Author: Angelo Barbosa

CVE-2024-28090 | Technicolor TC8715D 01.EF.04.38.00-180405-S-FF9-D dyn_dns.asp User name cross site scripting

A vulnerability was found in Technicolor TC8715D 01.EF.04.38.00-180405-S-FF9-D. It has been classified as problematic. Affected is an unknown function of the file dyn_dns.asp. The manipulation of the argument User name leads to cross site scripting. This vulnerability is traded as CVE-2024-28090. The attack needs to be approached within the local network. There is no exploit...

Read More

CVE-2024-28091 | Technicolor TC8715D 01.EF.04.38.00-180405-S-FF9-D RSE-TC8717T User Defined Service managed_services_add.asp cross site scripting

A vulnerability was found in Technicolor TC8715D 01.EF.04.38.00-180405-S-FF9-D RSE-TC8717T and classified as problematic. This issue affects some unknown processing of the file managed_services_add.asp of the component User Defined Service. The manipulation leads to cross site scripting. The identification of this vulnerability is CVE-2024-28091. Access to the local network is required for this attack to succeed. There is no exploit...

Read More

CVE-2023-6967 | Pods Plugin on WordPress Shortcode sql injection

A vulnerability, which was classified as critical, has been found in Pods Plugin on WordPress. Affected by this issue is some unknown functionality of the component Shortcode Handler. The manipulation leads to sql injection. This vulnerability is handled as CVE-2023-6967. The attack may be launched remotely. There is no exploit...

Read More