Neowise CarbonFTP version 1.4 suffers from an insecure proprietary password encryption implementation.
860427dfdb6db41fffd3c10a92aede4d5de72be4b33b6d78f1ca5d953c68d971
Debian Linux Security Advisory 4607-1 - Lukas Kupczyk reported a vulnerability in the handling of chunked HTTP in openconnect, an open client for Cisco AnyConnect, Pulse and GlobalProtect VPN. A malicious HTTP server (after having accepted its identity certificate), can provide bogus chunk lengths for chunked HTTP encoding and cause a heap-based buffer overflow.
4f4e3fff7bd0509ce1ac161fec38bfda002f9e838f665c2090308e3d7194c086
Red Hat Security Advisory 2020-0157-01 - The java-1.8.0-openjdk packages provide the OpenJDK 8 Java Runtime Environment and the OpenJDK 8 Java Software Development Kit. Issues addressed include a deserialization vulnerability.
94e76a32128b15f64418c530894e28f446bbca0010ebf899d553b6e54d881679
Red Hat Security Advisory 2020-0161-01 - Red Hat JBoss Enterprise Application Platform 7 is a platform for Java applications based on the WildFly application runtime. This release of Red Hat JBoss Enterprise Application Platform 7.2.6 serves as a replacement for Red Hat JBoss Enterprise Application Platform 7.2.5, and includes bug fixes and enhancements. See the Red Hat JBoss Enterprise Application Platform 7.2.6 Release Notes for information about the most significant bug fixes and enhancements included in this release. Issues addressed include code execution, cross site scripting, and denial of service vulnerabilities.
aa30889066bf31b9a421f766f4614ab8025e18477f56dfda7d412b5d5a041b18
Ubuntu Security Notice 4243-1 - It was discovered that libbsd incorrectly handled certain inputs. An attacker could possibly use this issue to execute arbitrary code. This issue only affected Ubuntu 14.04 ESM. It was discovered that libbsd incorrectly handled certain strings. An attacker could possibly use this issue to access sensitive information.
bb911aacf07b7647e0574edd15c7dce890bc5c0ab1ade39d0ed32f4be453be81
Debian Linux Security Advisory 4606-1 - Several vulnerabilities have been discovered in the chromium web browser.
47a1ffe756710d40abf091af3228ad3cb6d71cef765a379e216217f87b6dd731
Ubuntu Security Notice 4242-1 - It was discovered that Sysstat incorrectly handled certain inputs. An attacker could possibly use this issue to cause a crash or execute arbitrary code. This issue only affected Ubuntu 19.04 and Ubuntu 19.10. It was discovered that Sysstat incorrectly handled certain inputs. An attacker could possibly use this issue to execute arbitrary code. Various other issues were also addressed.
961e6ea3c906486f9f2177fe868edbdb21061f104607aeb6cc13cf36e06718f2
WordPress WP Fanzone theme version 3.1 suffers from a remote SQL injection vulnerability.
d45e3f26a0a71679fc1154d54620182aa1ba5a2df9ee28abfa4827e6d7ec98a6
Maavi is a fuzzing tool that scans for vulnerabilities with obfuscated payloads. Has proxy support, records full history of actions, and has various bells and whistles.
83e2d13d1dfbe16a16867f317e1413371ce7f3ad3f71149f9a2e4f61297de7a3
This Metasploit module exploits an authenticated remote code execution vulnerability in Centreon version 19.04.
510a1c2d96045f19207e2336a64b219e4a23437cb33077b85cd5bbdb429d74d9
Sysax Multi Server version 5.50 suffers from a denial of service vulnerability.
b34b8a7546ee09efdaaa9a53f6f6efd84147a3ee518dbf8b1da21b551b77ac99
Adive Framework version 2.0.8 suffers from a persistent cross site scripting vulnerability.
2837a242d5d13ed7383cbeeaf3d8d4bdf1c538e717a1b875c800a61917ac392a
Easy XML Editor version 1.7.8 suffers from an XML external entity injection vulnerability.
4753d87c7b3d65ef94e40afc90803be61775b1d49de50248e6006eaa9166836d
Red Hat Security Advisory 2020-0160-01 - Red Hat JBoss Enterprise Application Platform 7 is a platform for Java applications based on the WildFly application runtime. This release of Red Hat JBoss Enterprise Application Platform 7.2.6 serves as a replacement for Red Hat JBoss Enterprise Application Platform 7.2.5, and includes bug fixes and enhancements. See the Red Hat JBoss Enterprise Application Platform 7.2.6 Release Notes for information about the most significant bug fixes and enhancements included in this release. Issues addressed include code execution, cross site scripting, and denial of service vulnerabilities.
7fcb80bd6c32646bede08c20476e83f632904133d983186ce809962115845421
Hospital Management System version 4.0 suffers from a persistent cross site scripting vulnerability in add-patient.php. This version is already known to have persistent cross site scripting issues.
0f32b95110569ad08d44eef736c9918db9a85c43b278b2b3015335a5110a8dff