‼ CVE-2022-4155 ‼
📖 Read
via "National Vulnerability Database".
The Contest Gallery WordPress plugin before 19.1.5.1, Contest Gallery Pro WordPress plugin before 19.1.5.1 do not escape the wp_user_id GET parameter before concatenating it to an SQL query in management-show-user.php. This may allow malicious users with administrator privileges (i.e. on multisite WordPress configurations) to leak sensitive information from the site's database.📖 Read
via "National Vulnerability Database".
‼ CVE-2022-4151 ‼
📖 Read
via "National Vulnerability Database".
The Contest Gallery WordPress plugin before 19.1.5.1, Contest Gallery Pro WordPress plugin before 19.1.5.1 do not escape the option_id GET parameter before concatenating it to an SQL query in export-images-data.php. This may allow malicious users with at least author privilege to leak sensitive information from the site's database.📖 Read
via "National Vulnerability Database".
‼ CVE-2022-4162 ‼
📖 Read
via "National Vulnerability Database".
The Contest Gallery WordPress plugin before 19.1.5.1, Contest Gallery Pro WordPress plugin before 19.1.5.1 do not escape the cg_row POST parameter before concatenating it to an SQL query in 3_row-order.php. This may allow malicious users with at least author privilege to leak sensitive information from the site's database.📖 Read
via "National Vulnerability Database".
‼ CVE-2022-4239 ‼
📖 Read
via "National Vulnerability Database".
The Workreap WordPress theme before 2.6.4 does not verify that an addon service belongs to the user issuing the request, or indeed that it is an addon service, when processing the workreap_addons_service_remove action, allowing any user to delete any post by knowing or guessing the id.📖 Read
via "National Vulnerability Database".
👍1
‼ CVE-2019-9011 ‼
📖 Read
via "National Vulnerability Database".
In Pilz PMC programming tool 3.x before 3.5.17 (based on CODESYS Development System), an attacker can identify valid usernames.📖 Read
via "National Vulnerability Database".
‼ CVE-2020-12069 ‼
📖 Read
via "National Vulnerability Database".
In Pilz PMC programming tool 3.x before 3.5.17 (based on CODESYS Development System), the password-hashing feature requires insufficient computational effort.📖 Read
via "National Vulnerability Database".
‼ CVE-2020-11101 ‼
📖 Read
via "National Vulnerability Database".
Sierra Wireless AirLink Mobility Manager (AMM) before 2.17 mishandles sessions and thus an unauthenticated attacker can obtain a login session with administrator privileges.📖 Read
via "National Vulnerability Database".
‼ CVE-2021-4281 ‼
📖 Read
via "National Vulnerability Database".
A vulnerability was found in Brave UX for-the-badge and classified as critical. Affected by this issue is some unknown functionality of the file .github/workflows/combine-prs.yml. The manipulation leads to os command injection. The name of the patch is 55b5a234c0fab935df5fb08365bc8fe9c37cf46b. It is recommended to apply a patch to fix this issue. VDB-216842 is the identifier assigned to this vulnerability.📖 Read
via "National Vulnerability Database".
‼ CVE-2020-10650 ‼
📖 Read
via "National Vulnerability Database".
A deserialization flaw was discovered in jackson-databind through 2.9.10.4. It could allow an unauthenticated user to perform code execution via ignite-jta or quartz-core: org.apache.ignite.cache.jta.jndi.CacheJndiTmLookup, org.apache.ignite.cache.jta.jndi.CacheJndiTmFactory, and org.quartz.utils.JNDIConnectionProvider.📖 Read
via "National Vulnerability Database".
‼ CVE-2020-12067 ‼
📖 Read
via "National Vulnerability Database".
In Pilz PMC programming tool 3.x before 3.5.17 (based on CODESYS Development System), a user's password may be changed by an attacker without knowledge of the current password.📖 Read
via "National Vulnerability Database".
‼ CVE-2019-9579 ‼
📖 Read
via "National Vulnerability Database".
An issue was discovered in Illumos in Nexenta NexentaStor 4.0.5 and 5.1.2, and other products. The SMB server allows an attacker to have unintended access, e.g., an attacker with WRITE_XATTR can change permissions. This occurs because of a combination of three factors: ZFS extended attributes are used to implement NT named streams, the SMB protocol requires implementations to have open handle semantics similar to those of NTFS, and the SMB server passes along certain attribute requests to the underlying object (i.e., they are not considered to be requests that pertain to the named stream).📖 Read
via "National Vulnerability Database".
‼ CVE-2019-19030 ‼
📖 Read
via "National Vulnerability Database".
Cloud Native Computing Foundation Harbor before 1.10.3 and 2.x before 2.0.1 allows resource enumeration because unauthenticated API calls reveal (via the HTTP status code) whether a resource exists.📖 Read
via "National Vulnerability Database".
‼ CVE-2019-14802 ‼
📖 Read
via "National Vulnerability Database".
HashiCorp Nomad 0.5.0 through 0.9.4 (fixed in 0.9.5) reveals unintended environment variables to the rendering task during template rendering, aka GHSA-6hv3-7c34-4hx8. This applies to nomad/client/allocrunner/taskrunner/template.📖 Read
via "National Vulnerability Database".
‼ CVE-2020-28191 ‼
📖 Read
via "National Vulnerability Database".
The console in Togglz before 2.9.4 allows CSRF.📖 Read
via "National Vulnerability Database".
‼ CVE-2019-18177 ‼
📖 Read
via "National Vulnerability Database".
In certain Citrix products, information disclosure can be achieved by an authenticated VPN user when there is a configured SSL VPN endpoint. This affects Citrix ADC and Citrix Gateway 13.0-58.30 and later releases before the CTX276688 update.📖 Read
via "National Vulnerability Database".
‼ CVE-2019-19705 ‼
📖 Read
via "National Vulnerability Database".
Realtek Audio Drivers for Windows, as used on the Lenovo ThinkPad X1 Carbon 20A7, 20A8, 20BS, and 20BT before 6.0.8882.1 and 20KH and 20KG before 6.0.8907.1 (and on many other Lenovo and non-Lenovo products), mishandles DLL preloading.📖 Read
via "National Vulnerability Database".
‼ CVE-2019-13988 ‼
📖 Read
via "National Vulnerability Database".
Sierra Wireless MGOS before 3.15.2 and 4.x before 4.3 allows attackers to read log files via a Direct Request (aka Forced Browsing).📖 Read
via "National Vulnerability Database".
‼ CVE-2022-36664 ‼
📖 Read
via "National Vulnerability Database".
Password Manager for IIS 2.0 has a cross-site scripting (XSS) vulnerability via the /isapi/PasswordManager.dll ResultURL parameter.📖 Read
via "National Vulnerability Database".
‼ CVE-2018-16135 ‼
📖 Read
via "National Vulnerability Database".
The Opera Mini application 47.1.2249.129326 for Android allows remote attackers to spoof the Location Permission dialog via a crafted web site.📖 Read
via "National Vulnerability Database".
‼ CVE-2020-24600 ‼
📖 Read
via "National Vulnerability Database".
Shilpi CAPExWeb 1.1 allows SQL injection via a servlet/capexweb.cap_sendMail GET request.📖 Read
via "National Vulnerability Database".
‼ CVE-2019-11851 ‼
📖 Read
via "National Vulnerability Database".
The ACENet service in Sierra Wireless ALEOS before 4.4.9, 4.5.x through 4.9.x before 4.9.5, and 4.10.x through 4.13.x before 4.14.0 allows remote attackers to execute arbitrary code via a buffer overflow.📖 Read
via "National Vulnerability Database".