CVE-2022-41892 - Critical SQL Injection Vulnerability in Arches Geospatial Platform – Exploit Details & Secure Your Data Now
Arches is a popular open-source web platform used by researchers, governments, and heritage organizations to create, manage, and visualize geospatial data—think important digital maps
CVE-2022-36938 The Redex Loader in DexClassLoader prior to 3b44c64 can load an out of bound address and could lead to remote code execution.
This issue has been addressed by updating Redex prior to commit 1b0506f. Redex is a fast, efficient and dynamic knowledge management system, which can be
CVE-2022-26088 An issue was found in BMC Remedy 22.1 with Email-based Incident Forwarding. Remote users can inject HTML into the Activity Log by placing it in the To: field.
Insecure Direct Object References (IDOR) are possible due to the lack of sanitization in the To field. A remote attacker may leverage this issue to
CVE-2022-44727 - SQL Injection in PrestaShop “EU Cookie Law GDPR” Module (Banner + Blocker) via Cookie – Explained
If you run an e-commerce site with PrestaShop, you probably care about GDPR compliance and use a cookie consent banner. Many turn to the “EU
CVE-2022-38122 UPSMON PRO transmits sensitive data in cleartext over HTTP protocol
Unrestricted remote administrative access to a vulnerable device could be accomplished through ARP poisoning, ARP cache poisoning, ARP spoofing, MITM attack, etc. An attacker could
Episode
00:00:00
00:00:00