Security
Headlines
HeadlinesLatestCVEs

Tag

#sql

Inout Search Engine 10.1.3 Cross Site Scripting

Inout Search Engine version 10.1.3 suffers from a cross site scripting vulnerability.

Packet Storm
#sql#xss#vulnerability#web#php#auth#ssh
Inout Homestay 2.2 SQL Injection

Inout Homestay version 2.0 suffers from a remote SQL injection vulnerability.

Debian Security Advisory 5325-1

Debian Linux Security Advisory 5325-1 - It was discovered that SPIP, a website engine for publishing, would allow a malicious user to SQL injection attacks, or bypass authorization access.

Chinese Hackers Utilize Golang Malware in DragonSpark Attacks to Evade Detection

Organizations in East Asia are being targeted by a likely Chinese-speaking actor dubbed DragonSpark while employing uncommon tactics to go past security layers. "The attacks are characterized by the use of the little known open source SparkRAT and malware that attempts to evade detection through Golang source code interpretation," SentinelOne said in an analysis published today. A striking

CVE-2023-22630: IzyBat Orange casiers - SQLi injection

IzyBat Orange casiers before 20221102_1 allows SQL Injection via a getCasier.php?taille= URI.

Ubuntu Security Notice USN-5818-1

Ubuntu Security Notice 5818-1 - It was discovered that PHP incorrectly handled certain inputs. An attacker could possibly use this issue to cause a crash or execute arbitrary code.

Inout RealEstate 2.1.3 SQL Injection

Inout RealEstate version 2.1.3 suffers from a remote SQL injection vulnerability.