The "CLink4Service" service is installed with Corsair Link 188.8.131.52 with insecure permissions by default. This allows unprivileged users to take control of the service and execute commands in the context of NT AUTHORITY\SYSTEM, leading to total system takeover, a similar issue to CVE-2018-12441.
View Full Alert
GNUBOARD5 184.108.40.206 has XSS that allows remote attackers to inject arbitrary web script or HTML via the "Menu Link" parameter, aka the adm/menu_list_update.php me_link parameter. View Full Alert
MDaemon Webmail (formerly WorldClient) has CSRF. View Full Alert
LOYTEC LGATE-902 6.3.2 devices allow XSS. View Full Alert