Autore: Angelo Barbosa

CVE-2023-48887 | Jupiter 1.3.1 RPC Request deserialization (Issue 115)

A vulnerability classified as problematic has been found in Jupiter 1.3.1. Affected is an unknown function of the component RPC Request Handler. The manipulation leads to deserialization. This vulnerability is traded as CVE-2023-48887. Access to the local network is required for this attack. Furthermore, there is an exploit available. It is recommended to upgrade the affected...

Per saperne di più

CVE-2023-49276 | louislam uptime-kuma up to 1.23.6 cross site scripting (GHSA-v4v2-8h88-65qj)

A vulnerability was found in louislam uptime-kuma up to 1.23.6. It has been rated as problematic. This issue affects some unknown processing. The manipulation leads to cross site scripting. The identification of this vulnerability is CVE-2023-49276. The attack may be initiated remotely. There is no exploit available. It is recommended to upgrade the affected...

Per saperne di più

CVE-2023-48801 | Totolink X6000R 9.4.0cu.852_B20230719 shttpd sub_415534 Privilege Escalation

A vulnerability was found in Totolink X6000R 9.4.0cu.852_B20230719. It has been declared as critical. This vulnerability affects the function sub_415534 of the file shttpd. The manipulation leads to Privilege Escalation. This vulnerability was named CVE-2023-48801. The attack needs to be done within the local network. There is no exploit...

Per saperne di più

CVE-2023-48314 | CollaboraOnline prior 23.5.403 Built-in CODE Server App proxy.php cross site scripting (GHSA-qjrm-q4h5-v3r2)

A vulnerability was found in CollaboraOnline. It has been classified as problematic. This affects an unknown part of the file proxy.php of the component Built-in CODE Server App. The manipulation leads to cross site scripting. This vulnerability is uniquely identified as CVE-2023-48314. It is possible to initiate the attack remotely. There is no exploit available. It is recommended to upgrade the affected...

Per saperne di più

CVE-2023-6472 | PHPEMS 7.0 Content Section api.cls.php cross site scripting

A vulnerability, which was classified as problematic, has been found in PHPEMS 7.0. This issue affects some unknown processing of the file appcontentclsapi.cls.php of the component Content Section Handler. The manipulation leads to cross site scripting. The identification of this vulnerability is CVE-2023-6472. The attack may be initiated remotely. Furthermore, there is an exploit...

Per saperne di più