Author: Angelo Barbosa

CVE-2023-6251 | Checkmk up to 2.0.0p39/2.1.0p36/2.2.0p14 User-Message cross-site request forgery

A vulnerability, which was classified as problematic, has been found in Checkmk up to 2.0.0p39/2.1.0p36/2.2.0p14. This issue affects some unknown processing of the component User-Message Handler. The manipulation leads to cross-site request forgery. The identification of this vulnerability is CVE-2023-6251. The attack may be initiated remotely. There is no exploit available. It is recommended to apply a patch to fix this...

Read More

CVE-2023-6276 | Tongda OA 2017 up to 11.9 delete.php PROJ_ID_STR sql injection

A vulnerability classified as critical has been found in Tongda OA 2017 up to 11.9. This affects an unknown part of the file general/wiki/cp/ct/delete.php. The manipulation of the argument PROJ_ID_STR leads to sql injection.This vulnerability is uniquely identified as CVE-2023-6276. It is possible to initiate the attack remotely. Furthermore, there is an exploit available. It is recommended to upgrade the affected...

Read More