ilchCMS version 2.1.23 suffers from multiple cross site scripting vulnerabilities.
>> CATEGORY: exploit
The Carel pCOWeb card exposes a Modbus interface to the network. By design, Modbus does not provide authentication, allowing to control the affected system. Version A 1.4.11 – B 1.4.2…
The Carel pCOWeb card stores password hashes in the file /etc/passwd, allowing privilege escalation by authenticated users. Additionally, plaintext copies of the passwords are stored. Version A 1.4.11 – B…
Mr Blog PHP suffers from cross site scripting and remote SQL injection vulnerabilities.
Scripteen Image Upload script suffers from a shell upload vulnerability.
TheJshen contentManagementSystem version 1.04 suffers from a remote SQL injection vulnerability.
OpenVPN Private Tunnel version 2.8.4 suffers from an ovpnagent unquoted service path vulnerability.
ownCloud version 10.3.0 Stable suffers from a cross site request forgery vulnerability.
eIDAS-Node versions 2.3 and below suffer from an authentication bypass vulnerability.