Tag
#windows
CMS SAUDI SOFTECH version 5.0.2 suffers from a remote SQL injection vulnerability.
CMS NEXIN version 2.0 appears to leave default credentials installed after installation.
CMS Emlak Scripti version 2 suffers from a cross site scripting vulnerability.
Buzzy News Viral Lists Polls and Videos version 2.0 appears to leave default credentials installed after installation.
Listplace Directory Listing Platform version 3.0 suffers from an arbitrary file upload vulnerability that can assist in cross site scripting attacks.
CMS Contabil Bandeirantes version 1.0.0 suffers from a cross site request forgery vulnerability.
A memory corruption vulnerability Panasonic Control FPWIN Pro versions 7.6.0.3 and all previous versions may allow arbitrary code execution when opening specially crafted project files.
SeedDMS v6.0.15 was discovered to contain an open redirect vulnerability. An attacker may exploit this vulnerability to redirect users to arbitrary web URLs by tricking the victim users to click on crafted links.
SQL injection vulnerability in diskusi.php in eNdonesia 8.7, allows an attacker to execute arbitrary SQL commands via the "rid=" parameter.
An issue was discovered in SteelSeries GG 36.0.0. An attacker can change values in an unencrypted database that is writable for all users on the computer, in order to trigger code execution with higher privileges.