CVE-2022-36716 Library Management System v1.0 had a SQL injection vulnerability with the id parameter.
A successful exploit could cause the system to crash or leak sensitive data depending on the nature of the input. This issue was resolved by
CVE-2022-37178 An issue was discovered in 72crm 9.0
A user can inject any SQL code into the view function to run arbitrary SQL code on the database. For example, a hacker can inject
CVE-2022-37181 72crm 9.0 has an Arbitrary file upload vulnerability.
An attacker can upload arbitrary file via server side request in the application. An attacker can upload payloads to the Application and can control the
CVE-2022-38089 Exment stored cross-site scripting vulnerability in v5.0.2 and earlier and v3.0.0 and earlier, v4.4.2 and earlier, and v2.2.2 and earlier.
Stored cross-site scripting vulnerability in Exment ((PHP8) exceedone/exment v5.0.2 and earlier and exceedone/laravel-admin v3.0.0 and earlier, (PHP7)
CVE-2022-35733 Vulnerability in UNIMO Technology digital video recorders allows attackers to access the system without authentication.
The vulnerability can be exploited by injecting malicious PHP code via a web request to the affected device. UDR-JA1004/JA1008/JA1016 are IP camera
Episode
00:00:00
00:00:00