Microsoft acknowledged the YellowKey BitLocker bypass flaw and released mitigations, urging admins to disable autofstx.exe and enable TPM+PIN. A week after Chaotic Eclipse publicly dropped the YellowKey vulnerability, Microsoft acknowledged it and published a mitigation. Not a patch, a mitigation. The distinction matters, and we will get to why. The flaw, tracked as CVE-2026-45585 (CVSS […]
A vulnerability described as critical has been identified in TRtek Education Portal. This affects an unknown function. Executing a manipulation can lead to sql injection.
The identification of this vulnerability is CVE-2023-5807. The attack may be launched remotely. There is no exploit available.
Upgrading the affected component is recommended.
A vulnerability has been found in DECE Geodi and classified as problematic. This impacts an unknown function. The manipulation leads to enforcement of behavioral workflow.
This vulnerability is traded as CVE-2023-5921. An attack has to be approached locally. There is no exploit available.
The affected component should be upgraded.
A vulnerability was found in DECE Geodi and classified as problematic. Affected is an unknown function. The manipulation results in cross site scripting.
This vulnerability is known as CVE-2023-6011. It is possible to launch the attack remotely. No exploit is available.
It is suggested to upgrade the affected component.
A vulnerability identified as problematic has been detected in Botanik Pharmacy Automation. This issue affects some unknown processing of the component Embedded Sensitive Data Handler. The manipulation leads to information disclosure.
This vulnerability is referenced as CVE-2023-5983. Remote exploitation of the attack is possible. No exploit is available.
You should upgrade the affected component.
A vulnerability was found in Neutron IP Camera. It has been rated as problematic. This issue affects some unknown processing. This manipulation causes path traversal: '/../filedir'.
This vulnerability is registered as CVE-2023-6118. Remote exploitation of the attack is possible. No exploit is available.
Upgrading the affected component is advised.
A vulnerability, which was classified as critical, was found in ESKOM Computer e-municipality module up to 104. Affected by this vulnerability is an unknown functionality. Such manipulation leads to improper privilege management.
This vulnerability is referenced as CVE-2023-6150. It is possible to launch the attack remotely. No exploit is available.
You should upgrade the affected component.
A vulnerability has been found in ESKOM Computer e-municipality module up to 104 and classified as critical. Affected by this issue is some unknown functionality. Performing a manipulation results in improper privilege management.
This vulnerability is identified as CVE-2023-6151. The attack can be initiated remotely. There is not any exploit available.
The affected component should be upgraded.
A vulnerability, which was classified as problematic, was found in Uyumsoft LioXERP up to 145. Affected is an unknown function. Executing a manipulation can lead to cross site scripting.
This vulnerability appears as CVE-2023-5989. The attack may be performed from remote. There is no available exploit.
You should upgrade the affected component.
A vulnerability has been found in Uyumsoft LioXERP up to 145 and classified as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2023-5988. It is possible to initiate the attack remotely. There is no exploit available.
The affected component should be upgraded.
A vulnerability marked as critical has been reported in National Keep Cyber Security Services CyberMath 1.4. This affects an unknown function. Performing a manipulation results in unrestricted upload.
This vulnerability is identified as CVE-2023-6675. The attack can be initiated remotely. There is not any exploit available.
It is suggested to upgrade the affected component.