Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Newcomer1989

#42753de 53,633
6.1CVSS total
Vulnerabilidades · 1
PT-2023-10814
6.1
2023-01-11
Unknown · Newcomer1989 Tsn-Ranksystem · CVE-2018-25073
**Name of the Vulnerable Software and Affected Versions** Newcomer1989 TSN-Ranksystem versions up to 1.2.6 **Description** A vulnerability has been found in Newcomer1989 TSN-Ranksystem, affecting the `getlog` function of the file `webinterface/bot.php`. The manipulation leads to cross-site scripting. The attack can be initiated remotely. **Recommendations** For Newcomer1989 TSN-Ranksystem versions up to 1.2.6, upgrade to version 1.2.7 to address this issue. As a temporary workaround, consider disabling the `getlog` function of the `webinterface/bot.php` file until the patch is applied. Restrict access to the `webinterface/bot.php` file to minimize the risk of exploitation.