CVE-2022-41479 The DevExpress Resource Handler does not verify objects in the /DXR.axd?r= GET parameter.
IDOR vulnerabilities occur when an attacker supplies an un-sanitized user input to a system. For example, you can imagine an attacker submitting an XSS (Cross-Site
CVE-2022-36438 ASUS Switch sets weak file permissions, leading to local privilege escalation. This can be used to delete files arbitrarily.
The latest version is 3.2.2.0, released on 2014-07-25. It is strongly recommended to update to the latest version.
CVE-2014-1624
There is a
CVE-2022-3581 A vulnerability was found in SourceCodester Cashier Queuing System 1.0, a component of Cashiers Tab. The manipulation of the argument Name can lead to cross site scripting.
All major operating systems are susceptible. The server operating systems supported are Microsoft Windows, Apple MacOS, and Red Hat Linux. It is important to install
CVE-2022-3579 An unknown vulnerability was found in SourceCodester Cashier Queuing System 1.0. The vulnerability affects the file /queuing/login.php of the component Login Page.
This critical severity vulnerability is found in the software of the component Login Page. The affected software is the component Login Page. The affected component
CVE-2022-3552 Upload of file with dangerous type in GitHub repository was allowed before v0.0.1.
At that time, if you try to upload file with a dangerous type, such as .exe, .ps1, .psm1, .py, .js, .css, .md, .md, .markdown, .pdf,
Episode
00:00:00
00:00:00