Security
Headlines
HeadlinesLatestCVEs

Tag

#firefox

FlightPath LMS 5.0-rc2 Insecure Direct Object Reference

FlightPath LMS version 5.0-rc2 suffers from an insecure direct object reference vulnerability.

Packet Storm
#vulnerability#windows#google#auth#firefox
FAST TECH CMS 1.0 Cross Site Request Forgery

FAST TECH CMS version 1.0 suffers from a cross site request forgery vulnerability.

doorGets CMS 12 Shell Upload

doorGets CMS version 12 suffers from a remote shell upload vulnerability.

Lazarus Group exploits ManageEngine vulnerability to deploy QuiteRAT

This is the third documented campaign attributed to this actor in less than a year, with the actor reusing the same infrastructure throughout these operations.

GEN Security+ 4.0 SQL Injection

GEN Security+ version 4.0 suffers from a remote SQL injection vulnerability.

Geeklog 2.1.0b1 Database Disclosure

Geeklog version 2.1.0b1 suffers from a database disclosure vulnerability.

Forum Fire Soft Board 0.3.0 Cross Site Scripting

Forum Fire Soft Board version 0.3.0 suffers from a cross site scripting vulnerability.

Forma LMS 1.4 Database Disclosure

Forma LMS version 1.4 suffers from a database disclosure vulnerability.