Tag
#php
Online Diagnostic Lab Management System version 1.0 suffers from an arbitrary file upload vulnerability.
Online Banking System version 1.0 suffers from a cross site request forgery vulnerability.
Music Gallery Site version 1.0 suffers from a cross site request forgery vulnerability.
Multi-Vendor Online Groceries Management System version 1.0 suffers from a cross site request forgery vulnerability.
Medical Center Portal version 1.0 suffers from a cross site request forgery vulnerability.
Event Registration and Attendance System version 1.0 suffers from a cross site request forgery vulnerability.
Cab Management System version 1.0 suffers from a cross site request forgery vulnerability.
Alphaware E-Commerce System version 1.0 suffers from a code injection vulnerability.
Cisco Talos has uncovered a new remote access trojan (RAT) family we are calling “MoonPeak.” This a XenoRAT-based malware, which is under active development by a North Korean nexus cluster we are calling “UAT-5394.”
A maximum-severity security flaw has been disclosed in the WordPress GiveWP donation and fundraising plugin that exposes more than 100,000 websites to remote code execution attacks. The flaw, tracked as CVE-2024-5932 (CVSS score: 10.0), impacts all versions of the plugin prior to version 3.14.2, which was released on August 7, 2024. A security researcher, who goes by the online alias villu164,