[webapps] OEcms 3.1 – Cross-Site Scripting
GetPocket – Multiple Persistent Web Vulnerabilities
The vulnerability laboratory core research team discovered multiple input validation web vulnerabilities in the official…
Shopify – (Comments) Cross Site Scripting Vulnerability
The vulnerability laboratory core research Team discovered a script code inject web vulnerability in the official Shopif…
ReleaseWire – (Foldername) Persistent Cross Site Scripting
…
MACCMS 10 Cross Site Request Forgery
MACCMS version 10 suffers from a cross site request forgery vulnerability.
Redaxo CMS Mediapool Arbitrary File Upload
Redaxo CMS Mediapool add-on versions prior to 5.5.1 suffer from a remote file upload vulnerability.
Microsoft Windows 10 1709 Child Process Restriction Mitigation Bypass
Microsoft Windows 10 version 1709 suffers from a child process restriction mitigation bypass vulnerability.
Ecos Secure Boot Stick 5.6.5 Credential Disclosure / Information Leak
Ecos Secure Boot Stick version 5.6.5 and System Management version 5.2.68 suffers from credential disclosure and various other security vulnerabilities that can lead to information disclosure.
Rockwell Automation RSLinx Classic / FactoryTalk Linx Gateway Privilege Escalation
Rockwell Automation RSLinx Classic and FactoryTalk Linx Gateway suffer from a privilege escalation vulnerability. Rockwell Automation RSLinx Classic versions 3.90.01, 3.73.00, 3.72.00, and 2.58.00 are susceptible. Rockwell Automation FactoryTalk Linx Gateway version 3.90.00 is susceptible.