Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Prajyot Chemburkar

Researcher fromPayatu Security Consulting Pvt. Ltd. India
#16953of 53,632
15.9Total CVSS
Vulnerabilities · 2
High
2
PT-2024-2192
7.1
2024-03-04
Unknown · Usb Pratirodh · CVE-2024-1224
**Name of the Vulnerable Software and Affected Versions** USB Pratirodh (affected versions not specified) **Description** This issue is related to the use of a weaker cryptographic algorithm, specifically SHA1, in the user login component. A local attacker with administrative privileges could exploit this to obtain the password of USB Pratirodh on the targeted system. Successful exploitation could allow the attacker to take control of the application and modify access control for registered users or devices. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2024-14995
8.8
2024-01-08
WordPress · Slider Revolution · CVE-2023-6528
**Name of the Vulnerable Software and Affected Versions** Slider Revolution WordPress plugin versions prior to 6.6.19 **Description** The issue allows users with at least the Author role to unserialize arbitrary content when importing sliders, potentially leading to Remote Code Execution. **Recommendations** For versions prior to 6.6.19, update to version 6.6.19 or later to resolve the issue. As a temporary workaround, consider restricting the import slider functionality to users with higher roles than Author until the update is applied.