FreeType suffers from a heap buffer overflow vulnerability due to integer truncation in Load_SBit_Png.
WebLogic Server 10.3.6.0.0 / 12.1.3.0.0 / 12.2.1.3.0 / 12.2.1.4.0 / 14.1.1.0.0 – Unauthenticated RCE via GET request
Online Examination System 1.0 – ‘name’ Stored Cross Site Scripting
Mailman 1.x > 2.1.23 – Cross Site Scripting (XSS)
Sphider Search Engine version 1.3.6 remote code execution exploit.
Adtec Digital is a leading manufacturer of Broadcast, Cable and IPTV products and solutions. Many of their devices utilize hard-coded and default credentials within its Linux distribution image for Web/Telnet/SSH…
Sentrifugo version 3.2 suffers from a restriction bypass vulnerability that allows for a remote shell upload.
TDM Digital Signage Windows Player version 4.1 suffers from an elevation of privileges vulnerability which can be used by a simple authenticated user that can change the executable file with…
CSE Bookstore 1.0 – Authentication Bypass
Nagios XI 5.7.3 – ‘mibs.php’ Remote Command Injection (Authenticated)