Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Brainrecursion

#16478de 53,619
16.3CVSS total
Vulnerabilidades · 2
Média
1
Crítica
1
PT-2019-9678
6.5
2019-06-17
Deciso · Opnsense · CVE-2018-18958
**Name of the Vulnerable Software and Affected Versions** OPNsense versions 18.7.x through 18.7.6 **Description** The issue is related to Incorrect Access Control. **Recommendations** For OPNsense versions 18.7.x through 18.7.6, update to version 18.7.7 or later to resolve the issue.
PT-2018-13959
9.8
2018-09-20
Slack · Slack-Archive-Bot · CVE-2018-17232
**Name of the Vulnerable Software and Affected Versions** slack-archive-bot versions prior to 2018-09-19 **Description** The issue allows remote attackers to execute arbitrary SQL commands. This is achieved via the `text` parameter to `cursor.execute()` in the archivebot.py script. **Recommendations** For versions prior to 2018-09-19, update to a version released after 2018-09-19 to resolve the issue. As a temporary workaround, consider restricting access to the `cursor.execute()` function to minimize the risk of exploitation. Avoid using the `text` parameter in the affected script until the issue is resolved.