CVE-2023-4844 - Critical SQL Injection Vulnerability in SourceCodester Simple Membership System 1. (club_edit_query.php)
In late 2023, a critical security flaw surfaced in the SourceCodester Simple Membership System version 1.. This popular open-source project helps website owners manage membership
CVE-2023-39423 - Exploiting SQL Injection in RDPData.dll to Hijack Active Sessions
A serious vulnerability, now tracked as CVE-2023-39423, was found in certain software using the RDPData.dll library. This flaw exposes an API endpoint, /irmdata/api/
CVE-2023-39359 - Privilege Escalation & Remote Code Execution in Cacti via Authenticated SQL Injection
Cacti is a widely-used open source monitoring tool for network and server infrastructure. In November 2023, a critical security vulnerability, CVE-2023-39359, was discovered in Cacti’
CVE-2023-4740: Critical Vulnerability Discovered in IBOS OA 4.5.5 - SQL Injection Exploit in Delete Draft Handler
A critical vulnerability, CVE-2023-4740, has been identified in IBOS OA 4.5.5, which is an Office Automation platform typically used by businesses to streamline
CVE-2023-40771 - SQL Injection in DataEase v1.18.9 – How Attackers Steal Your Database
If you use DataEase, pay close attention. The SQL injection vulnerability tagged as CVE-2023-40771 affects DataEase version 1.18.9. In this post, I’ll
Episode
00:00:00
00:00:00