[webapps] Node.JS – 'node-serialize' Remote Code Execution (3)
					Node.JS – ‘node-serialize’ Remote Code Execution...                
																																	
												                
																								                
						
																    
[remote] Dlink DSL2750U – 'Reboot' Command Injection
					Dlink DSL2750U – ‘Reboot’ Command Injection                
																																	
												                
																								                
						
																    
[webapps] ICE Hrm 29.0.0.OS – 'xml upload' Stored Cross-Site Scripting (XSS)
					ICE Hrm 29.0.0.OS – ‘xml upload’...                
																																	
												                
																								                
						
																    
[webapps] ICE Hrm 29.0.0.OS – 'Account Takeover' Cross-Site Request Forgery (CSRF)
					ICE Hrm 29.0.0.OS – ‘Account Takeover’...                
																																	
												                
																								                
						
																    
[webapps] ICE Hrm 29.0.0.OS – 'Account Takeover' Cross-Site Scripting and Session Fixation
					ICE Hrm 29.0.0.OS – ‘Account Takeover’...                
																																	
												                
																								                
						
																    
[webapps] Online Shopping Portal 3.1 – Remote Code Execution (Unauthenticated)
					Online Shopping Portal 3.1 – Remote...                
																																	
												                
																								                
						
																    
[webapps] Zoho ManageEngine ServiceDesk Plus MSP 9.4 – User Enumeration
					Zoho ManageEngine ServiceDesk Plus MSP 9.4...                
																																	
												                
																								                
						
																    
[local] VX Search 13.5.28 – 'Multiple' Unquoted Service Path
					VX Search 13.5.28 – ‘Multiple’ Unquoted...