🛡 Cybersecurity & Privacy 🛡 - News
25.8K subscribers
89.2K links
🗞 The finest daily news on cybersecurity and privacy.

🔔 Daily releases.

💻 Is your online life secure?

📩 lalilolalo.dev@gmail.com
Download Telegram
‼ CVE-2020-18771 ‼

Exiv2 0.27.99.0 has a global buffer over-read in Exiv2::Internal::Nikon1MakerNote::print0x0088 in nikonmn_int.cpp which can result in an information leak.

? Read

via "National Vulnerability Database".
‼ CVE-2021-39602 ‼

A Buffer Overflow vulnerabilty exists in Miniftpd 1.0 in the do_mkd function in the ftpproto.c file, which could let a remote malicious user cause a Denial of Service.

? Read

via "National Vulnerability Database".
‼ CVE-2021-39613 ‼

** UNSUPPORTED WHEN ASSIGNED ** D-Link DVG-3104MS version 1.0.2.0.3, 1.0.2.0.4, and 1.0.2.0.4E contains hard-coded credentials for undocumented user accounts in the '/etc/passwd' file. As weak passwords have been used, the plaintext passwords can be recovered from the hash values. NOTE: This vulnerability only affects products that are no longer supported by the maintainer.

? Read

via "National Vulnerability Database".
‼ CVE-2021-39599 ‼

Multiple Cross Site Scripting (XSS) vulnerabilities exists in CXUUCMS 3.1 in the search and c parameters in (1) public/search.php and in the (2) c parameter in admin.php.

? Read

via "National Vulnerability Database".
‼ CVE-2021-23431 ‼

The package joplin before 2.3.2 are vulnerable to Cross-site Request Forgery (CSRF) due to missing CSRF checks in various forms.

📖 Read

via "National Vulnerability Database".
‼ CVE-2021-23406 ‼

This affects the package pac-resolver before 5.0.0. This can occur when used with untrusted input, due to unsafe PAC file handling. **NOTE:** The fix for this vulnerability is applied in the node-degenerator library, a dependency written by the same maintainer.

📖 Read

via "National Vulnerability Database".
‼ CVE-2021-23429 ‼

All versions of package transpile are vulnerable to Denial of Service (DoS) due to a lack of input sanitization or whitelisting, coupled with improper exception handling in the .to() function.

📖 Read

via "National Vulnerability Database".
‼ CVE-2021-23432 ‼

This affects all versions of package mootools. This is due to the ability to pass untrusted input to Object.merge()

📖 Read

via "National Vulnerability Database".
‼ CVE-2021-23430 ‼

All versions of package startserver are vulnerable to Directory Traversal due to missing sanitization.

📖 Read

via "National Vulnerability Database".
🦿 Microsoft Power Apps misconfiguration exposes data from 38 million records 🦿

The leaked data included personal information for COVID-19 contact tracing and vaccination appointments, social security numbers for job applicants, employee IDs, names and email addresses.

📖 Read

via "Tech Republic".
‼ CVE-2021-36385 ‼

A SQL Injection vulnerability in Cerner Mobile Care 5.0.0 allows remote unauthenticated attackers to execute arbitrary SQL commands via a Fullwidth Apostrophe (aka U+FF07) in the default.aspx User ID field. Arbitrary system commands can be executed through the use of xp_cmdshell.

📖 Read

via "National Vulnerability Database".
‼ CVE-2021-38613 ‼

The assets/index.php Image Upload feature of the NASCENT RemKon Device Manager 4.0.0.0 allows attackers to upload any code to the target system and achieve remote code execution.

📖 Read

via "National Vulnerability Database".
‼ CVE-2021-33191 ‼

From Apache NiFi MiNiFi C++ version 0.5.0 the c2 protocol implements an "agent-update" command which was designed to patch the application binary. This "patching" command defaults to calling a trusted binary, but might be modified to an arbitrary value through a "c2-update" command. Said command is then executed using the same privileges as the application binary. This was addressed in version 0.10.0

📖 Read

via "National Vulnerability Database".
‼ CVE-2021-39376 ‼

Philips Healthcare Tasy Electronic Medical Record (EMR) 3.06 allows SQL injection via the CorCad_F2/executaConsultaEspecifico IE_CORPO_ASSIST or CD_USUARIO_CONVENIO parameter.

📖 Read

via "National Vulnerability Database".
‼ CVE-2021-39375 ‼

Philips Healthcare Tasy Electronic Medical Record (EMR) 3.06 allows SQL injection via the WAdvancedFilter/getDimensionItemsByCode FilterValue parameter.

📖 Read

via "National Vulnerability Database".
‼ CVE-2021-38611 ‼

A command-injection vulnerability in the Image Upload function of the NASCENT RemKon Device Manager 4.0.0.0 allows attackers to execute arbitrary commands, as root, via shell metacharacters in the filename parameter to assets/index.php.

📖 Read

via "National Vulnerability Database".
‼ CVE-2021-37538 ‼

Multiple SQL injection vulnerabilities in SmartDataSoft SmartBlog for PrestaShop before 4.06 allow a remote unauthenticated attacker to execute arbitrary SQL commands via the day, month, or year parameter to the controllers/front/archive.php archive controller, or the id_category parameter to the controllers/front/category.php category controller.

📖 Read

via "National Vulnerability Database".
‼ CVE-2021-38612 ‼

In NASCENT RemKon Device Manager 4.0.0.0, a Directory Traversal vulnerability in a log-reading function in maintenance/readLog.php allows an attacker to read any file via a specialized URL.

📖 Read

via "National Vulnerability Database".
‼ CVE-2021-38306 ‼

Network Attached Storage on LG N1T1*** 10124 devices allows an unauthenticated attacker to gain root access via OS command injection in the en/ajp/plugins/access.ssh/checkInstall.php destServer parameter.

📖 Read

via "National Vulnerability Database".
‼ CVE-2021-38557 ‼

raspap-webgui in RaspAP 2.6.6 allows attackers to execute commands as root because of the insecure sudoers permissions. The www-data account can execute /etc/raspap/hostapd/enablelog.sh as root with no password; however, the www-data account can also overwrite /etc/raspap/hostapd/enablelog.sh with any executable content.

📖 Read

via "National Vulnerability Database".
‼ CVE-2021-38556 ‼

includes/configure_client.php in RaspAP 2.6.6 allows attackers to execute commands via command injection.

📖 Read

via "National Vulnerability Database".