Show filters
61 Total Results
Displaying 21-30 of 61
Sort by:
Attacker Value
Unknown
CVE-2023-25793
Disclosure Date: April 25, 2023 (last updated October 08, 2023)
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in George Pattihis Link Juice Keeper plugin <= 2.0.2 versions.
0
Attacker Value
Unknown
CVE-2023-24055
Disclosure Date: January 22, 2023 (last updated November 08, 2023)
KeePass through 2.53 (in a default installation) allows an attacker, who has write access to the XML configuration file, to obtain the cleartext passwords by adding an export trigger. NOTE: the vendor's position is that the password database is not intended to be secure against an attacker who has that level of access to the local PC.
0
Attacker Value
Unknown
CVE-2022-43143
Disclosure Date: November 21, 2022 (last updated February 24, 2025)
A cross-site scripting (XSS) vulnerability in Beekeeper Studio v3.6.6 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the error modal container.
0
Attacker Value
Unknown
CVE-2022-30877
Disclosure Date: June 08, 2022 (last updated February 23, 2025)
The keep for python, as distributed on PyPI, included a code-execution backdoor inserted by a third party. The current version, without this backdoor, is 1.2.
0
Attacker Value
Unknown
CVE-2022-30899
Disclosure Date: June 08, 2022 (last updated February 23, 2025)
A Cross Site Scripting vulnerabilty exists in PartKeepr 1.4.0 via the 'name' field in /api/part_categories.
0
Attacker Value
Unknown
CVE-2022-30330
Disclosure Date: May 07, 2022 (last updated February 23, 2025)
In the KeepKey firmware before 7.3.2,Flaws in the supervisor interface can be exploited to bypass important security restrictions on firmware operations. Using these flaws, malicious firmware code can elevate privileges, permanently make the device inoperable or overwrite the trusted bootloader code to compromise the hardware wallet across reboots or storage wipes.
0
Attacker Value
Unknown
CVE-2021-39390
Disclosure Date: May 03, 2022 (last updated February 23, 2025)
Stored XSS in PartKeepr 1.4.0 Edit section in multiple api endpoints via name parameter.
0
Attacker Value
Unknown
CVE-2022-26174
Disclosure Date: March 21, 2022 (last updated February 23, 2025)
A remote code execution (RCE) vulnerability in Beekeeper Studio v3.2.0 allows attackers to execute arbitrary code via a crafted payload injected into the display fields.
0
Attacker Value
Unknown
CVE-2022-0725
Disclosure Date: March 10, 2022 (last updated February 23, 2025)
A flaw was found in keepass. The vulnerability occurs due to logging the plain text passwords in system log and leads to an Information Exposure vulnerability. This flaw allows an attacker to interact and read sensitive passwords and logs.
0
Attacker Value
Unknown
CVE-2022-23377
Disclosure Date: March 01, 2022 (last updated February 23, 2025)
Archeevo below 5.0 is affected by local file inclusion through file=~/web.config to allow an attacker to retrieve local files.
0