Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Anandjons

#20299of 53,635
12.6Total CVSS
Vulnerabilities · 2
Medium
1
High
1
PT-2020-15499
7.8
2020-08-14
Pnotes.Net · Pnotes.Net · CVE-2020-22721
**Name of the Vulnerable Software and Affected Versions** PNotes.NET version 3.8.1.2 **Description** A file upload issue allows a local attacker to execute arbitrary code by uploading a malicious .exe file to the external program. This is related to the Miscellaneous "External Programs" feature. **Recommendations** For PNotes.NET version 3.8.1.2, consider disabling the Miscellaneous "External Programs" feature until a patch is available to prevent exploitation. Restrict access to uploading files to minimize the risk of arbitrary code execution.
PT-2019-14923
4.8
2019-09-30
Ilch · Ilch · CVE-2019-17045
**Name of the Vulnerable Software and Affected Versions** Ilch version 2.1.22 **Description** The issue allows for stored XSS attacks through the title, text, or email id in the Jobs Tab. **Recommendations** For Ilch version 2.1.22, update to a version that fixes this issue, as using the current version may pose a security risk due to the stored XSS vulnerability in the Jobs Tab.