Security
Headlines
HeadlinesLatestCVEs

Tag

#firefox

KesionCMS ASP 9.5 Add Administrator

KesionCMS ASP version 9.5 suffers from an add administrator vulnerability.

Packet Storm
#vulnerability#windows#google#js#java#auth#firefox
Inlislite 3.1 Insecure Settings

Inlislite version 3.1 appears to leave default credentials installed after installation.

Biig Order CMS 2 SQL Injection

Biig Order version 2 suffers from a remote SQL injection vulnerability that allows for authentication bypass.

Menorah Restaurant 1.0.0 Insecure Settings

Menorah Restaurant version 1.0.0 appears to leave default credentials installed after installation.

Acelle Email Marketing 3.0.15 Arbitrary File Upload

Acelle Email Marketing version 1.0 suffers from an arbitrary file upload vulnerability.

Bitdefender Introduces GravityZone Security for Android, iOS, and Chromebook

By Habiba Rashid According to Bitdefender, GravityZone Security for Mobile is a cutting-edge solution that leverages powerful antimalware technologies driven by real-time threat intelligence and machine learning. This is a post from HackRead.com Read the original post: Bitdefender Introduces GravityZone Security for Android, iOS, and Chromebook

Apple Zeed ALL YOUR STYLE CMS 2.0 SQL Injection

Apple Zeed ALL YOUR STYLE CMS version 2.0 suffers from a remote SQL injection vulnerability.

Vaskar Courier 3.2.0 Insecure Settings

Vaskar Courier version 3.2.0 appears to leave default credentials installed after installation.

CVE-2023-33487: vuln/TOTOLINK/X5000R/4 at main · Kazamayc/vuln

TOTOLINK X5000R V9.1.0u.6118_B20201102 and V9.1.0u.6369_B20230113 contains a command insertion vulnerability in setDiagnosisCfg.This vulnerability allows an attacker to execute arbitrary commands through the "ip" parameter.

CVE-2023-33485: vuln/TOTOLINK/X5000R/5 at main · Kazamayc/vuln

TOTOLINK X5000R V9.1.0u.6118_B20201102 and V9.1.0u.6369_B20230113 contains a post-authentication buffer overflow via parameter sPort/ePort in the addEffect function.