Panorays Debuts With $5 Million Investment

Enterprise Vulnerabilities
From DHS/US-CERT’s National Vulnerability Database CVE-2018-12114
PUBLISHED: 2018-06-14

Maccms 10 allows CSRF via admin.php/admin/admin/info.html to add user accounts.

CVE-2018-10821
PUBLISHED: 2018-06-14

Cross-site scripting (XSS) vulnerability in backend/pages/modify.php in BlackCatCMS 1.3 allows remote authenticated users with the Admin role to inject arbitrary web script or HTML via the search panel.

CVE-2018-12418
PUBLISHED: 2018-06-14

Archive.java in Junrar before 1.0.1, as used in Apache Tika and other products, is affected by a denial of service vulnerability due to an infinite loop when handling corrupt RAR files.

CVE-2018-4833
PUBLISHED: 2018-06-14

A vulnerability has been identified in RFID 181-EIP (All versions), RUGGEDCOM WiMAX (V4.4 and V4.5), SCALANCE X-200 (All versions < V5.2.3), SCALANCE X-200 IRT (All versions < V5.4.1), SCALANCE X-204RNA (All versions), SCALANCE X-300 (All versions), SCALANCE X408 (All versions), SCALANCE X414 …

CVE-2018-4842
PUBLISHED: 2018-06-14

A vulnerability has been identified in SCALANCE X-200 IRT (All versions < V5.4.1), SCALANCE X300 (All versions). A remote, authenticated attacker with access to the configuration web server could be able to store script code on the web site, if the HRP redundancy option is set. This code could be…

Read More HERE

Leave a Reply