Kategori: NIST-Təhlükəsizlik Zəiflikləri

CVE-2022-48583

A command injection vulnerability exists in the dashboard scheduler feature of the ScienceLogic SL1 that takes unsanitized user?controlled input and passes it directly to a…

Devamını oku

CVE-2022-48584

A command injection vulnerability exists in the download and convert report feature of the ScienceLogic SL1 that takes unsanitized user?controlled input and passes it directly…

Devamını oku

CVE-2022-48585

A SQL injection vulnerability exists in the “admin brand portalâ€� feature of the ScienceLogic SL1 that takes unsanitized user?controlled input and passes it directly to…

Devamını oku

CVE-2022-48586

A SQL injection vulnerability exists in the “json walkerâ€� feature of the ScienceLogic SL1 that takes unsanitized user?controlled input and passes it directly to a…

Devamını oku

CVE-2022-48581

A command injection vulnerability exists in the “dash exportâ€� feature of the ScienceLogic SL1 that takes unsanitized user controlled input and passes it directly to…

Devamını oku

CVE-2023-23903

An authenticated administrator can upload a SAML configuration file with the wrong format, with the application not checking the correct file format. Every subsequent application…

Devamını oku

CVE-2023-22378

A blind SQL Injection vulnerability in Nozomi Networks Guardian and CMC, due to improper input validation in the sorting parameter, allows an authenticated attacker to…

Devamını oku

CVE-2023-22843

An authenticated attacker with administrative access to the appliance can inject malicious JavaScript code inside the definition of a Threat Intelligence rule, that will later…

Devamını oku