‼ CVE-2021-33595 ‼
📖 Read
via "National Vulnerability Database".
A address bar spoofing vulnerability was discovered in Safe Browser for iOS. Showing the legitimate URL in the address bar while loading the content from other domain. This makes the user believe that the content is served by a legit domain. A remote attacker can leverage this to perform address bar spoofing attack.📖 Read
via "National Vulnerability Database".
‼ CVE-2021-33594 ‼
📖 Read
via "National Vulnerability Database".
An address bar spoofing vulnerability was discovered in Safe Browser for Android. When user clicks on a specially crafted a malicious URL, it appears like a legitimate one on the address bar, while the content comes from other domain and presented in a window, covering the original content. A remote attacker can leverage this to perform address bar spoofing attack.📖 Read
via "National Vulnerability Database".
🦿 Use 2FA to secure your WordPress login 🦿
📖 Read
via "Tech Republic".
Jack Wallen shows you how to keep your Wordpress account safe with two-factor authentication.📖 Read
via "Tech Republic".
TechRepublic
Use 2FA to secure your WordPress login
Jack Wallen shows you how to keep your Wordpress account safe with two-factor authentication.
🦿 Fake COVID vaccine card sales ramp up on Dark Web 🦿
📖 Read
via "Tech Republic".
Even as the delta variant spreads, many people would rather pay money for a phony vaccine card than get the actual shot for free, according to Check Point Research.📖 Read
via "Tech Republic".
TechRepublic
Fake COVID vaccine card sales ramp up on Dark Web
Even as the delta variant spreads, many people would rather pay money for a phony vaccine card than get the actual shot for free, according to Check Point Research.
‼ CVE-2021-0006 ‼
📖 Read
via "National Vulnerability Database".
Improper conditions check in firmware for Intel(R) Ethernet Adapters 800 Series Controllers and associated adapters before version 1.5.4.0 may allow a privileged user to potentially enable denial of service via local access.📖 Read
via "National Vulnerability Database".
‼ CVE-2021-0083 ‼
📖 Read
via "National Vulnerability Database".
Improper input validation in some Intel(R) Optane(TM) PMem versions before versions 1.2.0.5446 or 2.2.0.1547 may allow a privileged user to potentially enable denial of service via local access.📖 Read
via "National Vulnerability Database".
‼ CVE-2021-0007 ‼
📖 Read
via "National Vulnerability Database".
Uncaught exception in firmware for Intel(R) Ethernet Adapters 800 Series Controllers and associated adapters before version 1.5.1.0 may allow a privileged attacker to potentially enable denial of service via local access.📖 Read
via "National Vulnerability Database".
‼ CVE-2021-0012 ‼
📖 Read
via "National Vulnerability Database".
Use after free in some Intel(R) Graphics Driver before version 27.20.100.8336, 15.45.33.5164, and 15.40.47.5166 may allow an authenticated user to potentially enable denial of service via local access.📖 Read
via "National Vulnerability Database".
‼ CVE-2021-0004 ‼
📖 Read
via "National Vulnerability Database".
Improper buffer restrictions in the firmware of Intel(R) Ethernet Adapters 800 Series Controllers and associated adapters before version 1.5.3.0 may allow a privileged user to potentially enable denial of service via local access.📖 Read
via "National Vulnerability Database".
‼ CVE-2021-32939 ‼
📖 Read
via "National Vulnerability Database".
FATEK Automation FvDesigner, Versions 1.5.88 and prior is vulnerable to an out-of-bounds write while processing project files, allowing an attacker to craft a project file that may permit arbitrary code execution.📖 Read
via "National Vulnerability Database".
‼ CVE-2021-32931 ‼
📖 Read
via "National Vulnerability Database".
An uninitialized pointer in FATEK Automation FvDesigner, Versions 1.5.88 and prior may be exploited while the application is processing project files, allowing an attacker to craft a special project file that may permit arbitrary code execution.📖 Read
via "National Vulnerability Database".
‼ CVE-2021-32947 ‼
📖 Read
via "National Vulnerability Database".
FATEK Automation FvDesigner, Versions 1.5.88 and prior is vulnerable to a stack-based buffer overflow, which may allow an attacker to execute arbitrary code.📖 Read
via "National Vulnerability Database".
‼ CVE-2021-0002 ‼
📖 Read
via "National Vulnerability Database".
Improper conditions check in some Intel(R) Ethernet Controllers 800 series Linux drivers before version 1.4.11 may allow an authenticated user to potentially enable information disclosure or denial of service via local access.📖 Read
via "National Vulnerability Database".
‼ CVE-2021-0084 ‼
📖 Read
via "National Vulnerability Database".
Improper input validation in the Intel(R) Ethernet Controllers X722 and 800 series Linux RMDA driver before version 1.3.19 may allow an authenticated user to potentially enable escalation of privilege via local access.📖 Read
via "National Vulnerability Database".
‼ CVE-2021-0005 ‼
📖 Read
via "National Vulnerability Database".
Uncaught exception in firmware for Intel(R) Ethernet Adapters 800 Series Controllers and associated adapters before version 1.5.3.0 may allow a privileged user to potentially enable denial of service via local access.📖 Read
via "National Vulnerability Database".
‼ CVE-2021-0009 ‼
📖 Read
via "National Vulnerability Database".
Out-of-bounds read in the firmware for Intel(R) Ethernet Adapters 800 Series Controllers and associated adapters before version 1.5.3.0 may allow an unauthenticated user to potentially enable denial of service via adjacent access.📖 Read
via "National Vulnerability Database".
‼ CVE-2021-0062 ‼
📖 Read
via "National Vulnerability Database".
Improper input validation in some Intel(R) Graphics Drivers before version 27.20.100.8935 may allow an authenticated user to potentially enable escalation of privilege via local access.📖 Read
via "National Vulnerability Database".
‼ CVE-2021-0008 ‼
📖 Read
via "National Vulnerability Database".
Uncontrolled resource consumption in firmware for Intel(R) Ethernet Adapters 800 Series Controllers and associated adapters before version 1.5.3.0 may allow privileged user to potentially enable denial of service via local access.📖 Read
via "National Vulnerability Database".
‼ CVE-2021-0003 ‼
📖 Read
via "National Vulnerability Database".
Improper conditions check in some Intel(R) Ethernet Controllers 800 series Linux drivers before version 1.4.11 may allow an authenticated user to potentially enable information disclosure via local access.📖 Read
via "National Vulnerability Database".
‼ CVE-2021-0160 ‼
📖 Read
via "National Vulnerability Database".
Uncontrolled search path in some Intel(R) NUC Pro Chassis Element AverMedia Capture Card drivers before version 3.0.64.143 may allow an authenticated user to potentially enable escalation of privilege via local access.📖 Read
via "National Vulnerability Database".
‼ CVE-2021-23420 ‼
📖 Read
via "National Vulnerability Database".
This affects the package codeception/codeception from 4.0.0 and before 4.1.22, before 3.1.3. The RunProcess class can be leveraged as a gadget to run arbitrary commands on a system that is deserializing user input without validation.📖 Read
via "National Vulnerability Database".