πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
β€Ό CVE-2021-44685 β€Ό

Git-it through 4.4.0 allows OS command injection at the Branches Aren't Just For Birds challenge step. During the verification process, it attempts to run the reflog command followed by the current branch name (which is not sanitized for execution).

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-44686 β€Ό

calibre before 5.32.0 contains a regular expression that is vulnerable to ReDoS (Regular Expression Denial of Service) in html_preprocess_rules in ebooks/conversion/preprocess.py.

πŸ“– Read

via "National Vulnerability Database".
πŸ—“οΈ SSRF vulnerability patched in Jamf Pro mobile security platform πŸ—“οΈ

Apple MDM service forced to execute arbitrary web requests

πŸ“– Read

via "The Daily Swig".
🦿 You can learn coding, 3D animation, cybersecurity and more with this e-learning bundle 🦿

Get access to certification trainings, tech classes, art lessons and much more. You'll get lifetime access, so you can learn whenever you have the time.

πŸ“– Read

via "Tech Republic".
β€Ό CVE-2021-28703 β€Ό

grant table v2 status pages may remain accessible after de-allocation (take two) Guest get permitted access to certain Xen-owned pages of memory. The majority of such pages remain allocated / associated with a guest for its entire lifetime. Grant table v2 status pages, however, get de-allocated when a guest switched (back) from v2 to v1. The freeing of such pages requires that the hypervisor know where in the guest these pages were mapped. The hypervisor tracks only one use within guest space, but racing requests from the guest to insert mappings of these pages may result in any of them to become mapped in multiple locations. Upon switching back from v2 to v1, the guest would then retain access to a page that was freed and perhaps re-used for other purposes. This bug was fortuitously fixed by code cleanup in Xen 4.14, and backported to security-supported Xen branches as a prerequisite of the fix for XSA-378.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-4049 β€Ό

livehelperchat is vulnerable to Cross-Site Request Forgery (CSRF)

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-29116 β€Ό

A stored Cross Site Scripting (XSS) vulnerability in Esri ArcGIS Server feature services versions 10.8.1 and 10.9 (only) feature services may allow a remote, unauthenticated attacker to pass and store malicious strings via crafted queries which when accessed could potentially execute arbitrary JavaScript code in the userÒ€ℒs browser.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-29114 β€Ό

A SQL injection vulnerability in feature services provided by Esri ArcGIS Server 10.9 and below allows a remote, unauthenticated attacker to impact the confidentiality, integrity and availability of targeted services via specifically crafted queries.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-29115 β€Ό

An information disclosure vulnerability in the ArcGIS Service Directory in Esri ArcGIS Enterprise versions 10.9.0 and below may allows a remote attacker to view hidden field names in feature layers. This issue may reveal field names, but not not disclose features.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-29113 β€Ό

A remote file inclusion vulnerability in the ArcGIS Server help documentation may allow a remote, unauthenticated attacker to inject attacker supplied html into a page.

πŸ“– Read

via "National Vulnerability Database".
❌ SolarWinds Attackers Spotted Using New Tactics, Malware ❌

One year after the disruptive supply-chain attacks, researchers have observed two new clusters of activity from the Russia-based actors that signal a significant threat may be brewing.

πŸ“– Read

via "Threat Post".
β€Ό CVE-2021-44187 β€Ό

Adobe Bridge versions 11.1.1 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious SGI file.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-42133 β€Ό

An exposed dangerous function vulnerability exists in Ivanti Avalanche before 6.3.3 allows an attacker with access to the Inforail Service to perform an arbitrary file write.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-40095 β€Ό

An issue was discovered in SquaredUp for SCOM 5.2.1.6654. The Download Log feature in System / Maintenance was susceptible to a local file inclusion vulnerability (when processing remote input in the log files downloaded by an authenticated administrator user), leading to the ability to read arbitrary files on the server filesystems.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2020-27413 β€Ό

An issue was discovered in Mahavitaran android application 7.50 and below, allows local attackers to read cleartext username and password while the user is logged into the application.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-22955 β€Ό

A unauthenticated denial of service vulnerability exists in Citrix ADC <13.0-83.27, <12.1-63.22 and 11.1-65.23 when configured as a VPN (Gateway) or AAA virtual server could allow an attacker to cause a temporary disruption of the Management GUI, Nitro API, and RPC communication.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-42127 β€Ό

A deserialization of untrusted data vulnerability exists in Ivanti Avalanche before 6.3.3 using Inforail Service allows arbitrary code execution via Data Repository Service.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-42128 β€Ό

An exposed dangerous function vulnerability exists in Ivanti Avalanche before 6.3.3 using inforail Service allows Privilege Escalation via Enterprise Server Service.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-42126 β€Ό

An improper authorization control vulnerability exists in Ivanti Avalanche before 6.3.3 allows an attacker with access to the Inforail Service to perform privilege escalation.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-44527 β€Ό

A vulnerability found in UniFi Switch firmware Version 5.43.35 and earlier allows a malicious actor who has already gained access to the network to perform a Deny of Service (DoS) attack on the affected switch.This vulnerability is fixed in UniFi Switch firmware 5.76.6 and later.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-42130 β€Ό

A deserialization of untrusted data vulnerability exists in Ivanti Avalanche before 6.3.3 allows an attacker with access to the Inforail Service to perform arbitrary code execution.

πŸ“– Read

via "National Vulnerability Database".