Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Lucien

#17777of 53,630
15.1Total CVSS
Vulnerabilities · 2
Medium
1
High
1
PT-2024-23810
5.8
2024-03-31
Unknown · Youdiancms · CVE-2024-3117
**Name of the Vulnerable Software and Affected Versions** YouDianCMS versions up to 9.5.12 **Description** A critical issue was found in YouDianCMS, affecting the file AppLibActionAdminChannelAction.class.php. The manipulation of the `file` argument leads to unrestricted upload. This issue can be exploited remotely. The exploit has been disclosed publicly. **Recommendations** For versions up to 9.5.12, as a temporary workaround, consider restricting access to the `ChannelAction.class.php` file to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2016-4073
9.3
2013-12-03
Linux · Linux Kernel · CVE-2015-8961
**Name of the Vulnerable Software and Affected Versions** Linux kernel versions prior to 4.3.3 **Description** The issue allows local users to gain privileges or cause a denial of service (use-after-free) by leveraging improper access to a certain error field in the ext4 journal stop function. **Recommendations** For versions prior to 4.3.3, update to version 4.3.3 or later to resolve the issue.