ICT Protege GX/WX 2.08 – Stored Cross-Site Scripting (XSS)
>> ARCHIVE: 2022-03
ICT Protege GX/WX 2.08 – Stored Cross-Site Scripting (XSS)
Sysax FTP Automation 6.9.0 – Privilege Escalation
Ivanti Endpoint Manager 4.6 – Remote Code Execution (RCE)
iRZ Mobile Router – CSRF to RCE
ICEHRM 31.0.0.0S – Cross-site Request Forgery (CSRF) to Account Takeover
WordPress Plugin iQ Block Country 1.2.13 – Arbitrary File Deletion via Zip Slip (Authenticated)
Simple Mobile Comparison Website version 1.0 suffers from a cross site scripting vulnerability.
Chrome suffers from a heap buffer overflow vulnerability in chrome_pdf::PDFiumEngine::RequestThumbnail.
https://bdlh.go.th/noname.html notified by K4TSUY4-GH05T
BuilderOrcus malware suffers from an insecure permissions vulnerability.