Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Ahmad Ashraff

Researcher fromBastion Security Group
#21656of 56,330
12.7Total CVSS
Vulnerabilities · 2
Medium
1
High
1
PT-2024-18655
8.4
2024-05-15
Cisco · Cisco Crosswork Nso Cli · CVE-2024-20383
**Name of the Vulnerable Software and Affected Versions** Cisco Crosswork NSO CLI and ConfD CLI (affected versions not specified) **Description** A vulnerability could allow an authenticated, low-privileged, local attacker to elevate privileges to root on the underlying operating system. The issue is due to an incorrect privilege assignment when specific CLI commands are used. An attacker could exploit this by executing an affected CLI command, potentially allowing them to elevate privileges to root on the underlying operating system. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2019-6847
4.3
2019-11-07
Catalyst It · Mahara · CVE-2013-1426
**Name of the Vulnerable Software and Affected Versions** Mahara versions prior to 1.5.9 Mahara versions 1.6.x prior to 1.6.4 **Description** The issue allows remote attackers to inject arbitrary web script or HTML via the TinyMCE editor. This is a Cross-site Scripting (XSS) issue. **Recommendations** For Mahara versions prior to 1.5.9, update to version 1.5.9 or later. For Mahara versions 1.6.x prior to 1.6.4, update to version 1.6.4 or later.