Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Enes Özeser

#14344of 53,635
18.8Total CVSS
Vulnerabilities · 2
High
1
Critical
1
PT-2020-15602
9.8
2020-08-20
Phpgurukul · Phpgurukul Vehicle Parking Management System · CVE-2020-23936
**Name of the Vulnerable Software and Affected Versions** PHPGurukul Vehicle Parking Management System version 1.0 **Description** The issue allows for authentication bypass. An attacker can exploit this by using a specific combination of `username` and `password`, such as 'admin'# for the `username` and any value for the `password`. **Recommendations** For PHPGurukul Vehicle Parking Management System version 1.0, as a temporary workaround, consider restricting access to the login functionality until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2020-15600
9.0
2020-08-18
Ritecms · Ritecms · CVE-2020-23934
**Name of the Vulnerable Software and Affected Versions** RiteCMS version 2.2.1 **Description** An issue allows an authenticated user to execute system commands by uploading a php web shell in the "Filemanager" section. **Recommendations** For RiteCMS version 2.2.1, consider restricting access to the "Filemanager" section to prevent unauthorized uploads until a patch is available. As a temporary workaround, monitor system commands and file uploads closely to detect potential malicious activity. At the moment, there is no information about a newer version that contains a fix for this vulnerability.