Staubli Jacquard Industrial System JC6 suffers from a bash environment variable handling code injection vulnerability.
>> ARCHIVE: 2018-09
Antidote versions 9.5.1 and below suffer from an update related code execution vulnerability.
MyBB Visual Editor versions 1.8.18 and below suffer from a cross site scripting vulnerability.
On vulnerable versions of Windows the alpc endpoint method SchRpcSetSecurity implemented by the task scheduler service can be used to write arbitrary DACLs to .job files located in c:windowstasks because…
NICO-FTP version 3.0.1.19 SEH buffer overflow exploit.
There is an out-of-bounds read in FEC processing in WebRTC. If a very short RTP packet is received, FEC will assume the packet is longer and process data outside of…
There is a use-after-free vulnerability in VP9 processing in WebRTC.
Collectric CMU 1.0 – ‘lang’ SQL injection
WebRTC – VP9 Processing Use-After-Free
WebRTC – FEC Out-of-Bounds Read