Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Anil Celik

#16925of 53,632
15.9Total CVSS
Vulnerabilities · 2
High
2
PT-2024-39247
8.7
2024-11-18
Unknown · Tr7 Application Security Platform · CVE-2024-8781
Name of the Vulnerable Software and Affected Versions: TR7 Application Security Platform (ASP) version 1.4.25.188 Description: The issue affects the TR7 Application Security Platform (ASP) due to an Improper Protection of Alternate Path vulnerability, allowing Privilege Escalation and Privilege Abuse. This vulnerability enables Execution with Unnecessary Privileges. Recommendations: For version 1.4.25.188, upgrade to a newer version to avoid exploitation. As a temporary workaround, consider restricting privileges to minimize the risk of escalation.
PT-2023-24472
7.2
2023-09-05
Unisign · Bookreen · CVE-2023-3375
**Name of the Vulnerable Software and Affected Versions** Bookreen versions prior to 3.0.0 **Description** The issue affects Unisign Bookreen, allowing OS Command Injection due to an Unrestricted Upload of File with Dangerous Type vulnerability. **Recommendations** For versions prior to 3.0.0, update to version 3.0.0 or later to resolve the issue. As a temporary workaround, consider restricting file uploads to prevent potential OS Command Injection attacks.