π¨ CVE-2023-33736
A stored cross-site scripting (XSS) vulnerability in Dcat-Admin v2.1.3-beta allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the URL parameter.
π@cveNotify
A stored cross-site scripting (XSS) vulnerability in Dcat-Admin v2.1.3-beta allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the URL parameter.
π@cveNotify
GitHub
Dcat-Admin Version<= 2.1.3-beta XSS Vulnerability Β· Issue #2027 Β· jqhph/dcat-admin
Laravel Version: 8.83.14 PHP Version: 7.1 Dcat Admin Version: 2.1.3-beta Description: Dcat Admin Version: <= 2.1.3-beta have an Stored XSS vulnerability. Attackers can use the vulnerability to m...
π¨ CVE-2023-33718
mp4v2 v2.1.3 was discovered to contain a memory leak via MP4File::ReadString() at mp4file_io.cpp
π@cveNotify
mp4v2 v2.1.3 was discovered to contain a memory leak via MP4File::ReadString() at mp4file_io.cpp
π@cveNotify
GitHub
Memory Leak in mp4file_io Β· Issue #37 Β· enzo1982/mp4v2
I found a memory leak error in mp4file_io.cpp:409 and mp4file_io.cpp:354; it seems that the data buffer allocated to store the string is not properly deallocated. Environment OS: Ubuntu 18.04.6 LTS...
π¨ CVE-2023-33722
EDIMAX BR-6288ACL v1.12 was discovered to contain an authenticated remote code execution (RCE) vulnerability via the pppUserName parameter.
π@cveNotify
EDIMAX BR-6288ACL v1.12 was discovered to contain an authenticated remote code execution (RCE) vulnerability via the pppUserName parameter.
π@cveNotify
Google Docs
EDIMAX-BR-6288ACL_Vuln_Info.docx
EDIMAX BR-6288ACL Router fireware 1.12 Remote Code ExecutionοΌRCEοΌ EnvironmentοΌwin10 PC+wmware Ubuntu18οΌCPUοΌamd64οΌX64οΌ 0.
download firmware https://www.edimax.com/edimax/mw/cufiles/files/download/Firmware/BR6288ACL_1.12.zip or download from my google drive:β¦
download firmware https://www.edimax.com/edimax/mw/cufiles/files/download/Firmware/BR6288ACL_1.12.zip or download from my google drive:β¦
π¨ CVE-2023-33730
Privilege Escalation in the "GetUserCurrentPwd" function in Microworld Technologies eScan Management Console 14.0.1400.2281 allows any remote attacker to retrieve password of any admin or normal user in plain text format.
π@cveNotify
Privilege Escalation in the "GetUserCurrentPwd" function in Microworld Technologies eScan Management Console 14.0.1400.2281 allows any remote attacker to retrieve password of any admin or normal user in plain text format.
π@cveNotify
GitHub
CVE-2023-33730/CVE-2023-33730.md at main Β· sahiloj/CVE-2023-33730
Privilege Escalation to access admin user account in eScan Management Console - sahiloj/CVE-2023-33730
π¨ CVE-2023-33732
Cross Site Scripting (XSS) in the New Policy form in Microworld Technologies eScan management console 14.0.1400.2281 allows a remote attacker to inject arbitrary code via the vulnerable parameters type, txtPolicyType, and Deletefileval.
π@cveNotify
Cross Site Scripting (XSS) in the New Policy form in Microworld Technologies eScan management console 14.0.1400.2281 allows a remote attacker to inject arbitrary code via the vulnerable parameters type, txtPolicyType, and Deletefileval.
π@cveNotify
π¨ CVE-2023-33735
D-Link DIR-846 v1.00A52 was discovered to contain a remote command execution (RCE) vulnerability via the tomography_ping_address parameter in the /HNAP1 interface.
π@cveNotify
D-Link DIR-846 v1.00A52 was discovered to contain a remote command execution (RCE) vulnerability via the tomography_ping_address parameter in the /HNAP1 interface.
