|
61
|
7.5 |
HIGH
Network
|
samba redhat almalinux archlinux gentoo nixos suse tritondatacenter
|
rsync openshift openshift_container_platform enterprise_linux enterprise_linux_eus enterprise_linux_for_arm_64 enterprise_linux_for_arm_64_eus enterprise_linux_for_ibm_z_systems<…
|
A flaw was found in rsync which could be triggered when rsync compares file checksums. This flaw allows an attacker to manipulate the checksum length (s2length) to cause a comparison between a checks…
Update
|
CWE-908
Use of Uninitialized Resource
|
CVE-2024-12085
|
2026-04-15 07:16 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
62
|
7.5 |
HIGH
Network
|
samba redhat almalinux archlinux gentoo nixos suse tritondatacenter
|
rsync openshift openshift_container_platform enterprise_linux enterprise_linux_eus enterprise_linux_for_arm_64 enterprise_linux_for_arm_64_eus enterprise_linux_for_ibm_z_systems<…
|
Se encontró un fallo en rsync daemon que podría activarse cuando rsync compara sumas de comprobación de archivos. Este fallo permite a un atacante manipular la longitud de la suma de comprobación (s2…
Update
|
CWE-908
Use of Uninitialized Resource
|
CVE-2024-12085
|
2026-04-15 07:16 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
63
|
9.8 |
CRITICAL
Network
|
janobe
|
online_reviewer_system
|
Remote Code Execution (RCE) vulnerability exists in Sourcecodester Online Reviewer System 1.0 by uploading a maliciously crafted PHP file that bypasses the image upload filters..
Update
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2021-41646
|
2026-04-15 06:33 |
2021-10-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
64
|
9.8 |
CRITICAL
Network
|
janobe
|
online_reviewer_system
|
Se presenta una vulnerabilidad de ejecución de código remota (RCE) en Sourcecodester Online Reviewer System versión 1.0, al cargar un archivo PHP diseñado de forma maliciosa que omite los filtros de …
Update
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2021-41646
|
2026-04-15 06:33 |
2021-10-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
65
|
9.8 |
CRITICAL
Network
|
janobe
|
online_reviewer_system
|
A vulnerability was found in SourceCodester Online Reviewer System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /reviewer/system/system/admins/mana…
Update
|
CWE-89
SQL Injection
|
CVE-2023-2596
|
2026-04-15 06:32 |
2023-05-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
66
|
9.8 |
CRITICAL
Network
|
janobe
|
online_reviewer_system
|
Online Reviewer System 1.0 contains a SQL injection vulnerability through authentication bypass, which may lead to a reverse shell upload.
Update
|
CWE-89
SQL Injection
|
CVE-2021-27130
|
2026-04-15 06:31 |
2021-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
67
|
9.8 |
CRITICAL
Network
|
janobe
|
online_reviewer_system
|
Online Reviewer System versión 1.0, contiene una vulnerabilidad de inyección SQL por medio de una omisión de autenticación, que puede conllevar a una carga de shell inversa
Update
|
CWE-89
SQL Injection
|
CVE-2021-27130
|
2026-04-15 06:31 |
2021-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
68
|
6.5 |
MEDIUM
Network
|
1millionbot
|
millie_chatbot
|
Insecure Direct Object Reference (IDOR) vulnerability in 1millionbot Millie chat that allows private conversations of other users being viewed by simply changing the conversation ID. The vulnerabilit…
New
|
CWE-639
Authorization Bypass Through User-Controlled Key
|
CVE-2026-4400
|
2026-04-15 06:31 |
2026-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
69
|
6.5 |
MEDIUM
Network
|
1millionbot
|
millie_chatbot
|
Vulnerabilidad de Referencia Directa a Objeto Insegura (IDOR) en el chat Millie de 1millionbot que permite visualizar conversaciones privadas de otros usuarios simplemente cambiando el ID de la conve…
New
|
CWE-639
Authorization Bypass Through User-Controlled Key
|
CVE-2026-4400
|
2026-04-15 06:31 |
2026-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
70
|
5.5 |
MEDIUM
Local
|
ibm
|
tivoli_netcool\/impact
|
IBM Tivoli Netcool Impact 7.1.0.0 through 7.1.0.37 stores sensitive information in log files that could be read by a local user.
New
|
CWE-532
Inclusion of Sensitive Information in Log Files
|
CVE-2026-4788
|
2026-04-15 06:29 |
2026-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|