A vulnerability has been found in Orchard CMS up to 1.0.0 (Content Management System) and classified as critical. Affected by this vulnerability is an unknown function of the component Password Change Handler. Applying a patch is able to eliminate this problem. The bugfix is ready for download at github.com.
Orchard CMS up to 1.0.0 Password Change session expiration
- Virtual Patching
- October 10, 2021
- 8:06 pm
CVE-2024-50919 : JPRESS 5.1.1 ON WINDOWS JSP FILE UNRESTRICTED UPLOAD
Description Jpress until v5.1.1 has arbitrary file uploads on the windows platform, and the construction of non-standard file formats such
CVE-2024-47873 : PHPOFFICE PHPSPREADSHEET UP TO 1.29.3/2.1.2/2.3.1/3.3.X SCAN/FINDCHARSET XML EXTERNAL ENTITY REFERENCE
Description PhpSpreadsheet is a PHP library for reading and writing spreadsheet files. The XmlScanner class has a scan method which
CVE-2024-43416 : GLPI UP TO 10.0.16 INFORMATION DISCLOSURE
Description GLPI is a free asset and IT management software package. Starting in version 0.80 and prior to version 10.0.17,