🛡 Cybersecurity & Privacy 🛡 - News
25.8K subscribers
89.2K links
🗞 The finest daily news on cybersecurity and privacy.

🔔 Daily releases.

💻 Is your online life secure?

📩 lalilolalo.dev@gmail.com
Download Telegram
‼ CVE-2021-43892 ‼

Microsoft BizTalk ESB Toolkit Spoofing Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2021-43243 ‼

VP9 Video Extensions Information Disclosure Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2021-43908 ‼

Visual Studio Code Spoofing Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2021-42312 ‼

Microsoft Defender for IOT Elevation of Privilege Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2021-43889 ‼

Microsoft Defender for IoT Remote Code Execution Vulnerability This CVE ID is unique from CVE-2021-41365, CVE-2021-42310, CVE-2021-42311, CVE-2021-42313, CVE-2021-42314, CVE-2021-42315, CVE-2021-43882.

📖 Read

via "National Vulnerability Database".
‼ CVE-2021-43216 ‼

Microsoft Local Security Authority Server (lsasrv) Information Disclosure Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2021-43675 ‼

Lychee-v3 3.2.16 is affected by a Cross Site Scripting (XSS) vulnerability in php/Access/Guest.php. The function exit will terminate the script and print the message to the user. The message will contain albumID which is controlled by the user.

📖 Read

via "National Vulnerability Database".
‼ CVE-2021-42320 ‼

Microsoft SharePoint Server Spoofing Vulnerability This CVE ID is unique from CVE-2021-43242.

📖 Read

via "National Vulnerability Database".
‼ CVE-2021-43256 ‼

Microsoft Excel Remote Code Execution Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2021-43905 ‼

Microsoft Office app Remote Code Execution Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2021-44657 ‼

In StackStorm versions prior to 3.6.0, the jinja interpreter was not run in sandbox mode and thus allows execution of unsafe system commands. Jinja does not enable sandboxed mode by default due to backwards compatibility. Stackstorm now sets sandboxed mode for jinja by default.

📖 Read

via "National Vulnerability Database".
‼ CVE-2021-43240 ‼

NTFS Set Short Name Elevation of Privilege Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2021-43518 ‼

Teeworlds up to and including 0.7.5 is vulnerable to Buffer Overflow. A map parser does not validate m_Channels value coming from a map file, leading to a buffer overflow. A malicious server may offer a specially crafted map that will overwrite client's stack causing denial of service or code execution.

📖 Read

via "National Vulnerability Database".
‼ CVE-2021-43222 ‼

Microsoft Message Queuing Information Disclosure Vulnerability This CVE ID is unique from CVE-2021-43236.

📖 Read

via "National Vulnerability Database".
‼ CVE-2021-43248 ‼

Windows Digital Media Receiver Elevation of Privilege Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2021-43247 ‼

Windows TCP/IP Driver Elevation of Privilege Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2021-43883 ‼

Windows Installer Elevation of Privilege Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2021-43238 ‼

Windows Remote Access Elevation of Privilege Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2021-43882 ‼

Microsoft Defender for IoT Remote Code Execution Vulnerability This CVE ID is unique from CVE-2021-41365, CVE-2021-42310, CVE-2021-42311, CVE-2021-42313, CVE-2021-42314, CVE-2021-42315, CVE-2021-43889.

📖 Read

via "National Vulnerability Database".
‼ CVE-2021-43899 ‼

Microsoft 4K Wireless Display Adapter Remote Code Execution Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2021-43891 ‼

Visual Studio Code Remote Code Execution Vulnerability

📖 Read

via "National Vulnerability Database".