ERPGo is a software as a service (SaaS) platform that is vulnerable to CSV injection attacks. This type of attack occurs when an attacker is able to manipulate the data…
Active eCommerce CMS version 6.5.0 suffers from a persistent cross site scripting vulnerability.
Inout Multi-Vendor Shopping Cart version 3.2.3 suffers from a cross site scripting vulnerability.
Inout Multi-Vendor Shopping Cart version 3.2.3 suffers from a remote SQL injection vulnerability.
ASKEY routers version RTF3505VW-N1 suffer from a local privilege escalation vulnerability.
wolfSSL versions prior to 5.5.2 suffer from a heap buffer over-read with WOLFSSL_CALLBACKS and can be triggered with a single Client Hello message.
NetChess version 2.1 suffers from a buffer overflow vulnerability.
OpenText Extended ECM versions 16.2.2 through 22.3 suffer from arbitrary file deletion, information disclosure, local file inclusion, and privilege escalation vulnerabilities.
Patient Record Management System version 1.0 suffers from an authentication bypass vulnerability during account recovery.
Multiple vulnerabilities have been discovered across Common Desktop Environment version 1.6, Motif version 2.1, and X.Org libXpm versions prior to 3.5.15 on Oracle Solaris 10 that can be chained together…