CVE-2022-43952
An improper neutralization of input during web page generation (‘Cross-site Scripting’) vulnerability [CWE-79] in FortiADC version 7.1.1 and below, version 7.0.3 and below, version 6.2.5…
An improper neutralization of input during web page generation (‘Cross-site Scripting’) vulnerability [CWE-79] in FortiADC version 7.1.1 and below, version 7.0.3 and below, version 6.2.5…
An improper neutralization of input during web page generation [CWE-79] in the FortiWeb web interface 7.0.0 through 7.0.3, 6.3.0 through 6.3.21, 6.4 all versions, 6.2…
Hitachi Vantara Pentaho Business Analytics Server prior to versions 9.3.0.0, 9.2.0.4 and 8.3.0.27 allow a malicious URL to inject content into a dashboard when the…
Hitachi Vantara Pentaho Business Analytics Server versions before 9.3.0.0, 9.2.0.4 and 8.3.0.27 does not correctly perform an authorization check in the dashboard editor plugin API.…
ToolboxST prior to version 7.10 is affected by a deserialization vulnerability. An attacker with local access to an HMI or who has conducted a social…
An out of bounds read exists in libjxl. An attacker using a specifically crafted file could cause an out of bounds read in the exif…
In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service. Zafiyet ile ilgili Genel Bilgi,…
In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service. Zafiyet ile ilgili Genel Bilgi,…
In media service, there is a missing permission check. This could lead to local denial of service in media service. Zafiyet ile ilgili Genel Bilgi,…
In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service. Zafiyet ile ilgili Genel Bilgi,…