Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Pedro

#16887of 53,622
15.9Total CVSS
Vulnerabilities · 2
Medium
1
Critical
1
PT-2023-25521
6.1
2023-08-08
Adiscon · Loganalyzer · CVE-2023-36306
**Name of the Vulnerable Software and Affected Versions** Adiscon LogAnalyzer versions through 4.1.13 **Description** A Cross Site Scripting (XSS) issue allows a remote attacker to execute arbitrary code via the "asktheoracle.php", "details.php", "index.php", "search.php", "export.php", "reports.php", and "statistics.php" components. **Recommendations** For versions through 4.1.13, consider disabling access to the affected components, such as "asktheoracle.php", "details.php", "index.php", "search.php", "export.php", "reports.php", and "statistics.php", until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2023-24942
9.8
2023-06-20
Adiscon · Adiscon Loganalyzer · CVE-2023-34600
**Name of the Vulnerable Software and Affected Versions** Adiscon LogAnalyzer versions 4.1.13 and earlier **Description** The issue is related to SQL Injection. There is no information provided about the estimated number of potentially affected devices worldwide or real-world incidents where this issue was exploited. **Recommendations** For versions 4.1.13 and earlier, at the moment, there is no information about a newer version that contains a fix for this vulnerability.