ARPSyndicate - Cyber & Open Source Intelligence
463 subscribers
31 photos
1 video
1 file
4.61K links
A Global Cyber Intelligence Company with hyperspecialization in Information Discovery, Shadow IT & Vulnerability Intelligence.

A.R.P. Syndicate [https://arpsyndicate.io/pricing.html]
Download Telegram
#ExploitObserverAlert

CVE-2023-4966

DESCRIPTION: Exploit Observer has 339 entries related to CVE-2023-4966. Sensitive information disclosure in NetScaler ADC and NetScaler Gateway when configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) or AAA ?virtual?server.

FIRST-EPSS: 0.922670000
NVD-IS: 3.6
NVD-ES: 3.9
#ExploitObserverAlert

CVE-2022-33891

DESCRIPTION: Exploit Observer has 40 entries related to CVE-2022-33891. The Apache Spark UI offers the possibility to enable ACLs via the configuration option spark.acls.enable. With an authentication filter, this checks whether a user has access permissions to view or modify the application. If ACLs are enabled, a code path in HttpSecurityFilter can allow someone to perform impersonation by providing an arbitrary user name. A malicious user might then be able to reach a permission check function that will ultimately build a Unix shell command based on their input, and execute it. This will result in arbitrary shell command execution as the user Spark is currently running as. This affects Apache Spark versions 3.0.3 and earlier, versions 3.1.1 to 3.1.2, and versions 3.2.0 to 3.2.1.

FIRST-EPSS: 0.965350000
NVD-IS: 5.9
NVD-ES: 2.8
#ExploitObserverAlert

GHSA-r48c-xm7q-2f8v

DESCRIPTION: Exploit Observer has 1 entries related to GHSA-R48C-XM7Q-2F8V.
#ExploitObserverAlert

GHSA-q84w-p2g5-rxw9

DESCRIPTION: Exploit Observer has 3 entries related to GHSA-Q84W-P2G5-RXW9. The Texas Instruments OMAP L138 (secure variants) trusted execution environment (TEE) lacks a bounds check on the signature size field in the SK_LOAD module loading routine, present in mask ROM. A module with a sufficiently large signature field causes a stack overflow, affecting secure kernel data pages. This can be leveraged to obtain arbitrary code execution in secure supervisor context by overwriting a SHA256 function pointer in the secure kernel data area when loading a forged, unsigned SK_LOAD module encrypted with the CEK (obtainable through CVE-2022-25332). This constitutes a full break of the TEE security architecture.

GHSS: 8.2
#ExploitObserverAlert

CVE-2017-5689

DESCRIPTION: Exploit Observer has 80 entries related to CVE-2017-5689. An unprivileged network attacker could gain system privileges to provisioned Intel manageability SKUs: Intel Active Management Technology (AMT) and Intel Standard Manageability (ISM). An unprivileged local attacker could provision manageability features gaining unprivileged network or local system privileges on Intel manageability SKUs: Intel Active Management Technology (AMT), Intel Standard Manageability (ISM), and Intel Small Business Technology (SBT).

FIRST-EPSS: 0.974160000
NVD-IS: 5.9
NVD-ES: 3.9
#ExploitObserverAlert

GHSA-8ppf-x4gr-2x7g

DESCRIPTION: Exploit Observer has 2 entries related to GHSA-8PPF-X4GR-2X7G.

GHSS: 9.8
#ExploitObserverAlert

CVE-2023-2023

DESCRIPTION: Exploit Observer has 7 entries related to CVE-2023-2023. The Custom 404 Pro WordPress plugin before 3.7.3 does not escape some URLs before outputting them in attributes, leading to Reflected Cross-Site Scripting.

FIRST-EPSS: 0.000710000
NVD-IS: 2.7
NVD-ES: 2.8
#ExploitObserverAlert

CVE-2012-4929

DESCRIPTION: Exploit Observer has 80 entries related to CVE-2012-4929. The TLS protocol 1.2 and earlier, as used in Mozilla Firefox, Google Chrome, Qt, and other products, can encrypt compressed data without properly obfuscating the length of the unencrypted data, which allows man-in-the-middle attackers to obtain plaintext HTTP headers by observing length differences during a series of guesses in which a string in an HTTP request potentially matches an unknown string in an HTTP header, aka a "CRIME" attack.

