Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Youssef Mami

#15367de 53,638
17.6CVSS total
Vulnerabilidades · 2
Alta
1
Crítica
1
PT-2018-10034
7.8
2018-05-10
Devicelock · Devicelock Plug/Play Auditor · CVE-2018-10655
**Name of the Vulnerable Software and Affected Versions** DeviceLock Plug and Play Auditor version 5.72 **Description** The issue is related to a Unicode Buffer Overflow in the DLPnpAuditor.exe component. This can potentially lead to a Structured Exception Handler (SEH) overflow. **Recommendations** For DeviceLock Plug and Play Auditor version 5.72, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2018-10086
9.8
2018-05-05
Csp · Csp Mysql User Manager · CVE-2018-10757
**Name of the Vulnerable Software and Affected Versions** CSP MySQL User Manager version 2.3.1 **Description** The issue allows for SQL injection and resultant authentication bypass via a crafted `username` during a login attempt. **Recommendations** For version 2.3.1, update to a newer version that contains a fix for this issue, as using a crafted `username` can lead to authentication bypass. At the moment, there is no information about a newer version that contains a fix for this vulnerability.