Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Mayuresh Dani

Researcher fromQualys
#19929of 53,635
13Total CVSS
Vulnerabilities · 2
Medium
1
High
1
PT-2026-25816
8.7
2026-03-16
Zwickroell Gmbh & Co. Kg · Test Data Management · CVE-2026-29522
**Name of the Vulnerable Software and Affected Versions** ZwickRoell Test Data Management versions prior to 3.0.8 **Description** The software contains a local file inclusion issue in the `/server/node upgrade srv.js` endpoint. An attacker can provide directory traversal sequences through the `firmware` parameter to access arbitrary files on the server, potentially disclosing sensitive system files. **Recommendations** Update to version 3.0.8 or later.
PT-2014-6068
4.3
2014-07-29
Zerocms · Zerocms · CVE-2014-4710
**Name of the Vulnerable Software and Affected Versions** ZeroCMS version 1.0 **Description** A cross-site scripting (XSS) issue exists, allowing remote attackers to inject arbitrary web script or HTML via the `Full Name` field in the zero user account.php file. This could potentially lead to unauthorized actions on the affected system. **Recommendations** For ZeroCMS version 1.0, update the zero user account.php file to properly sanitize user input in the `Full Name` field to prevent XSS attacks.