Local Services Search Engine Management System (LSSMES) 1.0 – Blind & Error based SQL injection (Authenticated)
https://buathongcity.go.th/tmp/senius.html notified by ZoRRoKiN
http://bgepa.dgr.go.th/2558/templates/ notified by Xyp3r2667
http://procurement.dgr.go.th/egp/ notified by Xyp3r2667
WiFi Mouse version 1.7.8.5 suffers from a remote code execution vulnerability.
Backdoor.Win32.RemoteManipulator.fdo malware suffers from an insecure permissions vulnerability.
VMware vCenter Server version 7.0 unauthenticated arbitrary file upload exploit.
Covid-19 Contact Tracing System version 1.0 suffers from a remote code execution vulnerability.
Online Catering Reservation System version 1.0 suffers from an unauthenticated remote code execution vulnerability.
Trojan-Spy.Win32.Stealer.osh malware suffers from an insecure permissions vulnerability.