A vulnerability was found in Monstra CMS 3.0.4 (Content Management System) and classified as critical. Affected by this issue is some unknown functionality of the file /admin/index.php?id=themes&action=edit_template&filename=blog of the component PHP File Handler. There is no information about possible countermeasures known. It may be suggested to replace the affected object with an alternative product.
Monstra CMS 3.0.4 PHP File index.php Privilege Escalation
- Virtual Patching
- October 29, 2021
- 7:06 am
CVE-2024-49592 : MCAFEE TRIAL INSTALLER 16.0.53 ACCESS CONTROL
Description McAfee Trial Installer 16.0.53 has Incorrect Access Control that leads to Local Escalation of Privileges. References https://www.mcafee.com/support/s/article/000002516?language=en_US For More
CVE-2024-10934 : OPENBSD UP TO 7.4 ERRATA 020/7.5 ERRATA 007 NFS CLIENT/NFS SERVER DOUBLE FREE
Description In OpenBSD 7.5 before errata 008 and OpenBSD 7.4 before errata 021, avoid possible mbuf double free in NFS
CVE-2024-40638 : GLPI UP TO 10.0.16 SQL INJECTION
Description GLPI is a free asset and IT management software package. An authenticated user can exploit multiple SQL injection vulnerabilities.