WordPress Plugin Filterable Portfolio Gallery 1.0 – ‘title’ Stored Cross-Site Scripting (XSS)
OpenClinic GA 5.194.18 – Local Privilege Escalation
Balbooa Joomla Forms Builder 2.0.6 – SQL Injection (Unauthenticated)
Apache HTTP Server 2.4.50 – Remote Code Execution (RCE) (2)
Build Smart ERP 21.0817 – ‘eidValue’ SQL Injection (Unauthenticated)
Netgear Genie 2.4.64 – Unquoted Service Path
Engineers Online Portal 1.0 – File Upload Remote Code Execution (RCE)
Hikvision Web Server Build 210702 – Command Injection
Gestionale Open 11.00.00 – Local Privilege Escalation
WordPress Plugin TaxoPress 3.0.7.1 – Stored Cross-Site Scripting (XSS) (Authenticated)