CVE-2020-13589
An exploitable SQL injection vulnerability exists in the ‘entities/fields’ page of the Rukovoditel Project Management App 2.7.2. The entities_id parameter in the 'entities/fields page (mulitple_edit…
An exploitable SQL injection vulnerability exists in the ‘entities/fields’ page of the Rukovoditel Project Management App 2.7.2. The entities_id parameter in the 'entities/fields page (mulitple_edit…
SQL Injection vulnerability exists in tp-shop 2.x-3.x via the /index.php/home/api/shop fBill parameter. Devamını Oku
A use-after-free vulnerability exists in the _3MF_Importer::_handle_end_model() functionality of Prusa Research PrusaSlicer 2.2.0 and Master (commit 4b040b856). A specially crafted 3MF file can lead to…
A remote code execution (RCE) in e/install/index.php of EmpireCMS 7.5 allows attackers to execute arbitrary PHP code via writing malicious code to the install file.…
In BITSTREAM_FLUSH of ih264e_bitstream.h, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local information disclosure…
In asf extractor, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege…
In asf extractor, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege…
In flv extractor, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege…
In wifi driver, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure to…
In wifi driver, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure to…