Vulnerabilities (Page 5)

ASUS GT-AC2900 Authentication Bypass [CVE-2021-32030]

web

The device administration web-app fails to properly validate the session cookie allowing for an unauthorized attacker to gain access.The issue depends on the internal ifttt_token not being set (default)…

 

WordPress 5.7 XXE Vulnerability

web

This one is just a silly issue.On PHP versions under 8 libxml_disable_entity_loader(true) is called to disable external entities…

 
1
2
3
4
5
6
7