A vulnerability, which was classified as critical, has been found in Drupal up to 8.9.18/9.1.12/9.2.5 (Content Management System). This issue affects some unknown functionality of the component HTTP API. Upgrading to version 8.9.19, 9.1.13 or 9.2.6 eliminates this vulnerability.
Drupal up to 8.9.18/9.1.12/9.2.5 HTTP API unrestricted upload
- Virtual Patching
- September 18, 2021
- 12:04 pm
CVE-2023-32306 : TIME TRACKER UP TO 1.22.13.5791 REPORTS.PHP SQL INJECTION
Description Rockwell Automation was made aware that Kinetix 5500 drives, manufactured between May 2022 and January 2023, and are running
CVE-2023-1834 : ROCKWELL AUTOMATION KINETIX 5500 7.13 TELNET/FTP ACCESS CONTROL
Description Rockwell Automation was made aware that Kinetix 5500 drives, manufactured between May 2022 and January 2023, and are running
CVE-2023-2645 : USR USR-G806 1.0.41 WEB MANAGEMENT PAGE USERNAME/PASSWORD HARD-CODED PASSWORD
Description A vulnerability, which was classified as critical, was found in USR USR-G806 1.0.41. Affected is an unknown function of