ARPSyndicate - Cyber & Open Source Intelligence
463 subscribers
31 photos
1 video
1 file
4.61K links
A Global Cyber Intelligence Company with hyperspecialization in Information Discovery, Shadow IT & Vulnerability Intelligence.

A.R.P. Syndicate [https://arpsyndicate.io/pricing.html]
Download Telegram
#ExploitObserverAlert

PD/http/cves/2023/CVE-2023-34020

DESCRIPTION: Exploit Observer has 2 entries related to PD/http/cves/2023/CVE-2023-34020.
#ExploitObserverAlert

CVE-2023-26256

DESCRIPTION: Exploit Observer has 7 entries related to CVE-2023-26256. An unauthenticated path traversal vulnerability affects the "STAGIL Navigation for Jira - Menu
#ExploitObserverAlert

CVE-2023-28782

DESCRIPTION: Exploit Observer has 1 entries related to CVE-2023-28782. Deserialization of Untrusted Data vulnerability in Rocketgenius Inc. Gravity Forms.This issue affects Gravity Forms: from n/a through 2.7.3.
#ExploitObserverAlert

PD/http/cves/2023/CVE-2023-6038

DESCRIPTION: Exploit Observer has 1 entries related to PD/http/cves/2023/CVE-2023-6038. An attacker is able to read any file on the server hosting the H2O dashboard without any authentication.
#ExploitObserverAlert

CVE-2021-27852

DESCRIPTION: Exploit Observer has 2 entries related to CVE-2021-27852. Deserialization of Untrusted Data vulnerability in CheckboxWeb.dll of Checkbox Survey allows an unauthenticated remote attacker to execute arbitrary code. This issue affects: Checkbox Survey versions prior to 7.

FIRST-EPSS: 0.011740000
NVD-IS: 5.9
NVD-ES: 3.9
#ExploitObserverAlert

CVE-2022-20821

DESCRIPTION: Exploit Observer has 3 entries related to CVE-2022-20821. A vulnerability in the health check RPM of Cisco IOS XR Software could allow an unauthenticated, remote attacker to access the Redis instance that is running within the NOSi container. This vulnerability exists because the health check RPM opens TCP port 6379 by default upon activation. An attacker could exploit this vulnerability by connecting to the Redis instance on the open port. A successful exploit could allow the attacker to write to the Redis in-memory database, write arbitrary files to the container filesystem, and retrieve information about the Redis database. Given the configuration of the sandboxed container that the Redis instance runs in, a remote attacker would be unable to execute remote code or abuse the integrity of the Cisco IOS XR Software host system.

FIRST-EPSS: 0.003670000
NVD-IS: 2.5
NVD-ES: 3.9
#ExploitObserverAlert

CVE-2023-41892

DESCRIPTION: Exploit Observer has 9 entries related to CVE-2023-41892. Craft CMS is a platform for creating digital experiences. This is a high-impact, low-complexity attack vector. Users running Craft installations before 4.4.15 are encouraged to update to at least that version to mitigate the issue. This issue has been fixed in Craft CMS 4.4.15.

FIRST-EPSS: 0.206280000
NVD-IS: 5.9
NVD-ES: 3.9
#ExploitObserverAlert

CVE-2023-42917

DESCRIPTION: Exploit Observer has 3 entries related to CVE-2023-42917. A memory corruption vulnerability was addressed with improved locking. This issue is fixed in iOS 17.1.2 and iPadOS 17.1.2, macOS Sonoma 14.1.2, Safari 17.1.2. Processing web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been exploited against versions of iOS before iOS 16.7.1.

FIRST-EPSS: 0.001370000
NVD-IS: 5.9
NVD-ES: 2.8
#ExploitObserverAlert

CVE-2023-41265

DESCRIPTION: Exploit Observer has 7 entries related to CVE-2023-41265. An HTTP Request Tunneling vulnerability found in Qlik Sense Enterprise for Windows for versions May 2023 Patch 3 and earlier, February 2023 Patch 7 and earlier, November 2022 Patch 10 and earlier, and August 2022 Patch 12 and earlier allows a remote attacker to elevate their privilege by tunneling HTTP requests in the raw HTTP request. This allows them to send requests that get executed by the backend server hosting the repository application. This is fixed in August 2023 IR, May 2023 Patch 4, February 2023 Patch 8, November 2022 Patch 11, and August 2022 Patch 13.

FIRST-EPSS: 0.810490000
NVD-IS: 6.0
NVD-ES: 3.1
#ExploitObserverAlert

CVE-2023-2728

DESCRIPTION: Exploit Observer has 1 entries related to CVE-2023-2728. Users may be able to launch containers that bypass the mountable secrets policy enforced by the ServiceAccount admission plugin when using ephemeral containers. The policy ensures pods running with a service account may only reference secrets specified in the service account’s secrets field. Kubernetes clusters are only affected if the ServiceAccount admission plugin and the `kubernetes.io/enforce-mountable-secrets` annotation are used together with ephemeral containers.

