Author: Angelo Barbosa

CVE-2023-48966 | ThinkAdmin 6.1.53 ZIP File unrestricted upload

A vulnerability was found in ThinkAdmin 6.1.53. It has been rated as critical. This issue affects some unknown processing of the component ZIP File Handler. The manipulation leads to unrestricted upload. The identification of this vulnerability is CVE-2023-48966. The attack may be initiated remotely. There is no exploit...

Read More

CVE-2023-48965 | ThinkAdmin 6.1.53 URL information disclosure

A vulnerability was found in ThinkAdmin 6.1.53. It has been declared as problematic. This vulnerability affects unknown code of the component URL Handler. The manipulation leads to information disclosure. This vulnerability was named CVE-2023-48965. The attack needs to be initiated within the local network. There is no exploit...

Read More

CVE-2023-48866 | Grocy up to 4.0.3 Recipe Preparation /api/objects/recipes cross site scripting

A vulnerability was found in Grocy up to 4.0.3 and classified as problematic. Affected by this issue is some unknown functionality of the file /api/objects/recipes of the component Recipe Preparation. The manipulation leads to cross site scripting. This vulnerability is handled as CVE-2023-48866. The attack may be launched remotely. There is no exploit...

Read More