|
371
|
4.8 |
MEDIUM
Network
|
-
|
-
|
ITS Intelligent SCADA System developed by ITP Technology has a Stored Cross-Site Scripting vulnerability, allowing privileged remote attackers to inject persistent JavaScript codes that are executed …
New
|
CWE-79
Cross-site Scripting
|
CVE-2026-10057
|
2026-05-30 00:11 |
2026-05-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
372
|
4.8 |
MEDIUM
Network
|
-
|
-
|
ITS Intelligent SCADA System developed by ITP Technology has a Stored Cross-Site Scripting vulnerability, allowing privileged remote attackers to inject persistent JavaScript codes that are executed …
New
|
CWE-79
Cross-site Scripting
|
CVE-2026-10058
|
2026-05-30 00:11 |
2026-05-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
373
|
9.8 |
CRITICAL
Network
|
-
|
-
|
DreamMaker developed by Interinfo has an Arbitrary File Upload vulnerability, allowing unauthenticated remote attackers to upload and execute web shell backdoors, thereby enabling arbitrary code exec…
New
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2026-10071
|
2026-05-30 00:11 |
2026-05-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
374
|
- |
|
-
|
-
|
RustFS is a distributed object storage system built in Rust. Prior to 1.0.0-beta.2, improper validation in the PUT /rustfs/admin/v3/import-iam endpoint allows a user with ImportIAMAction to create se…
New
|
CWE-269 CWE-284
Improper Privilege Management Improper Access Control
|
CVE-2026-45043
|
2026-05-30 00:11 |
2026-05-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
375
|
7.2 |
HIGH
Network
|
-
|
-
|
DreamMaker developed by Interinfo has an Arbitrary File Upload vulnerability, allowing privileged remote attackers to upload and execute web shell backdoors, thereby enabling arbitrary code execution…
New
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2026-10072
|
2026-05-30 00:11 |
2026-05-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
376
|
7.5 |
HIGH
Network
|
-
|
-
|
DreamMaker developed by Interinfo has an Arbitrary File Read vulnerability, allowing unauthenticated local attackers to exploit Relative Path Traversal to download arbitrary system files.
New
|
CWE-23
Relative Path Traversal
|
CVE-2026-10073
|
2026-05-30 00:11 |
2026-05-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
377
|
4.9 |
MEDIUM
Network
|
-
|
-
|
DreamMaker developed by Interinfo has an Arbitrary File Read vulnerability, allowing privileged local attackers to exploit Relative Path Traversal to download arbitrary system files.
New
|
CWE-23
Relative Path Traversal
|
CVE-2026-10074
|
2026-05-30 00:11 |
2026-05-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
378
|
5.3 |
MEDIUM
Network
|
-
|
-
|
DreamMaker developed by Interinfo has a Path Traversal vulnerability, allowing unauthenticated remote attackers to read file names under arbitrary path by exploiting an Absolute Path Traversal vulner…
New
|
CWE-36
Absolute Path Traversal
|
CVE-2026-10075
|
2026-05-30 00:11 |
2026-05-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
379
|
4.6 |
MEDIUM
Physics
|
-
|
-
|
Expected behavior violation in the in-vehicle network of the Indian Motorcycle Scout Bobber + Tech 2025 model year allows an adjacent-network attacker to bypass the motorcycle's anti-theft shutdown b…
New
|
CWE-440 CWE-693 CWE-754
Expected Behavior Violation Protection Mechanism Failure Improper Check for Unusual or Exceptional Conditions
|
CVE-2026-49316
|
2026-05-30 00:11 |
2026-05-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
380
|
2.4 |
LOW
Physics
|
-
|
-
|
Incorrect behavior order in the Infotainment / Digital Round display of the Indian Motorcycle Scout Bobber + Tech 2025 model year allows an adjacent-network attacker to bypass the PIN entry screen. T…
New
|
CWE-636 CWE-696 CWE-754
Not Failing Securely ('Failing Open') Incorrect Behavior Order Improper Check for Unusual or Exceptional Conditions
|
CVE-2026-49317
|
2026-05-30 00:11 |
2026-05-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|