Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Rootlili

#20726of 53,622
12.2Total CVSS
Vulnerabilities · 2
Medium
1
High
1
PT-2024-23661
4.7
2024-04-25
Ed01-Cms · Ed01-Cms · CVE-2024-30890
**Name of the Vulnerable Software and Affected Versions** ED01-CMS version 1.0 **Description** The issue allows an attacker to obtain sensitive information via the categories.php component. This is due to a Cross Site Scripting vulnerability. **Recommendations** For ED01-CMS version 1.0, consider restricting access to the categories.php component until a fix is available. As a temporary workaround, avoid using the categories.php component to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2024-24533
7.5
2024-04-25
Jpress · Jpress · CVE-2024-32358
**Name of the Vulnerable Software and Affected Versions** Jpress version 5.1.0 **Description** An issue in the custom plug-in module function allows a remote attacker to execute arbitrary code via a crafted script. This is a distinct issue from other known vulnerabilities. **Recommendations** For Jpress version 5.1.0, consider disabling the custom plug-in module function as a temporary workaround until a patch is available. Restrict access to this function to minimize the risk of exploitation.