FIRST-EPSS: 0.000660000
NVD-IS: 5.2
NVD-ES: 1.2
#ExploitObserverAlert

CVE-2022-3172

DESCRIPTION: Exploit Observer has 4 entries related to CVE-2022-3172. A security issue was discovered in kube-apiserver that allows an aggregated API server to redirect client traffic to any URL. This could lead to the client performing unexpected actions as well as forwarding the client's API server credentials to third parties.

FIRST-EPSS: 0.000870000
NVD-IS: 4.7
NVD-ES: 2.8
#ExploitObserverAlert

CVE-2023-33106

DESCRIPTION: Exploit Observer has 1 entries related to CVE-2023-33106. Memory corruption while submitting a large list of sync points in an AUX command to the IOCTL_KGSL_GPU_AUX_COMMAND.

FIRST-EPSS: 0.000640000
NVD-IS: 5.9
NVD-ES: 1.8
#ExploitObserverAlert

CVE-2023-33107

DESCRIPTION: Exploit Observer has 1 entries related to CVE-2023-33107. Memory corruption in Graphics Linux while assigning shared virtual memory region during IOCTL call.

FIRST-EPSS: 0.000640000
NVD-IS: 5.9
NVD-ES: 1.8
#ExploitObserverAlert

CVE-2015-4068

DESCRIPTION: Exploit Observer has 5 entries related to CVE-2015-4068. Directory traversal vulnerability in Arcserve UDP before 5.0 Update 4 allows remote attackers to obtain sensitive information or cause a denial of service via a crafted file path to the (1) reportFileServlet or (2) exportServlet servlet.

FIRST-EPSS: 0.974010000
NVD-IS: 9.2
NVD-ES: 10.0
#ExploitObserverAlert

CVE-2000-1094

DESCRIPTION: Exploit Observer has 7 entries related to CVE-2000-1094. Buffer overflow in AOL Instant Messenger (AIM) before 4.3.2229 allows remote attackers to execute arbitrary commands via a "buddyicon" command with a long "src" argument.

FIRST-EPSS: 0.027150000
NVD-IS: 6.4
NVD-ES: 10.0
#ExploitObserverAlert

CVE-2023-39785

DESCRIPTION: Exploit Observer has 1 entries related to CVE-2023-39785. Tenda AC8V4 V16.03.34.06 was discovered to contain a stack overflow via the list parameter in the set_qosMib_list function.

FIRST-EPSS: 0.000460000
NVD-IS: 3.6
NVD-ES: 3.9
#ExploitObserverAlert

CVE-2019-10232

DESCRIPTION: Exploit Observer has 8 entries related to CVE-2019-10232. Teclib GLPI through 9.3.3 has SQL injection via the "cycle" parameter in /scripts/unlock_tasks.php.

FIRST-EPSS: 0.142290000
NVD-IS: 5.9
NVD-ES: 3.9
#ExploitObserverAlert

CVE-2023-41266

DESCRIPTION: Exploit Observer has 7 entries related to CVE-2023-41266. A path traversal vulnerability found in Qlik Sense Enterprise for Windows for versions May 2023 Patch 3 and earlier, February 2023 Patch 7 and earlier, November 2022 Patch 10 and earlier, and August 2022 Patch 12 and earlier allows an unauthenticated remote attacker to generate an anonymous session. This allows them to transmit HTTP requests to unauthorized endpoints. This is fixed in August 2023 IR, May 2023 Patch 4, February 2023 Patch 8, November 2022 Patch 11, and August 2022 Patch 13.

FIRST-EPSS: 0.526000000
NVD-IS: 2.5
NVD-ES: 3.9
#ExploitObserverAlert

CVE-2023-42916

DESCRIPTION: Exploit Observer has 1 entries related to CVE-2023-42916. An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 17.1.2 and iPadOS 17.1.2, macOS Sonoma 14.1.2, Safari 17.1.2. Processing web content may disclose sensitive information. Apple is aware of a report that this issue may have been exploited against versions of iOS before iOS 16.7.1.

FIRST-EPSS: 0.001300000
NVD-IS: 3.6
NVD-ES: 2.8
#ExploitObserverAlert

CVE-2023-1713

DESCRIPTION: Exploit Observer has 2 entries related to CVE-2023-1713. Insecure temporary file creation in bitrix/modules/crm/lib/order/import/instagram.php in Bitrix24 22.0.300 hosted on Apache HTTP Server allows remote authenticated attackers to execute arbitrary code via uploading a crafted ".htaccess" file.

FIRST-EPSS: 0.000990000
NVD-IS: 5.9
NVD-ES: 2.8
#ExploitObserverAlert

CVE-2020-29557

DESCRIPTION: Exploit Observer has 2 entries related to CVE-2020-29557. An issue was discovered on D-Link DIR-825 R1 devices through 3.0.1 before 2020-11-20. A buffer overflow in the web interface allows attackers to achieve pre-authentication remote code execution.

FIRST-EPSS: 0.037730000
NVD-IS: 5.9
NVD-ES: 3.9