A vulnerability, which was classified as critical, has been found in Montala ResourceSpace. Affected by this issue is some unknown functionality of the file pages/ajax/tiles.php. Upgrading to version 9.6 rev 18277 eliminates this vulnerability.
Montala ResourceSpace prior 9.6 rev 18277 pages/ajax/tiles.php provider/variant pathname traversal
- Virtual Patching
- November 17, 2021
- 6:06 pm
CVE-2022-20652 : CISCO SECURE WORKLOAD UP TO 3.5.1.30 WEB-BASED MANAGEMENT INTERFACE/API SUBSYSTEM OS COMMAND INJECTION
Description A vulnerability in the web-based management interface and in the API subsystem of Cisco Tetration could allow an authenticated, remote
CVE-2024-20418 : CISCO IOS XE CONTROLLER WEB-BASED MANAGEMENT INTERFACE COMMAND INJECTION
Description A vulnerability in the web-based management interface of Cisco Unified Industrial Wireless Software for Cisco Ultra-Reliable Wireless Backhaul (URWB)
CVE-2024-20536 : CISCO DATA CENTER NETWORK MANAGER 12.1.2E/12.1.2P/12.1.3B WEB-BASED MANAGEMENT INTERFACE/REST API ENDPOINT SQL INJECTION
Description A vulnerability in a REST API endpoint and web-based management interface of Cisco Nexus Dashboard Fabric Controller (NDFC) could