Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
CRITICAL 9.8
CVE-2023-39422
The /irmdata/api/ endpoints exposed by the IRM Next Generation booking engine authenticates requests using HMAC tokens. These tokens are however expo…
Internet Reservation Module Next Generation
Mitigation only
CRITICAL 9.1
CVE-2023-39423
The RDPData.dll file exposes the /irmdata/api/common endpoint that handles session IDs, among other features. By using a UNION SQL operator, an atta…
Internet Reservation Module Next Generation
Mitigation only
HIGH 8.8
CVE-2023-39420
The RDPCore.dll component as used in the IRM Next Generation booking engine, allows a remote user to connect to customers with an "admin" account and…
Internet Reservation Module Next Generation
Mitigation only
HIGH 8.8
CVE-2023-39424
A vulnerability in RDPngFileUpload.dll, as used in the IRM Next Generation booking system, allows a remote attacker to upload arbitrary content (such…
Internet Reservation Module Next Generation
Mitigation only
HIGH 7.7
CVE-2023-39421
The RDPWin.dll component as used in the IRM Next Generation booking engine includes a set of hardcoded API keys for third-party services such as Twil…
Internet Reservation Module Next Generation
Mitigation only