FIRST-EPSS: 0.001630000
NVD-IS: 2.9
NVD-ES: 4.9
#ExploitObserverAlert

CVE-2019-2215

DESCRIPTION: Exploit Observer has 66 entries related to CVE-2019-2215. A use-after-free in binder.c allows an elevation of privilege from an application to the Linux Kernel. No user interaction is required to exploit this vulnerability, however exploitation does require either the installation of a malicious local application or a separate vulnerability in a network facing application.Product: AndroidAndroid ID: A-141720095

FIRST-EPSS: 0.003000000
NVD-IS: 5.9
NVD-ES: 1.8
#ExploitObserverAlert

CVE-2016-4656

DESCRIPTION: Exploit Observer has 27 entries related to CVE-2016-4656. The kernel in Apple iOS before 9.3.5 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.

FIRST-EPSS: 0.004560000
NVD-IS: 5.9
NVD-ES: 1.8
#ExploitObserverAlert

CVE-2022-28068

DESCRIPTION: Exploit Observer has 1 entries related to CVE-2022-28068. A heap buffer overflow in r_sleb128 function in radare2 5.4.2 and 5.4.0.

FIRST-EPSS: 0.000460000
NVD-IS: 3.6
NVD-ES: 3.9
#ExploitObserverAlert

CVE-2023-5209

DESCRIPTION: Exploit Observer has 1 entries related to CVE-2023-5209.
#ExploitObserverAlert

CVE-2022-28069

DESCRIPTION: Exploit Observer has 1 entries related to CVE-2022-28069. A heap buffer overflow in vax_opfunction in radare2 5.4.2 and 5.4.0.

FIRST-EPSS: 0.000460000
NVD-IS: 3.6
NVD-ES: 3.9
#ExploitObserverAlert

CVE-2022-28072

DESCRIPTION: Exploit Observer has 1 entries related to CVE-2022-28072. A heap buffer overflow in r_read_le32 function in radare25.4.2 and 5.4.0.

FIRST-EPSS: 0.000460000
NVD-IS: 3.6
NVD-ES: 3.9
#ExploitObserverAlert

CVE-2017-8464

DESCRIPTION: Exploit Observer has 112 entries related to CVE-2017-8464. Windows Shell in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows local users or remote attackers to execute arbitrary code via a crafted .LNK file, which is not properly handled during icon display in Windows Explorer or any other application that parses the icon of the shortcut. aka "LNK Remote Code Execution Vulnerability."

FIRST-EPSS: 0.974560000
NVD-IS: 5.9
NVD-ES: 2.8
#ExploitObserverAlert

CVE-2016-4073

DESCRIPTION: Exploit Observer has 19 entries related to CVE-2016-4073. Multiple integer overflows in the mbfl_strcut function in ext/mbstring/libmbfl/mbfl/mbfilter.c in PHP before 5.5.34, 5.6.x before 5.6.20, and 7.x before 7.0.5 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted mb_strcut call.

FIRST-EPSS: 0.062500000
NVD-IS: 5.9
NVD-ES: 3.9
#ExploitObserverAlert

CVE-2022-30190

DESCRIPTION: Exploit Observer has 315 entries related to CVE-2022-30190. Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability.

FIRST-EPSS: 0.973000000
NVD-IS: 5.9
NVD-ES: 1.8
#ExploitObserverAlert

CVE-2023-5871

DESCRIPTION: Exploit Observer has 1 entries related to CVE-2023-5871.
#ExploitObserverAlert

CVE-2016-0783

DESCRIPTION: Exploit Observer has 5 entries related to CVE-2016-0783. The sendHashByUser function in Apache OpenMeetings before 3.1.1 generates predictable password reset tokens, which makes it easier for remote attackers to reset arbitrary user passwords by leveraging knowledge of a user name and the current system time.

FIRST-EPSS: 0.002230000
NVD-IS: 3.6
NVD-ES: 3.9
#ExploitObserverAlert

CVE-2019-19447

DESCRIPTION: Exploit Observer has 6 entries related to CVE-2019-19447. In the Linux kernel 5.0.21, mounting a crafted ext4 filesystem image, performing some operations, and unmounting can lead to a use-after-free in ext4_put_super in fs/ext4/super.c, related to dump_orphan_list in fs/ext4/super.c.

FIRST-EPSS: 0.002780000
NVD-IS: 5.9
NVD-ES: 1.8
#ExploitObserverAlert

CVE-2023-36427

DESCRIPTION: Exploit Observer has 6 entries related to CVE-2023-36427. Windows Hyper-V Elevation of Privilege Vulnerability

FIRST-EPSS: 0.001460000
NVD-IS: 5.9
NVD-ES: 1.0