Page(s) : 1 ... 461 462 463 464 465 466 467 468 469 470 [471] 472 473 474 475 476 477 478 479 480 481 ... | Result(s) : 43350 |
Alerts
DATE | NAME | CATEGORIES | DETAIL | |
---|---|---|---|---|
9.8 | 2022-11-29 | CVE-2022-3751 | cve | SQL Injection in GitHub repository owncast/owncast prior to 0.0.13. |
9.8 | 2022-11-29 | CVE-2022-44354 | cve | SolarView Compact 4.0 and 5.0 is vulnerable to Unrestricted File Upload via a crafted php file. |
9.8 | 2022-11-29 | CVE-2022-42109 | cve | Online-shopping-system-advanced 1.0 was discovered to contain a SQL injection vulnerability via the p parameter at /shopping/product.php. |
9.8 | 2022-11-29 | CVE-2022-44038 | cve | Russound XSourcePlayer 777D v06.08.03 was discovered to contain a remote code execution vulnerability via the scriptRunner.cgi component. |
9.8 | 2022-11-28 | CVE-2022-41912 | cve | The crewjam/saml go library prior to version 0.4.9 is vulnerable to an authentication bypass when processing SAML responses containing multiple Assertion elements. This issue ha... |
9.8 | 2022-11-28 | CVE-2022-44283 | cve | AVS Audio Converter 10.3 is vulnerable to Buffer Overflow. |
9.8 | 2022-11-28 | CVE-2022-44400 | cve | Purchase Order Management System v1.0 contains a file upload vulnerability via /purchase_order/admin/?page=system_info. |
9.8 | 2022-11-28 | CVE-2022-44401 | cve | Online Tours & Travels Management System v1.0 contains an arbitrary file upload vulnerability via /tour/admin/file.php. |
9.8 | 2022-11-28 | CVE-2022-44399 | cve | Poultry Farm Management System v1.0 contains a SQL injection vulnerability via the del parameter at /Redcock-Farm/farm/category.php. |
9.8 | 2022-11-28 | CVE-2022-36193 | cve | SQL injection in School Management System 1.0 allows remote attackers to modify or delete data, causing persistent changes to the application's content or behavior by using... |
9.8 | 2022-11-28 | CVE-2022-3603 | cve | The Export customers list csv for WooCommerce, WordPress users csv, export Guest customer list WordPress plugin before 2.0.69 does not validate data when outputting it back in a... |
9.8 | 2022-11-27 | CVE-2022-45933 | cve | KubeView through 0.1.31 allows attackers to obtain control of a Kubernetes cluster because api/scrape/kube-system does not require authentication, and retrieves certificate file... |
9.1 | 2022-11-27 | CVE-2022-43705 | cve | In Botan before 2.19.3, it is possible to forge OCSP responses due to a certificate verification error. This issue was introduced in Botan 1.11.34 (November 2016). |
9.1 | 2022-11-26 | CVE-2022-45909 | cve | drachtio-server before 0.8.19 has a heap-based buffer over-read via a long Request-URI in an INVITE request. |
9.8 | 2022-11-26 | CVE-2022-45908 | cve | In PaddlePaddle before 2.4, paddle.audio.functional.get_window is vulnerable to code injection because it calls eval on a user-supplied winstr. This may lead to arbitrary code e... |
9.8 | 2022-11-26 | CVE-2022-45907 | cve | In PyTorch before trunk/89695, torch.jit.annotations.parse_type_line can cause arbitrary code execution because eval is used unsafely. |
9.8 | 2022-11-25 | CVE-2022-41157 | cve | A specific file on the sERP server if Kyungrinara(ERP solution) has a fixed password with the SYSTEM authority. This vulnerability could allow attackers to leak or steal sensiti... |
9.8 | 2022-11-25 | CVE-2022-41158 | cve | Remote code execution vulnerability can be achieved by using cookie values as paths to a file by this builder program. A remote attacker could exploit the vulnerability to execu... |
9.1 | 2022-11-25 | CVE-2022-45152 | cve | A blind Server-Side Request Forgery (SSRF) vulnerability was found in Moodle. This flaw exists due to insufficient validation of user-supplied input in LTI provider library. The... |
9.8 | 2022-11-25 | CVE-2022-44843 | cve | TOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability via the port parameter in the setting/setOpenVpnClientCfg function. |
Page(s) : 1 ... 461 462 463 464 465 466 467 468 469 470 [471] 472 473 474 475 476 477 478 479 480 481 ... | Result(s) : 43350 |