WordPress WPGraphQL plugin version 1.3.5 suffers from a denial of service vulnerability.
>> ARCHIVE: 2021-04
This Metasploit module exploits a pre-auth server-side request forgery (CVE-2021-21975) and post-auth file write (CVE-2021-21983) in VMware vRealize Operations Manager to leak admin creds and write/execute a JSP payload. CVE-2021-21975…
Kimai version 1.14 suffers from a CSV injection vulnerability.
WordPress Plugin WPGraphQL 1.3.5 – Denial of Service
Montiorr 1.7.6m – File Upload to XSS
Kimai 1.14 – CSV Injection
Worm.Win32.Busan.k malware suffers from an insecure transit vulnerability.
Windows 10 Wi-Fi Drivers For Intel Wireless Adapters version 22.30.0 suffer from a privilege escalation vulnerability.
SEO Panel version 4.8.0 remote blind SQL injection exploit. Original discovery in this version is attributed to Piyush Patil in February of 2021.
OpenPLC version 3 authenticated remote code execution exploit.