CVE-2024-3787 – Improper Neutralization of Server-Side Includes (SSI) vulnerability in WBSAirback
https://notcve.org/view.php?id=CVE-2024-3787
Exploitation of this vulnerability could allow a remote user to execute arbitrary code. • https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-wbsairback-white-bear-solutions •
CVE-2024-3786 – Improper Neutralization of Server-Side Includes (SSI) vulnerability in WBSAirback
https://notcve.org/view.php?id=CVE-2024-3786
Exploitation of this vulnerability could allow a remote user to execute arbitrary code. • https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-wbsairback-white-bear-solutions • CWE-94: Improper Control of Generation of Code ('Code Injection') •
CVE-2024-3785 – Improper Neutralization of Server-Side Includes (SSI) vulnerability in WBSAirback
https://notcve.org/view.php?id=CVE-2024-3785
Exploitation of this vulnerability could allow a remote user to execute arbitrary code. • https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-wbsairback-white-bear-solutions • CWE-94: Improper Control of Generation of Code ('Code Injection') •
CVE-2024-3784 – Improper Neutralization of Server-Side Includes (SSI) vulnerability in WBSAirback
https://notcve.org/view.php?id=CVE-2024-3784
Exploitation of this vulnerability could allow a remote user to execute arbitrary code. • https://github.com/gsmith257-cyber/CVE-2024-37843-POC https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-wbsairback-white-bear-solutions •
CVE-2020-22540
https://notcve.org/view.php?id=CVE-2020-22540
Stored Cross-Site Scripting (XSS) vulnerability in Codoforum v4.9, allows attackers to execute arbitrary code and obtain sensitive information via crafted payload to Category name component. • https://gist.github.com/s4fv4n/0d7a5093886cf41d9c478166e4aeec64 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •