Lexiglot through 2014-11-20 allows local users to obtain sensitive information by listing a process because the username and password are on the command line.
Published at: June 01, 2020 at 01:15PM
View on website
Lexiglot through 2014-11-20 allows local users to obtain sensitive information by listing a process because the username and password are on the command line.
Published at: June 01, 2020 at 01:15PM
View on website
Lexiglot through 2014-11-20 allows remote attackers to obtain sensitive information (full path) via an include/smarty/plugins/modifier.date_format.php request if PHP has a non-recommended configuration that produces warning messages.
Published at: June 01, 2020 at 01:15PM
View on website
Lexiglot through 2014-11-20 allows remote attackers to obtain sensitive information (names and details of projects) by visiting the /update.log URI.
Published at: June 01, 2020 at 01:15PM
View on website
Lexiglot through 2014-11-20 allows SQL injection via an admin.php?page=users&from_id= or admin.php?page=history&limit= URI.
Published at: June 01, 2020 at 01:15PM
View on website
Lexiglot through 2014-11-20 allows CSRF.
Published at: June 01, 2020 at 01:15PM
View on website