Visual COBOL, COBOL Server, Enterprise Developer, and Enterprise Server (incl...
9.8 2023-09-12 CVE-2023-3710 cve Improper Input Validation vulnerability in Honeywell PM43 on 32 bit, ARM (Printer web page modules) allows Command Injection.This issue affects PM43 versions prior to P10.19.050...
9.8 2023-09-12 CVE-2023-41331 cve SOFARPC is a Java RPC framework. Versions prior to 5.11.0 are vulnerable to remote command execution. Through a carefully crafted payload, an attacker can achieve JNDI injection...
9.8 2023-09-12 CVE-2023-39073 cve An issue in SNMP Web Pro v.1.1 allows a remote attacker to execute arbitrary code and obtain senstive information via a crafted request.
9.8 2023-09-12 CVE-2023-2071 cve Rockwell Automation FactoryTalk View Machine Edition on the PanelView Plus, improperly verifies user’s input, which allows unauthenticated attacker to achieve remote code execu...
9.8 2023-09-12 CVE-2023-40834 cve OpenCart CMS v4.0.2.2 was discovered to lack a protective mechanism on its login page against excessive login attempts, allowing unauthenticated attackers to gain access to the ...
9.8 2023-09-12 CVE-2023-40309 cve SAP CommonCryptoLib does not perform necessary authentication checks, which may result in missing or wrong authorization checks for an authenticated user, resulting in escalatio...
9.9 2023-09-12 CVE-2023-40622 cve SAP BusinessObjects Business Intelligence Platform (Promotion Management) - versions 420, 430, under certain condition allows an authenticated attacker to view sensitive informa...
9.8 2023-09-12 CVE-2023-39637 cve D-Link DIR-816 A2 1.10 B05 was discovered to contain a command injection vulnerability via the component /goform/Diagnosis.
9.8 2023-09-12 CVE-2023-39150 cve ConEmu before commit 230724 does not sanitize title responses correctly for control characters, potentially leading to arbitrary code execution. This is related to an incomplete...
Page(s) : 1 ... 287 288 289 290 291 292 293 294 295 296 [297] 298 299 300 301 302 303 304 305 306 307 ... Result(s) : 43290