A vulnerability, which was classified as problematic, has been found in Zotonic up to 0.46. Affected by this issue is some unknown functionality of the component mod_admin. The manipulation leads to cross site scripting.
This vulnerability is handled as CVE-2019-11504. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Zoho ManageEngine ServiceDesk Plus 9.3. It has been rated as problematic. Affected by this issue is some unknown functionality of the file SearchN.do. The manipulation of the argument Search leads to cross site scripting.
This vulnerability is handled as CVE-2019-12189. The attack may be launched remotely. Furthermore, there is an exploit available.
A vulnerability classified as critical was found in Zoho ManageEngine ServiceDesk Plus up to 10.5. This vulnerability affects unknown code of the file SDNotify.do?notifyModule=Solution&mode=E-Mail¬ifyTo=SOLFORWARD&id. The manipulation as part of String leads to improper access controls.
This vulnerability was named CVE-2019-12252. The attack can be initiated remotely. Furthermore, there is an exploit available.
A vulnerability, which was classified as critical, has been found in NAPC Xinet Elegant 6 Asset Library 6.1.655. This issue affects some unknown processing. The manipulation leads to sql injection.
The identification of this vulnerability is CVE-2019-19245. The attack may be initiated remotely. Furthermore, there is an exploit available.
A vulnerability classified as critical was found in Mansion Productions Member Area System 1.7. Affected by this vulnerability is an unknown functionality of the file view_func.php. The manipulation leads to code injection.
This vulnerability is known as CVE-2008-0289. The attack can be launched remotely. Furthermore, there is an exploit available.
The real existence of this vulnerability is still doubted at the moment.
A vulnerability, which was classified as problematic, was found in MRBS 1.2.6. Affected is an unknown function of the file day.php. The manipulation of the argument area leads to cross site scripting.
This vulnerability is traded as CVE-2008-3565. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
A vulnerability was found in Meet#Web 0.8. It has been declared as critical. This vulnerability affects unknown code of the file modules.php. The manipulation of the argument root_path leads to code injection.
This vulnerability was named CVE-2008-6066. The attack can be initiated remotely. Furthermore, there is an exploit available.