Adive Framework 2.0.7 – Privilege Escalation
>> ARCHIVE: 2019-11
Adive Framework 2.0.7 – Privilege Escalation
SolarWinds Kiwi Syslog Server 8.3.52 – ‘Kiwi Syslog Server’ Unquoted Service Path
Jenkins build-metrics plugin 1.3 – ‘label’ Cross-Site Scripting
http://moonbon.rid.go.th notified by Z3z3-HaCkEr
http://lumchae-omp.rid.go.th notified by Z3z3-HaCkEr
Wacom WTabletService version 6.6.7-3 suffers from a WTabletServicePro unquoted service path vulnerability.
QNAP NetBak Replicator version 4.5.6.0607 suffers from a QVssService unquoted service path vulnerability.
Parallels Plesk Panel version 9.5 suffers from a cross site scripting vulnerability.
Smartwares HOME Easy versions 1.0.9 and below suffer from a client-side authentication bypass vulnerability.
Smartwares HOME Easy versions 1.0.9 and below suffer from a database backup information disclosure vulnerability.