π@cveNotify
GitHub
IoT-Vuls/dlink/DIR-846/vul.md at main Β· Tyaoo/IoT-Vuls
Contribute to Tyaoo/IoT-Vuls development by creating an account on GitHub.
π¨ CVE-2024-24988
Mattermost fails to properly validate the length of the emoji value in the custom user status, allowing an attacker to send multiple times a very long string as an emoji value causing high resource consumption and possibly crashing the server.
π@cveNotify
Mattermost fails to properly validate the length of the emoji value in the custom user status, allowing an attacker to send multiple times a very long string as an emoji value causing high resource consumption and possibly crashing the server.
π@cveNotify
Mattermost.com
Security Updates
Find information about Mattermost security updates, sign up for our Security Bulletin, read our Responsible Disclosure Policy, and more.
π¨ CVE-2024-56716
In the Linux kernel, the following vulnerability has been resolved:
netdevsim: prevent bad user input in nsim_dev_health_break_write()
If either a zero count or a large one is provided, kernel can crash.
π@cveNotify
In the Linux kernel, the following vulnerability has been resolved:
netdevsim: prevent bad user input in nsim_dev_health_break_write()
If either a zero count or a large one is provided, kernel can crash.
π@cveNotify
π¨ CVE-2024-33067
Information disclosure while invoking callback function of sound model driver from ADSP for every valid opcode received from sound model driver.
π@cveNotify
Information disclosure while invoking callback function of sound model driver from ADSP for every valid opcode received from sound model driver.
π@cveNotify
π¨ CVE-2023-33485
TOTOLINK X5000R V9.1.0u.6118_B20201102 and V9.1.0u.6369_B20230113 contains a post-authentication buffer overflow via parameter sPort/ePort in the addEffect function.
π@cveNotify
TOTOLINK X5000R V9.1.0u.6118_B20201102 and V9.1.0u.6369_B20230113 contains a post-authentication buffer overflow via parameter sPort/ePort in the addEffect function.
π@cveNotify
GitHub
vuln/TOTOLINK/X5000R/5 at main Β· Kazamayc/vuln
Contribute to Kazamayc/vuln development by creating an account on GitHub.
π¨ CVE-2024-4404
The ElementsKit PRO plugin for WordPress is vulnerable to Server-Side Request Forgery in versions up to, and including, 3.6.2 via the 'render_raw' function. This can allow authenticated attackers, with contributor-level permissions and above, to make web requests to arbitrary locations originating from the web application and can be used to query and modify information from internal services.
π@cveNotify
The ElementsKit PRO plugin for WordPress is vulnerable to Server-Side Request Forgery in versions up to, and including, 3.6.2 via the 'render_raw' function. This can allow authenticated attackers, with contributor-level permissions and above, to make web requests to arbitrary locations originating from the web application and can be used to query and modify information from internal services.
π@cveNotify
elementskit
Roadmaps - Upcoming Features and Bug fixing | ElementsKit |
Here is the ElementsKit Roadmap, in which you can get an idea of our coming updates and share your idea or suggestion for future upgrades.
π¨ CVE-2024-37900
XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. When uploading an attachment with a malicious filename, malicious JavaScript code could be executed. This requires a social engineering attack to get the victim into uploading a file with a malicious name. The malicious code is solely executed during the upload and affects only the user uploading the attachment. While this allows performing actions in the name of that user, it seems unlikely that a user wouldn't notice the malicious filename while uploading the attachment. This has been patched in XWiki 14.10.21, 15.5.5, 15.10.6 and 16.0.0.
π@cveNotify
XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. When uploading an attachment with a malicious filename, malicious JavaScript code could be executed. This requires a social engineering attack to get the victim into uploading a file with a malicious name. The malicious code is solely executed during the upload and affects only the user uploading the attachment. While this allows performing actions in the name of that user, it seems unlikely that a user wouldn't notice the malicious filename while uploading the attachment. This has been patched in XWiki 14.10.21, 15.5.5, 15.10.6 and 16.0.0.
