Autore: Angelo Barbosa

CVE-2023-46387 | LOYTEC LINX-151/LINX-212 File Download API dpal_config.zml information disclosure

A vulnerability classified as problematic has been found in LOYTEC LINX-151 and LINX-212. Affected is an unknown function of the file /var/lib/lgtw/dpal_config.zml of the component File Download API. The manipulation leads to information disclosure. This vulnerability is traded as CVE-2023-46387. The attack can only be initiated within the local network. There is no exploit...

Per saperne di più

CVE-2023-46386 | LOYTEC LINX-151/LINX-212 SMTP Client registry.xml credentials storage

A vulnerability was found in LOYTEC LINX-151 and LINX-212. It has been rated as problematic. This issue affects some unknown processing of the file registry.xml of the component SMTP Client Handler. The manipulation leads to unprotected storage of credentials. The identification of this vulnerability is CVE-2023-46386. The attack can only be done within the local network. There is no exploit...

Per saperne di più

CVE-2023-3533 | Chamilo LMS up to 1.11.20 File Upload additional_webservices.php path traversal

A vulnerability was found in Chamilo LMS up to 1.11.20 and classified as critical. Affected by this issue is some unknown functionality of the file /main/webservices/additional_webservices.php of the component File Upload. The manipulation leads to path traversal. This vulnerability is handled as CVE-2023-3533. The attack may be launched remotely. There is no exploit available. It is recommended to apply a patch to fix this...

Per saperne di più