German authorities have shut down a relaunch version of the criminal marketplace 'Crimenetwork' that generated more than 3.6 million euros, and arrested its operator. [...]
A vulnerability classified as problematic has been found in OpenCart 3.0.3.6. Impacted is an unknown function of the file /account/edit of the component Account Information Handler. The manipulation leads to cross-site request forgery.
This vulnerability is listed as CVE-2021-47946. The attack may be initiated remotely. In addition, an exploit is available.
A vulnerability described as problematic has been identified in Getaawp AAWP Plugin 3.16 on WordPress. This issue affects some unknown processing of the component Setting Handler. Executing a manipulation of the argument tab can lead to cross site scripting.
This vulnerability is tracked as CVE-2022-50970. The attack can be launched remotely. Moreover, an exploit is present.
A vulnerability marked as problematic has been reported in Argus Surveillance DVR 4.0. This vulnerability affects unknown code of the component DVRWatchdog Service. Performing a manipulation results in unquoted search path.
This vulnerability is identified as CVE-2021-47945. The attack is only possible with local access. Additionally, an exploit exists.
A vulnerability labeled as problematic has been found in uBidAuction 2.0.1. This affects the function filter of the file auctions/manage of the component GET Handler. Such manipulation of the argument date_created/date_from/date_to/created_at leads to cross site scripting.
This vulnerability is referenced as CVE-2022-50968. It is possible to launch the attack remotely. Furthermore, an exploit is available.
A vulnerability identified as problematic has been detected in uBidAuction 2.0.1. Affected by this issue is the function filter of the file backend/mailingLog/manage of the component GET Handler. This manipulation of the argument date_created/date_from/date_to/created_at causes cross site scripting.
The identification of this vulnerability is CVE-2022-50969. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
A vulnerability categorized as problematic has been discovered in uBidAuction 2.0.1. Affected by this vulnerability is the function filter of the file tickets/manage of the component GET Handler. The manipulation of the argument date_created/date_from/date_to/created_at results in cross site scripting.
This vulnerability was named CVE-2022-50967. The attack may be performed from remote. In addition, an exploit is available.
A vulnerability was found in uBidAuction 2.0.1. It has been rated as problematic. Affected is the function filter of the file news/manage of the component GET Handler. The manipulation of the argument date_created/date_from/date_to/created_at leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2022-50966. The attack is possible to be carried out remotely. Moreover, an exploit is present.
A vulnerability was found in uBidAuction 2.0.1. It has been declared as problematic. This impacts the function filter of the component GET Handler. Executing a manipulation of the argument date_created/date_from/date_to/created_at can lead to cross site scripting.
This vulnerability is handled as CVE-2022-50965. The attack can be executed remotely. Additionally, an exploit exists.
A vulnerability was found in uBidAuction 2.0.1. It has been classified as problematic. This affects the function filter of the file auctions/myAuctions/status/loose of the component GET Handler. Performing a manipulation of the argument date_created/date_from/date_to/created_at results in cross site scripting.
This vulnerability is known as CVE-2022-50964. Remote exploitation of the attack is possible. Furthermore, an exploit is available.
A vulnerability was found in uBidAuction 2.0.1 and classified as problematic. The impacted element is the function filter of the file auctions/myAuctions/status/active of the component GET Handler. Such manipulation of the argument date_created/date_from/date_to/created_at leads to cross site scripting.
This vulnerability is traded as CVE-2022-50963. The attack may be launched remotely. Furthermore, there is an exploit available.