CVE-2023-28352
https://notcve.org/view.php?id=CVE-2023-28352
An issue was discovered in Faronics Insight 10.0.19045 on Windows. By abusing the Insight UDP broadcast discovery system, an attacker-controlled artificial Student Console can connect to and attack a Teacher Console even after Enhanced Security Mode has been enabled. • https://research.nccgroup.com/2023/05/30/technical-advisory-multiple-vulnerabilities-in-faronics-insight https://research.nccgroup.com/?research=Technical%20advisories • CWE-863: Incorrect Authorization •
CVE-2019-6507
https://notcve.org/view.php?id=CVE-2019-6507
An issue was discovered in creditease-sec insight through 2018-09-11. login_user_delete in srcpm/app/admin/views.py allows CSRF. Se ha descubierto un problema en creditease-sec insight hasta el 11/09/2018. login_user_delete in srcpm/app/admin/views.py permite Cross-Site Request Forgery (CSRF). • https://github.com/creditease-sec/insight/issues/42 • CWE-352: Cross-Site Request Forgery (CSRF) •
CVE-2019-6510
https://notcve.org/view.php?id=CVE-2019-6510
An issue was discovered in creditease-sec insight through 2018-09-11. user_delete in srcpm/app/admin/views.py allows CSRF. Se ha descubierto un problema en creditease-sec insight hasta el 11/09/2018. user_delete en srcpm/app/admin/views.py permite Cross-Site Request Forgery (CSRF). • https://github.com/creditease-sec/insight/issues/42 • CWE-352: Cross-Site Request Forgery (CSRF) •
CVE-2019-6508
https://notcve.org/view.php?id=CVE-2019-6508
An issue was discovered in creditease-sec insight through 2018-09-11. role_perm_delete in srcpm/app/admin/views.py allows CSRF. Se ha descubierto un problema en creditease-sec insight hasta el 11/09/2018. role_perm_delete in srcpm/app/admin/views.py permite Cross-Site Request Forgery (CSRF). • https://github.com/creditease-sec/insight/issues/42 • CWE-352: Cross-Site Request Forgery (CSRF) •
CVE-2019-6509
https://notcve.org/view.php?id=CVE-2019-6509
An issue was discovered in creditease-sec insight through 2018-09-11. depart_delete in srcpm/app/admin/views.py allows CSRF. Se ha descubierto un problema en creditease-sec insight hasta el 11/09/2018. depart_delete in srcpm/app/admin/views.py permite Cross-Site Request Forgery (CSRF). • https://github.com/creditease-sec/insight/issues/42 • CWE-352: Cross-Site Request Forgery (CSRF) •