NA - CVE-2023-5696 - A vulnerability was found in CodeAstro Internet...
A vulnerability was found in CodeAstro Internet Banking System 1.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the file pages_transfer_money.php. The...
NA - CVE-2021-46898 - views/switch.py in django-grappelli (aka Django...
views/switch.py in django-grappelli (aka Django Grappelli) before 2.15.2 attempts to prevent external redirection with startswith("/") but this does not consider a protocol-relative URL (e.g.,...
NA - CVE-2023-46306 - The web administration interface in NetModule...
The web administration interface in NetModule Router Software (NRSW) 4.6 before 4.6.0.106 and 4.8 before 4.8.0.101 executes an OS command constructed with unsanitized user input: shell...
NA - CVE-2023-38275 - IBM Cognos Dashboards on Cloud Pak for Data...
IBM Cognos Dashboards on Cloud Pak for Data 4.7.0 exposes sensitive information in container images which could lead to further attacks against the system. IBM X-Force ID: 260730.
NA - CVE-2023-38276 - IBM Cognos Dashboards on Cloud Pak for Data...
IBM Cognos Dashboards on Cloud Pak for Data 4.7.0 exposes sensitive information in environment variables which could aid in further attacks against the system. IBM X-Force ID: 260736.
NA - CVE-2023-38735 - IBM Cognos Dashboards on Cloud Pak for Data...
IBM Cognos Dashboards on Cloud Pak for Data 4.7.0 could allow a remote attacker to bypass security restrictions, caused by a reverse tabnabbing flaw. An attacker could exploit this vulnerability...
NA - CVE-2023-46298 - Next.js before 13.4.20-canary.13 lacks a...
Next.js before 13.4.20-canary.13 lacks a cache-control header and thus empty prefetch responses may sometimes be cached by a CDN, causing a denial of service to all users requesting the same URL...