ManageEngine AssetExplorer 6.2.0 – Cross-Site Scripting
ManageEngine AssetExplorer 6.2.0 – Cross-Site Scripting
Snes9K 0.0.9z – Denial of Service (PoC)
Zahir Enterprise Plus 6 build 10b – Buffer Overflow (SEH)
H2 Database 1.4.196 – Remote Code Execution
Intel Extreme Tuning Utility version 6.4.1.23 suffers from code execution, privilege escalation, and denial of service vulnerabilities.
Seqrite End Point Security version 7.4 suffers from a weak file permission privilege escalation vulnerability.
A cross site scripting vulnerability has been discovered in the AIR5343v2 modem of the AirTies manufacturer. AirTies Air 5343v2 devices have XSS via the top.html productboardtype parameter.
A cross site scripting vulnerability has been discovered in the AIR5443v2 modem of the AirTies manufacturer. AirTies Air 5443v2 devices have XSS via the top.html productboardtype parameter.
A cross site scripting vulnerability has been discovered in the AIR5442 modem of the AirTies manufacturer. AirTies Air 5442 devices have XSS via the top.html productboardtype parameter.
A cross site scripting vulnerability has been discovered in the AIR5453 modem of the AirTies manufacturer. AirTies Air 5453 devices have XSS via the top.html productboardtype parameter.