π@cveNotify
GitHub
XWIKI-19611: Improve filename escaping in attachment upload Β· xwiki/xwiki-platform@6cdd69d
* Use escapeHTML() when displaying filenames in upload.js
* Add a test in AttachmentIT to check for proper HTML escaping during upload
(cherry picked from commit 910a5018a50039e8b24556573dfe342f14...
* Add a test in AttachmentIT to check for proper HTML escaping during upload
(cherry picked from commit 910a5018a50039e8b24556573dfe342f14...
π¨ CVE-2024-33055
Memory corruption while invoking IOCTL calls to unmap the DMA buffers.
π@cveNotify
Memory corruption while invoking IOCTL calls to unmap the DMA buffers.
π@cveNotify
π¨ CVE-2024-33061
Information disclosure while processing IOCTL call made for releasing a trusted VM process release or opening a channel without initializing the process.
π@cveNotify
Information disclosure while processing IOCTL call made for releasing a trusted VM process release or opening a channel without initializing the process.
π@cveNotify
π¨ CVE-2023-2111
The Fast & Effective Popups & Lead-Generation for WordPress plugin before 2.1.4 concatenates user input into an SQL query without escaping it first in the plugin's report API endpoint, which could allow administrators in multi-site configuration to leak sensitive information from the site's database.
π@cveNotify
The Fast & Effective Popups & Lead-Generation for WordPress plugin before 2.1.4 concatenates user input into an SQL query without escaping it first in the plugin's report API endpoint, which could allow administrators in multi-site configuration to leak sensitive information from the site's database.
π@cveNotify
WPScan
HollerBox < 2.1.4 - Admin+ SQL Injection
See details on HollerBox < 2.1.4 - Admin+ SQL Injection CVE 2023-2111. View the latest Plugin Vulnerabilities on WPScan.
π¨ CVE-2021-31233
SQL Injection vulnerability found in Fighting Cock Information System v.1.0 allows a remote attacker to obtain sensitive information via the edit_breed.php parameter.
π@cveNotify
SQL Injection vulnerability found in Fighting Cock Information System v.1.0 allows a remote attacker to obtain sensitive information via the edit_breed.php parameter.
π@cveNotify
GitHub
GitHub - gabesolomon/CVE-2021-31233: SQL Injection vulnerability found in Fighting Cock Information System v1.0 allows a remoteβ¦
SQL Injection vulnerability found in Fighting Cock Information System v1.0 allows a remote attacker to obtain sensitive information via the edit_breed.php parameter - gabesolomon/CVE-2021-31233
π¨ CVE-2023-23562
Stormshield Endpoint Security 2.3.0 through 2.3.2 has Incorrect Access Control that allows an authenticated user can update global parameters.
π@cveNotify
Stormshield Endpoint Security 2.3.0 through 2.3.2 has Incorrect Access Control that allows an authenticated user can update global parameters.
π@cveNotify
π¨ CVE-2023-30285
An issue in Deviniti Issue Sync Synchronization v3.5.2 for Jira allows attackers to obtain the login credentials of a user via a crafted request sent to /rest/synchronizer/1.0/technicalUser.
π@cveNotify
An issue in Deviniti Issue Sync Synchronization v3.5.2 for Jira allows attackers to obtain the login credentials of a user via a crafted request sent to /rest/synchronizer/1.0/technicalUser.
π@cveNotify
Deviniti
We help enterprises move fast and embrace next-gen technologies | Deviniti
Trust our custom application development and Atlassian expertise. We have helped 236+ organizations achieve their strategic initiatives faster.
π¨ CVE-2023-31548
A stored Cross-site scripting (XSS) vulnerability in the FundRaiserEditor.php component of ChurchCRM v4.5.3 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.
π@cveNotify
A stored Cross-site scripting (XSS) vulnerability in the FundRaiserEditor.php component of ChurchCRM v4.5.3 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.
π@cveNotify
GitHub
CVE-Disclosures/ChurchCRM/CVE-2023-31548 at main Β· 10splayaSec/CVE-Disclosures
Contribute to 10splayaSec/CVE-Disclosures development by creating an account on GitHub.