BigBlueButton 2.2.25 – Arbitrary File Disclosure and Server-Side Request Forgery
>> AUTHOR: deepcore
BigBlueButton 2.2.25 – Arbitrary File Disclosure and Server-Side Request Forgery
ZeroLogon – Netlogon Elevation of Privilege
Advanced System Care Service version 13 suffers from an unquoted service path vulnerability.
Pandora FMS version 7.0 NG 749 suffers from a remote SQL injection vulnerability.
KiteService version 1.2020.1113.1 suffers from an unquoted service path vulnerability.
Taskcafe version 0.1.0 and 0.1.1 suffer from a cross-origin resource sharing vulnerability.
Water Billing System version 1.0 suffers from a remote SQL injection vulnerability. This version was already found to be susceptible to SQL injection by Sarang Tumne in November of 2020.
Super Store Finder versions 3.3 and below suffer from a cross site scripting vulnerability.
Car Rental Management System version 1.0 suffers from a remote SQL injection vulnerability. This version was already found to be susceptible to SQL injection by Fortunato Lodari in November of…
PMB version 5.6 suffers from a local file disclosure vulnerability.