userSpice 4.3.24 – Username Enumeration
>> ARCHIVE: 2018-06
userSpice 4.3.24 – Username Enumeration
Schools Alert Management Script – SQL Injection
Event Manager Admin panel – ‘events_new.php’ SQL injection
Schools Alert Management Script – Arbitrary File Deletion
WordPress Plugin Pie Register < 3.0.9 – Blind SQL Injection
userSpice 4.3.24 – ‘X-Forwarded-For’ Cross-Site Scripting
Joomla! Component EkRishta 2.10 – ‘cid’ SQL Injection
http://paeng.go.th/hi.htm notified by Mr.13u4y4l4ut
Gnome Web (Epiphany) versions prior to 3.28.2.1 suffer from a denial of service vulnerability.
OfficeScan XG version 11.0 suffers from an unauthorized change prevention bypass vulnerability.