Autore: Angelo Barbosa

CVE-2023-6658 | SourceCodester Simple Student Attendance System 1.0 ajax-api.php class_id sql injection

A vulnerability classified as critical was found in SourceCodester Simple Student Attendance System 1.0. This vulnerability affects unknown code of the file ajax-api.php?action=save_attendance. The manipulation of the argument class_id leads to sql injection. This vulnerability was named CVE-2023-6658. The attack needs to be approached within the local network. Furthermore, there is an exploit...

Per saperne di più

CVE-2023-6657 | SourceCodester Simple Student Attendance System 1.0 /modals/student_form.php id sql injection

A vulnerability classified as critical has been found in SourceCodester Simple Student Attendance System 1.0. This affects an unknown part of the file /modals/student_form.php. The manipulation of the argument id leads to sql injection. This vulnerability is uniquely identified as CVE-2023-6657. Access to the local network is required for this attack to succeed. Furthermore, there is an exploit...

Per saperne di più

CVE-2023-6656 | DeepFaceLab pretrained DF.wf.288res.384.92.72.22 DFLIMG/DFLJPG.py deserialization

A vulnerability was found in DeepFaceLab pretrained DF.wf.288res.384.92.72.22. It has been rated as critical. Affected by this issue is some unknown functionality of the file DFLIMG/DFLJPG.py. The manipulation leads to deserialization. NOTE: This vulnerability only affects products that are no longer supported by the maintainer. This vulnerability is handled as CVE-2023-6656. The attack may be launched remotely. There is no exploit...

Per saperne di più

CVE-2023-50431 | Linux Kernel up to 6.6.5 habanalabs_ioctl.c sec_attest_info information disclosure

A vulnerability was found in Linux Kernel up to 6.6.5. It has been declared as problematic. Affected by this vulnerability is the function sec_attest_info of the file drivers/accel/habanalabs/common/habanalabs_ioctl.c. The manipulation leads to information disclosure. This vulnerability is known as CVE-2023-50431. The attack needs to be initiated within the local network. There is no exploit available. It is recommended to apply a patch to fix this...

Per saperne di più

CVE-2021-46899 | SyncTrayzor 1.1.29 CEF Remote Debug Local Privilege Escalation (Issue 666)

A vulnerability was found in SyncTrayzor 1.1.29. It has been classified as problematic. Affected is an unknown function of the component CEF Remote Debug Handler. The manipulation leads to Local Privilege Escalation. This vulnerability is traded as CVE-2021-46899. Local access is required to approach this attack. There is no exploit available. It is recommended to upgrade the affected...

Per saperne di più