Click to open the Alert Filter

 
Year Month
Severity
Categories
Search by Alert Name
Page(s) : 1 ... 461 462 463 464 465 466 467 468 469 470 [471] 472 473 474 475 476 477 478 479 480 481 ... Result(s) : 43350

Alerts Feed Alerts

DATE NAME CATEGORIES DETAIL
9.8 2022-11-29 CVE-2022-3751 cve SQL Injection in GitHub repository owncast/owncast prior to 0.0.13.
9.8 2022-11-29 CVE-2022-44354 cve SolarView Compact 4.0 and 5.0 is vulnerable to Unrestricted File Upload via a crafted php file.
9.8 2022-11-29 CVE-2022-42109 cve Online-shopping-system-advanced 1.0 was discovered to contain a SQL injection vulnerability via the p parameter at /shopping/product.php.
9.8 2022-11-29 CVE-2022-44038 cve Russound XSourcePlayer 777D v06.08.03 was discovered to contain a remote code execution vulnerability via the scriptRunner.cgi component.
9.8 2022-11-28 CVE-2022-41912 cve The crewjam/saml go library prior to version 0.4.9 is vulnerable to an authentication bypass when processing SAML responses containing multiple Assertion elements. This issue ha...
9.8 2022-11-28 CVE-2022-44283 cve AVS Audio Converter 10.3 is vulnerable to Buffer Overflow.
9.8 2022-11-28 CVE-2022-44400 cve Purchase Order Management System v1.0 contains a file upload vulnerability via /purchase_order/admin/?page=system_info.
9.8 2022-11-28 CVE-2022-44401 cve Online Tours & Travels Management System v1.0 contains an arbitrary file upload vulnerability via /tour/admin/file.php.
9.8 2022-11-28 CVE-2022-44399 cve Poultry Farm Management System v1.0 contains a SQL injection vulnerability via the del parameter at /Redcock-Farm/farm/category.php.
9.8 2022-11-28 CVE-2022-36193 cve SQL injection in School Management System 1.0 allows remote attackers to modify or delete data, causing persistent changes to the application's content or behavior by using...
9.8 2022-11-28 CVE-2022-3603 cve The Export customers list csv for WooCommerce, WordPress users csv, export Guest customer list WordPress plugin before 2.0.69 does not validate data when outputting it back in a...
9.8 2022-11-27 CVE-2022-45933 cve KubeView through 0.1.31 allows attackers to obtain control of a Kubernetes cluster because api/scrape/kube-system does not require authentication, and retrieves certificate file...
9.1 2022-11-27 CVE-2022-43705 cve In Botan before 2.19.3, it is possible to forge OCSP responses due to a certificate verification error. This issue was introduced in Botan 1.11.34 (November 2016).
9.1 2022-11-26 CVE-2022-45909 cve drachtio-server before 0.8.19 has a heap-based buffer over-read via a long Request-URI in an INVITE request.
9.8 2022-11-26 CVE-2022-45908 cve In PaddlePaddle before 2.4, paddle.audio.functional.get_window is vulnerable to code injection because it calls eval on a user-supplied winstr. This may lead to arbitrary code e...
9.8 2022-11-26 CVE-2022-45907 cve In PyTorch before trunk/89695, torch.jit.annotations.parse_type_line can cause arbitrary code execution because eval is used unsafely.
9.8 2022-11-25 CVE-2022-41157 cve A specific file on the sERP server if Kyungrinara(ERP solution) has a fixed password with the SYSTEM authority. This vulnerability could allow attackers to leak or steal sensiti...
9.8 2022-11-25 CVE-2022-41158 cve Remote code execution vulnerability can be achieved by using cookie values as paths to a file by this builder program. A remote attacker could exploit the vulnerability to execu...
9.1 2022-11-25 CVE-2022-45152 cve A blind Server-Side Request Forgery (SSRF) vulnerability was found in Moodle. This flaw exists due to insufficient validation of user-supplied input in LTI provider library. The...
9.8 2022-11-25 CVE-2022-44843 cve TOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability via the port parameter in the setting/setOpenVpnClientCfg function.
Page(s) : 1 ... 461 462 463 464 465 466 467 468 469 470 [471] 472 473 474 475 476 477 478 479 480 481 ... Result(s) : 43350