2/15/2024 0 Comments GerbView 10.20 download![]() ![]() The POST parameter "srvName" is susceptible to this injection. However, the same functionality allows an attacker to execute commands on the device. The Moxa AWK 3121 provides ping functionality so that an administrator can execute ICMP calls to check if the network is working correctly. Successful exploitation grants an attacker with a right to execute malicious code on the administrator's computer through Excel functions as the plugin does not sanitize the user's input and allows insertion of any text.Īn issue was discovered on Moxa AWK-3121 1.14 devices. The Hustle (aka wordpress-popup) plugin 6.0.7 for WordPress is vulnerable to CSV Injection as it allows for injecting malicious code into a pop-up window. The manipulation of those files can change the behavior of the starter-suid program when instances are joined resulting in potential privilege escalation on the host. This vulnerability affects Firefox ESR /`. *Note: this issue only affects Firefox on Windows operating systems.*. ![]() The Firefox content processes did not sufficiently lockdown access control which could result in a sandbox escape. Arbitrary commands can be injected through the repository name. NPM package gitlabhook version 0.0.17 is vulnerable to a Command Injection vulnerability. Vulnerabilities with a base score of 0.1 to 3.9įor those vulnerabilities without assigned CVSS scores, please visit NVD for the updated CVSS vulnerability entries. Vulnerabilities with a base score of 4.0 to 6.9 Vulnerabilities with a base score of 7.0 to 8.9 Vulnerabilities with a base score of 9.0 to 10.0 The vulnerabilities are tabled based on severity, in accordance to their CVSSv3 base scores: SingCERT's Security Bulletin summarises the list of vulnerabilities collated from the National Institute of Standards and Technology (NIST)'s National Vulnerability Database (NVD) in the past week. ![]()
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |