Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Err0R0X41414141

Researcher fromNF_Security
#18504of 53,633
14.6Total CVSS
Vulnerabilities · 2
Medium
1
Critical
1
PT-2022-25869
9.1
2022-10-14
Unknown · Oxhoo Tp50 Oxh1.50 · CVE-2022-41436
**Name of the Vulnerable Software and Affected Versions** OXHOO TP50 OXH1.50 **Description** An issue allows unauthenticated attackers to access the administrative panel via browsing to the URL "http://device ip/index1.html". **Recommendations** For OXHOO TP50 OXH1.50, as a temporary workaround, consider restricting access to the "http://device ip/index1.html" endpoint until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2022-15728
5.5
2022-02-26
Sangfor · Sangfor Vdi Client · CVE-2022-22908
**Name of the Vulnerable Software and Affected Versions** Sangfor VDI Client version 5.4.2.1006 **Description** The issue allows attackers to discover the contents of the `Username` and `Password` fields when they are able to read process memory. This occurs due to a problem in the SangforCSClient.exe component of the Sangfor VDI Client. **Recommendations** For Sangfor VDI Client version 5.4.2.1006, consider implementing additional security measures to protect process memory, such as restricting access to sensitive data or using encryption to secure the `Username` and `Password` fields. At the moment, there is no information about a newer version that contains a fix for this vulnerability.