2023
04.21

ProjeQtOr Project Management System version 10.3.2 suffers from a remote shell upload vulnerability.

2023
04.21

Chitor-CMS 1.1.2 SQL Injection

Chitor-CMS version 1.1.2 suffers from a remote SQL injection vulnerability.

2023
04.21

FUXA version 1.1.13-1186 suffers from an unauthenticated remote code execution vulnerability.

2023
04.20

This Metasploit module exploits CVE-2022-22960 which allows the user to overwrite the permissions of the certproxyService.sh script so that it can be modified by the horizon user. This allows a local attacker with the uid 1001 to escalate their privileges to root access.

2023
04.20

https://dltkorat.go.th/net.html notified by Desktop77N3T

2023
04.20

https://dltkorat.go.th/net.html notified by Desktop77N3T

2023
04.20

Swagger UI 4.1.3 – User Interface (UI) Misrepresentation of Critical Information

2023
04.20

AspEmail v5.6.0.2 – Local Privilege Escalation

2023
04.20

Bang Resto v1.0 – Stored Cross-Site Scripting (XSS)

2023
04.20

Microsoft Word 16.72.23040900 – Remote Code Execution (RCE)