ARPSyndicate - Cyber & Open Source Intelligence
463 subscribers
31 photos
1 video
1 file
4.61K links
A Global Cyber Intelligence Company with hyperspecialization in Information Discovery, Shadow IT & Vulnerability Intelligence.

A.R.P. Syndicate [https://arpsyndicate.io/pricing.html]
Download Telegram
#ExploitObserverAlert

CVE-2023-49785

DESCRIPTION: Exploit Observer has 2 entries in 1 file formats related to CVE-2023-49785.

FIRST-EPSS: 0.000490000
#ExploitObserverAlert

GHSA-2jx3-fx5f-r2c6

DESCRIPTION: Exploit Observer has 6 entries in 2 file formats related to GHSA-2jx3-fx5f-r2c6.
#ExploitObserverAlert

CVE-2024-27297

DESCRIPTION: Exploit Observer has 3 entries in 2 file formats related to CVE-2024-27297.

FIRST-EPSS: 0.000450000
#ExploitObserverAlert

CVE-2023-36554

DESCRIPTION: Exploit Observer has 3 entries in 1 file formats related to CVE-2023-36554. A improper access control in Fortinet FortiManager version 7.4.0, version 7.2.0 through 7.2.3, version 7.0.0 through 7.0.10, version 6.4.0 through 6.4.13, 6.2 all versions allows attacker to execute unauthorized code or commands via specially crafted HTTP requests.
#ExploitObserverAlert

BDU:2015-10403

DESCRIPTION: Exploit Observer has 26 entries in 7 file formats related to BDU:2015-10403. Vulnerability in the Windows Embedded Standard 2009 operating system that allows an attacker to cause a denial of service. The Windows Embedded Standard 2009 operating system contains a vulnerability in the kernel mode driver rdpwd.sys, located in the C:\Windows\System32 directory, which incorrectly handles the dynamic memory allocated to it for storing array elements. By using specially crafted requests sent over the RDP protocol, the attacker can force the driver to release memory twice, which will generally result in a system crash.
#ExploitObserverAlert

CVE-2023-47534

DESCRIPTION: Exploit Observer has 3 entries in 1 file formats related to CVE-2023-47534. A improper neutralization of formula elements in a csv file in Fortinet FortiClientEMS version 7.2.0 through 7.2.2, 7.0.0 through 7.0.10, 6.4.0 through 6.4.9, 6.2.0 through 6.2.9, 6.0.0 through 6.0.8 allows attacker to execute unauthorized code or commands via specially crafted packets.
#ExploitObserverAlert

BDU:2023-07691

DESCRIPTION: Exploit Observer has 28 entries in 10 file formats related to BDU:2023-07691. Vulnerability in the functions EVP_EncryptInit_ex2(), EVP_DecryptInit_ex2(), EVP_CipherInit_ex2() of the OpenSSL cryptographic library, allowing an attacker to cause a denial of service. The vulnerability in the functions EVP_EncryptInit_ex2(), EVP_DecryptInit_ex2(), EVP_CipherInit_ex2() of the OpenSSL cryptographic library is related to manipulation of the keylen/ivlen argument. Exploiting the vulnerability could allow a remote attacker to cause a denial of service.
#ExploitObserverAlert

EDB-51877

DESCRIPTION: Exploit Observer has 1 entries in 1 file formats related to EDB-51877. Human Resource Management System 1.0 - 'employeeid' SQL Injection
#ExploitObserverAlert

CVE-2023-42789

DESCRIPTION: Exploit Observer has 3 entries in 1 file formats related to CVE-2023-42789. A out-of-bounds write in Fortinet FortiOS 7.4.0 through 7.4.1, 7.2.0 through 7.2.5, 7.0.0 through 7.0.12, 6.4.0 through 6.4.14, 6.2.0 through 6.2.15, FortiProxy 7.4.0, 7.2.0 through 7.2.6, 7.0.0 through 7.0.12, 2.0.0 through 2.0.13 allows attacker to execute unauthorized code or commands via specially crafted HTTP requests.
#ExploitObserverAlert

