CVE-2024-7105
Jue, 25/07/2024 – 21:15
CVE-2024-7105
CVE-2024-7105
Jue, 25/07/2024 – 21:15
CVE-2024-7105
CVE-2024-41809
Jue, 25/07/2024 – 21:15
CVE-2024-41809
CVE-2024-7106
Jue, 25/07/2024 – 21:15
CVE-2024-7106
CVE-2024-24623
Jue, 25/07/2024 – 22:15
CVE-2024-24623
CVE-2024-24622
Jue, 25/07/2024 – 22:15
CVE-2024-24622
CVE-2024-24621
Jue, 25/07/2024 – 22:15
CVE-2024-24621
CVE-2024-3938
Jue, 25/07/2024 – 22:15
CVE-2024-3938
This has already been rectified via patch, and as such it cannot be demonstrated via Demo site link. Those interested to see the vulnerability may spin up a http://localhost:8082/dotAdmin/#/public/login?resetEmailSent=true&resetEmail=%3Ch1%3E%3Ca%20href%3D%22https:%2F%2Fgoogle.com%22%3ECLICK%20ME%3C%2Fa%3E%3C%2Fh1%3E
This will result in a view along these lines:
* OWASP Top 10 – A03: Injection
* CVSS Score: 5.4
* AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N https://nvd.nist.gov/vuln-metrics/cvss/v3-calculator
* https://nvd.nist.gov/vuln-metrics/cvss/v3-calculator?vector=AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N&… https://nvd.nist.gov/vuln-metrics/cvss/v3-calculator
CVE-2024-38103
Jue, 25/07/2024 – 22:15
CVE-2024-38103
CVE-2024-41473
Jue, 25/07/2024 – 22:15
CVE-2024-41473
CVE-2024-41468
Jue, 25/07/2024 – 22:15
CVE-2024-41468