CMS Made Simple version 2.2.5 allows an authenticated administrator to upload a file and rename it to have a .php extension. The file can then be executed by opening the…
TP-Link TL-WR840N – Denial of Service
MSVOD 10 – ‘cid’ SQL Injection
Touchpad / Trivum WebTouch Setup 2.53 build 13163 – Authentication Bypass
FTP2FTP version 1.0 suffers from an arbitrary file download vulnerability.
GhostMail suffers from an html injection vulnerability.
GhostMail suffers from a malicious script insertion vulnerability.
Open-AudIT Community version 2.1.1 suffers from a cross site scripting vulnerability.
JavaScript Core arbitrary code execution exploit.
Smart SMS and Email Manager version 3.3 suffers from a remote SQL injection vulnerability.