Linksys AX3200 1.1.00 Command Injection
Linksys AX3200 version 1.1.00 suffers from a remote command injection vulnerability.
Linksys AX3200 version 1.1.00 suffers from a remote command injection vulnerability.
MAN-EAM-0003 version 3.2.4 suffers from an XML external entity injection vulnerability.
wkhtmltopdf version 0.12.6 suffers from a server-side request forgery vulnerability.
Bitbucket version 7.0.0 suffers from a remote command execution vulnerability.
Sales Tracker Management System version 1.0 suffers from a cross site scripting vulnerability.
Online Graduate Tracer System version 1.0 suffers from a remote SQL injection vulnerability.
Joomla! versions prior to 4.2.8 suffer from an unauthenticated information disclosure vulnerability.
RSA NetWitness Endpoint EDR Agent version 12.x suffers from incorrect access controls that allow for code execution. It allows local users to stop the Endpoint Windows agent from sending the events to a SIEM or make the agent run user-supplied commands.
http://www.klongkhwangsao.go.th/Scorpiol.html notified by Scorpiol
Tags: defacementRSA NetWitness Endpoint EDR Agent version 12.x suffers from incorrect access controls that allow for code execution. It allows local users to stop the Endpoint Windows agent from sending the events to a SIEM or make the agent run user-supplied commands.