MyBB Admin Notes Plugin 1.1 – Cross-Site Request Forgery
>> ARCHIVE: 2018-05
MyBB Admin Notes Plugin 1.1 – Cross-Site Request Forgery
VirtueMart 3.1.14 – Persistent Cross-Site Scripting
Rockwell Scada System 27.011 – Cross-Site Scripting
Vulnerabilities were identified in the IBM Flashsystem 840, IBM Flashsystem 900 and IBM Storwize V7000. They include cross site request forgery, arbitrary file read, unauthenticated access, and various other vulnerabilities.
Calamp.com suffers from an incorrect privilege assignment that could lead to full user compromise.
ProjectPier versions 0.8.8 and below suffer from remote file inclusion, authentication bypass, remote shell upload, and remote SQL injection vulnerabilities.
GD bbPress versions 2.5 and below suffer from a cross site scripting vulnerability.
xls2csv version 0.95 suffers from a buffer overflow vulnerability.
XATABoost version 1.0.0 suffers from a remote SQL injection vulnerability.
Microsoft Windows 2003 SP2 RRAS SMB remote code execution exploit.