by admin | Nov 3, 2025
The crypt function in QNX uses weak encryption, which allows local users to decrypt passwords.
by admin | Nov 3, 2025
Infonautics getdoc.cgi allows remote attackers to bypass the payment phase for accessing documents via a modified form variable.
by admin | Nov 3, 2025
The BizDB CGI script bizdb-search.cgi allows remote attackers to execute arbitrary commands via shell metacharacters in the dbname parameter.
by admin | Nov 3, 2025
The default installation of IRIX Performance Copilot allows remote attackers to access sensitive system information via the pmcd daemon.
by admin | Nov 3, 2025
TalentSoft webpsvr daemon in the Web+ shopping cart application allows remote attackers to read arbitrary files via a .. (dot dot) attack on the webplus CGI program.