Autore: Angelo Barbosa

CVE-2023-7053 | PHPGurukul Online Notes Sharing System 1.0 /user/signup.php weak password

A vulnerability was found in PHPGurukul Online Notes Sharing System 1.0. It has been declared as problematic. This vulnerability affects unknown code of the file /user/signup.php. The manipulation leads to weak password requirements. This vulnerability was named CVE-2023-7053. The attack can be initiated remotely. Furthermore, there is an exploit...

Per saperne di più

CVE-2023-7052 | PHPGurukul Online Notes Sharing System 1.0 /user/profile.php name cross-site request forgery

A vulnerability was found in PHPGurukul Online Notes Sharing System 1.0. It has been classified as problematic. This affects an unknown part of the file /user/profile.php. The manipulation of the argument name leads to cross-site request forgery. This vulnerability is uniquely identified as CVE-2023-7052. It is possible to initiate the attack remotely. Furthermore, there is an exploit...

Per saperne di più

CVE-2023-7051 | PHPGurukul Online Notes Sharing System 1.0 /user/manage-notes.php delid cross-site request forgery

A vulnerability was found in PHPGurukul Online Notes Sharing System 1.0 and classified as problematic. Affected by this issue is some unknown functionality of the file /user/manage-notes.php of the component Notes Handler. The manipulation of the argument delid leads to cross-site request forgery. This vulnerability is handled as CVE-2023-7051. The attack may be launched remotely. Furthermore, there is an exploit...

Per saperne di più

CVE-2023-7050 | PHPGurukul Online Notes Sharing System 1.0 user/profile.php name/email cross site scripting

A vulnerability has been found in PHPGurukul Online Notes Sharing System 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file user/profile.php. The manipulation of the argument name/email leads to cross site scripting. This vulnerability is known as CVE-2023-7050. The attack can be launched remotely. Furthermore, there is an exploit...

Per saperne di più

CVE-2023-48116 | SmarterTools SmarterMail prior 16.x Build 8747 Calendar Appointment cross site scripting

A vulnerability, which was classified as problematic, was found in SmarterTools SmarterMail. Affected is an unknown function of the component Calendar Appointment Handler. The manipulation leads to cross site scripting. This vulnerability is traded as CVE-2023-48116. It is possible to launch the attack remotely. There is no exploit available. It is recommended to upgrade the affected...

Per saperne di più