CVE-2024-21334

DESCRIPTION: Exploit Observer has 3 entries in 1 file formats related to CVE-2024-21334. Open Management Infrastructure (OMI) Remote Code Execution Vulnerability

NVD-IS: 5.9
NVD-ES: 3.9
#ExploitObserverAlert

CVE-2023-48788

DESCRIPTION: Exploit Observer has 3 entries in 1 file formats related to CVE-2023-48788. A improper neutralization of special elements used in an sql command ('sql injection') in Fortinet FortiClientEMS version 7.2.0 through 7.2.2, FortiClientEMS 7.0.1 through 7.0.10 allows attacker to execute unauthorized code or commands via specially crafted packets.
#ExploitObserverAlert

CVE-2024-23112

DESCRIPTION: Exploit Observer has 3 entries in 1 file formats related to CVE-2024-23112. An authorization bypass through user-controlled key vulnerability [CWE-639] in FortiOS version 7.4.0 through 7.4.1, 7.2.0 through 7.2.6, 7.0.1 through 7.0.13, 6.4.7 through 6.4.14, and FortiProxy version 7.4.0 through 7.4.2, 7.2.0 through 7.2.8, 7.0.0 through 7.0.14 SSL-VPN may allow an authenticated attacker to gain access to another user’s bookmark via URL manipulation.
#ExploitObserverAlert

EDB-51883

DESCRIPTION: Exploit Observer has 1 entries in 1 file formats related to EDB-51883. SnipeIT 6.2.1 - Stored Cross Site Scripting
#ExploitObserverAlert

EDB-51880

DESCRIPTION: Exploit Observer has 1 entries in 1 file formats related to EDB-51880. Client Details System 1.0 - SQL Injection
#ExploitObserverAlert

EDB-51882

DESCRIPTION: Exploit Observer has 1 entries in 1 file formats related to EDB-51882. VMware Cloud Director 10.5 - Bypass identity verification
#ExploitObserverAlert

CVE-2023-42790

DESCRIPTION: Exploit Observer has 3 entries in 1 file formats related to CVE-2023-42790. A stack-based buffer overflow in Fortinet FortiOS 7.4.0 through 7.4.1, 7.2.0 through 7.2.5, 7.0.0 through 7.0.12, 6.4.0 through 6.4.14, 6.2.0 through 6.2.15, FortiProxy 7.4.0, 7.2.0 through 7.2.6, 7.0.0 through 7.0.12, 2.0.0 through 2.0.13 allows attacker to execute unauthorized code or commands via specially crafted HTTP requests.

FIRST-EPSS: 0.000430000
#ExploitObserverAlert

EDB-51878

DESCRIPTION: Exploit Observer has 1 entries in 1 file formats related to EDB-51878. OSGi v3.8-3.18 Console - RCE
#ExploitObserverAlert

SSVID-99817

DESCRIPTION: Exploit Observer has 15 entries in 2 file formats related to SSVID-99817.
#ExploitObserverAlert

EDB-51879

DESCRIPTION: Exploit Observer has 1 entries in 1 file formats related to EDB-51879. OSGi v3.7.2 (and below) Console - RCE
#ExploitObserverAlert

BDU:2024-01908

DESCRIPTION: Exploit Observer has 13 entries in 3 file formats related to BDU:2024-01908. Vulnerability of the coders/tiff.c component of the ImageMagick console graphics editor, allowing an attacker to cause a denial of service. Vulnerability of the coders/tiff.c component of the ImageMagick console graphics editor is related to buffer overflow. Exploiting the vulnerability could allow an attacker to cause a denial of service.
#ExploitObserverAlert

BDU:2024-01900

DESCRIPTION: Exploit Observer has 9 entries in 3 file formats related to BDU:2024-01900. Vulnerability of the Magick::Draw function of the command-line graphics editor ImageMagick, allowing an attacker to cause a denial of service. Vulnerability of the Magick::Draw function of the command-line graphics editor ImageMagick is related to memory release errors. Exploiting the vulnerability can allow an attacker to cause a denial of service.