Security Vulnerabilities
- CVEs Published In August 2021
Cross Site Scripting (XSS) vulnerability exists in PbootCMS v1.3.7 via the title parameter in the mod function in SingleController.php.
Cross Site Request Forgery (CSRF) vulnerability exists in bycms v1.3.0 that can add an admin account via admin.php/ucenter/add.html.
.NET Core and Visual Studio Denial of Service Vulnerability
Windows TCP/IP Remote Code Execution Vulnerability
Windows Event Tracing Elevation of Privilege Vulnerability
Windows User Account Profile Picture Elevation of Privilege Vulnerability
Azure Sphere Information Disclosure Vulnerability
Azure Sphere Elevation of Privilege Vulnerability
Azure Sphere Denial of Service Vulnerability
Windows Recovery Environment Agent Elevation of Privilege Vulnerability