CVE-2022-38292 The SLiMS Senayan Library Management System v9.4.2 was found to be vulnerable to Server-Side Request Forgery.
An attacker can trick the user into giving him remote system access via the PHP components. In Senayan Library Management System, it is possible to
CVE-2022-37299 An issue was discovered in Shirne CMS 1.2.0
If a user has access to the /static/ueditor/php/ directory, an attacker could exploit the vulnerability. The Shirne CMS version affected is 1.2.
CVE-2022-38260 The Interview Management System v1.0 had a SQL injection vulnerability.
A remote user or attacker can inject arbitrary SQL commands to the system, and the system will execute the command. If SQL injection is not
CVE-2022-2433 The WordPress Infinite Scroll Ajax plugin is vulnerable to deserialization of untrusted input, as long as the plugin version is up to 5.5.3.
This can be accomplished through a number of methods depending on the web server configuration and the capabilities of the target. Some of the more
CVE-2022-40110 TOTOLINK A3002R is vulnerable to Buffer Overflow via /bin/boa
When /bin/boa is called, it will call the function pointed to by 'Fastcgi_parameters' which accepts user-supplied data via 'arg_
Episode
00:00:00
00:00:00