ahmedalroky/Disclosures

ahmedalroky/Disclosures

Releases0
Stars14

CVE History

CVEPublishedCVSS v3CVSS v2
7.2 HIGH

Altenergy Power Control Software C1.2.5 was discovered to contain a remote code execution (RCE) vulnerability via the component /models/management_model.php.

9.8 CRITICAL

OS command injection affects Altenergy Power Control Software C1.2.5 via shell metacharacters in the index.php/management/set_timezone timezone parameter, because of set_timezone in models/management_model.php.

7.5 HIGH

Cellinx NVT v1.0.6.002b was discovered to contain a local file disclosure vulnerability via the component /cgi-bin/GetFileContent.cgi.