RedTeam Pentesting discovered that the configuration of a Cisco RV320 router may be exported without authentication through the device’s web interface. Affected versions include 1.4.2.15 and 1.4.2.17.
RedTeam Pentesting discovered that the Cisco RV320 router exposes sensitive diagnostic data without authentication through the device’s web interface. Versions affected include 1.4.2.15 and 1.4.2.17.
RedTeam Pentesting discovered that the Cisco RV320 router exposes sensitive diagnostic data without authentication through the device’s web interface. Versions affected include 1.4.2.15 and 1.4.2.17.
RedTeam Pentesting discovered a command injection vulnerability in the web-based certificate generator feature of the Cisco RV320 router. Versions 1.4.2.15 through 1.4.2.19 are affected. Fixed in version 1.4.2.20.
RedTeam Pentesting discovered a command injection vulnerability in the web-based certificate generator feature of the Cisco RV320 router. Versions 1.4.2.15 through 1.4.2.19 are affected. Fixed in version 1.4.2.20.
SirsiDynix e-Library version 3.5.x suffers from a cross site scripting vulnerability.
SirsiDynix e-Library version 3.5.x suffers from a cross site scripting vulnerability.
MySQL user-defined (Linux) x32 / x86_64 sys_execfunction local privilege escalation exploit. Can be leveraged against versions 4.x and 5.x.
MySQL user-defined (Linux) x32 / x86_64 sys_execfunction local privilege escalation exploit. Can be leveraged against versions 4.x and 5.x.
Splunk Enterprise version 7.2.3 authenticated remote reverse shell code execution exploit.