Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Yoshik0Xf6

#21262of 53,632
11.6Total CVSS
Vulnerabilities · 2
Medium
2
PT-2025-17858
6.5
2025-04-24
Itc Systems · Itc Systems Multiplan/Matrix Onecard · CVE-2025-29529
**Name of the Vulnerable Software and Affected Versions** ITC Systems Multiplan/Matrix OneCard platform version 3.7.4.1002 **Description** The issue is related to a SQL injection vulnerability. It affects the Forgotpassword.aspx component. **Recommendations** For version 3.7.4.1002, consider restricting access to the Forgotpassword.aspx component until a patch is available. Avoid using the Forgotpassword.aspx component to minimize the risk of exploitation.
PT-2025-9526
5.1
2025-03-03
Tikit · Tikit · CVE-2023-49031
**Name of the Vulnerable Software and Affected Versions** Tikit (now Advanced) eMarketing platform version 6.8.3.0 **Description** A Directory Traversal (Local File Inclusion) issue allows a remote attacker to read arbitrary files and obtain sensitive information. This is achieved by sending a crafted payload to the `OpenLogFile` endpoint, specifically targeting the `filename` parameter. **Recommendations** For version 6.8.3.0, as a temporary workaround, consider restricting access to the `OpenLogFile` endpoint until a patch is available. Avoid using the `filename` parameter in the affected endpoint until the issue is resolved.