πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
β€Ό CVE-2021-37019 β€Ό

There is a Improper Input Validation vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability will cause kernel crash.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-39976 β€Ό

There is a privilege escalation vulnerability in CloudEngine 5800 V200R020C00SPC600. Due to lack of privilege restrictions, an authenticated local attacker can perform specific operation to exploit this vulnerability. Successful exploitation may cause the attacker to obtain a higher privilege.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-37003 β€Ό

There is a Improper Input Validation vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability will cause kernel crash.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-37025 β€Ό

There is a Improper Input Validation vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability will cause kernel crash.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-37024 β€Ό

There is a Improper Input Validation vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability will cause kernel crash.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-37006 β€Ό

There is a Improper Preservation of Permissions vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability will cause the confidentiality of users is affected.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-37017 β€Ό

There is a Improper Input Validation vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability will cause kernel crash.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-37007 β€Ό

There is a Out-of-bounds Read vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability will cause kernel crash.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-37026 β€Ό

There is a Improper Input Validation vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability will cause kernel crash.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-37031 β€Ό

There is a Remote DoS vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability will cause the app to exit unexpectedly.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-20601 β€Ό

Improper input validation vulnerability in GOT2000 series GT27 model all versions, GOT2000 series GT25 model all versions, GOT2000 series GT23 model all versions, GOT2000 series GT21 model all versions, GOT SIMPLE series GS21 model all versions, and GT SoftGOT2000 all versions allows an remote unauthenticated attacker to write a value that exceeds the configured input range limit by sending a malicious packet to rewrite the device value. As a result, the system operation may be affected, such as malfunction.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-37029 β€Ό

There is an Identity verification vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may affect service availability.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-37102 β€Ό

There is a command injection vulnerability in CMA service module of FusionCompute product when processing the default certificate file. The software constructs part of a command using external special input from users, but the software does not sufficiently validate the user input. Successful exploit could allow the attacker to inject certain commands to the system. Affected product versions include: FusionCompute 6.0.0, 6.3.0, 6.3.1, 6.5.0, 6.5.1, 8.0.0.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-37005 β€Ό

There is a Improper Input Validation vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability will cause kernel crash.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-35052 β€Ό

A component in Kaspersky Password Manager could allow an attacker to elevate a process Integrity level from Medium to High.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-37022 β€Ό

There is a Heap-based Buffer Overflow vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability will cause root permission which can be escalated.

πŸ“– Read

via "National Vulnerability Database".
πŸ—“οΈ Microsoft unveils β€˜Super Duper Secure Mode’ in latest version of Edge πŸ—“οΈ

Browser goes further to protect against bugs by disabling JIT

πŸ“– Read

via "The Daily Swig".
πŸ•΄ Holiday Scams Drive SMS Phishing Attacks πŸ•΄

Attackers typically target consumers with malicious text messages containing obfuscated links, but experts say businesses are threatened as well.

πŸ“– Read

via "Dark Reading".
β€Ό CVE-2021-36333 β€Ό

Dell EMC CloudLink 7.1 and all prior versions contain a Buffer Overflow Vulnerability. A local low privileged attacker, may potentially exploit this vulnerability, leading to an application crash.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-24812 β€Ό

The BetterLinks WordPress plugin before 1.2.6 does not sanitise and escape some of imported link fields, which could lead to Stored Cross-Site Scripting issues when an admin import a malicious CSV.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-21561 β€Ό

Dell PowerScale OneFS version 8.1.2 contains a sensitive information exposure vulnerability. This would allow a malicious user with ISI_PRIV_LOGIN_SSH and/or ISI_PRIV_LOGIN_CONSOLE privileges to gain access to sensitive information in the log files.

πŸ“– Read

via "National Vulnerability Database".