Subscribe via feed.
Archive for January, 2022

[webapps] Library System in PHP 1.0 – 'publisher name' Stored Cross-Site Scripting (XSS)

Posted by deepcore under Security (No Respond)

Library System in PHP 1.0 – ‘publisher name’ Stored Cross-Site Scripting (XSS)

Tags: ,

[webapps] SAFARI Montage 8.5 – Reflected Cross Site Scripting (XSS)

Posted by deepcore under Security (No Respond)

SAFARI Montage 8.5 – Reflected Cross Site Scripting (XSS)

Tags: ,

[webapps] WordPress Plugin The True Ranker 2.2.2 – Arbitrary File Read (Unauthenticated)

Posted by deepcore under Security (No Respond)

WordPress Plugin The True Ranker 2.2.2 – Arbitrary File Read (Unauthenticated)

Tags: ,

[remote] ConnectWise Control 19.2.24707 – Username Enumeration

Posted by deepcore under Security (No Respond)

ConnectWise Control 19.2.24707 – Username Enumeration

Tags: ,

[webapps] RiteCMS 3.1.0 – Remote Code Execution (RCE) (Authenticated)

Posted by deepcore under Security (No Respond)

RiteCMS 3.1.0 – Remote Code Execution (RCE) (Authenticated)

Tags: ,

[webapps] RiteCMS 3.1.0 – Arbitrary File Deletion (Authenticated)

Posted by deepcore under Security (No Respond)

RiteCMS 3.1.0 – Arbitrary File Deletion (Authenticated)

Tags: ,

[webapps] RiteCMS 3.1.0 – Arbitrary File Overwrite (Authenticated)

Posted by deepcore under Security (No Respond)

RiteCMS 3.1.0 – Arbitrary File Overwrite (Authenticated)

Tags: ,

[webapps] CMSimple 5.4 – Cross Site Scripting (XSS)

Posted by deepcore under Security (No Respond)

CMSimple 5.4 – Cross Site Scripting (XSS)

Tags: ,

[webapps] WordPress Plugin Contact Form Entries 1.1.6 – Cross Site Scripting (XSS) (Unauthenticated)

Posted by deepcore under Security (No Respond)

WordPress Plugin Contact Form Entries 1.1.6 – Cross Site Scripting (XSS) (Unauthenticated)

Tags: ,

[dos] Siemens S7 Layer 2 – Denial of Service (DoS)

Posted by deepcore under Security (No Respond)

Siemens S7 Layer 2 – Denial of Service (DoS)

Tags: ,