πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
❌ Cyberattackers Leverage DocuSign to Steal Microsoft Outlook Logins ❌

A targeted phishing attack takes aim at a major U.S. payments company.

πŸ“– Read

via "Threat Post".
πŸ—“οΈ Data wiper deployed in cyber-attacks targeting Ukrainian systems πŸ—“οΈ

Newly named β€˜HermeticWiper’ malware discovered on hundreds of endpoints

πŸ“– Read

via "The Daily Swig".
🀯1
πŸ•΄ JupiterOne Unveils Starbase for Graph-Based ο»ΏSecurity πŸ•΄

The open source asset management tool lets security analysts collect asset information all across the organization's digital operations and run queries to understand their relationships.

πŸ“– Read

via "Dark Reading".
πŸ›  Packet Fence 11.2.0 πŸ› 

PacketFence is a network access control (NAC) system. It is actively maintained and has been deployed in numerous large-scale institutions. It can be used to effectively secure networks, from small to very large heterogeneous networks. PacketFence provides NAC-oriented features such as registration of new network devices, detection of abnormal network activities including from remote snort sensors, isolation of problematic devices, remediation through a captive portal, and registration-based and scheduled vulnerability scans.

πŸ“– Read

via "Packet Storm Security".
πŸ•΄ Illusive Launches Identity Risk Management Platform πŸ•΄

Illusive Spotlight automatically and continuously discovers and mitigates privileged identity risks, while Illusive Shadow protects against identity risks that can't be readily remediated.

πŸ“– Read

via "Dark Reading".
πŸ•΄ Businesses Are at Significant Risk of Cybersecurity Breaches Due to Immature Security Hygiene and Posture Management Practices πŸ•΄

Seven out of 10 organizations experienced a cyberattack that started through the exploit of unknown or poorly managed technology assets, according to Enterprise Strategy Group research.

πŸ“– Read

via "Dark Reading".
β€Ό CVE-2022-24633 β€Ό

All versions of FileCloud prior to 21.3 are vulnerable to user enumeration. The vulnerability exists in the parameter "path" passing "/SHARED/<username>". A malicious actor could identify the existence of users by requesting share information on specified share paths.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-24599 β€Ό

In autofile Audio File Library 0.3.6, there exists one memory leak vulnerability in printfileinfo, in printinfo.c, which allows an attacker to leak sensitive information via a crafted file. The printfileinfo function calls the copyrightstring function to get data, however, it dosn't use zero bytes to truncate the data.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-25084 β€Ό

TOTOLink T6 V5.9c.4085_B20190428 was discovered to contain a command injection vulnerability in the "Main" function. This vulnerability allows attackers to execute arbitrary commands via the QUERY_STRING parameter.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-24620 β€Ό

Piwigo version 12.2.0 is vulnerable to stored cross-site scripting (XSS), which can lead to privilege escalation. In this way, admin can steal webmaster's cookies to get the webmaster's access.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-24374 β€Ό

Cross-site scripting vulnerability in a-blog cms Ver.2.8.x series versions prior to Ver.2.8.75, Ver.2.9.x series versions prior to Ver.2.9.40, Ver.2.10.x series versions prior to Ver.2.10.44, Ver.2.11.x series versions prior to Ver.2.11.42, and Ver.3.0.x series versions prior to Ver.3.0.1 allows a remote authenticated attacker to inject an arbitrary script via unspecified vectors. This vulnerability is different from CVE-2022-23916.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-25079 β€Ό

TOTOLink A810R V4.1.2cu.5182_B20201026 was discovered to contain a command injection vulnerability in the "Main" function. This vulnerability allows attackers to execute arbitrary commands via the QUERY_STRING parameter.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-24614 β€Ό

When reading a specially crafted JPEG file, metadata-extractor up to 2.16.0 can be made to allocate large amounts of memory that finally leads to an out-of-memory error even for very small inputs. This could be used to mount a denial of service attack against services that use metadata-extractor library.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-25355 β€Ό

EC-CUBE 3.0.0 to 3.0.18-p3 and EC-CUBE 4.0.0 to 4.1.1 improperly handle HTTP Host header values, which may lead a remote unauthenticated attacker to direct the vulnerable version of EC-CUBE to send an Email with some forged reissue-password URL to EC-CUBE users.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-44566 β€Ό

A Cross Site Scripting vulnerability exists RosarioSIS before 4.3 via the SanitizeMarkDown function in ProgramFunctions/MarkDownHTML.fnc.php.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-25073 β€Ό

TL-WR841Nv14_US_0.9.1_4.18 routers were discovered to contain a stack overflow in the function dm_fillObjByStr(). This vulnerability allows unauthenticated attackers to execute arbitrary code.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-24582 β€Ό

Accounting Journal Management 1.0 is vulnerable to XSS-PHPSESSID-Hijacking. The parameter manage_user from User lists is vulnerable to XSS-Stored and PHPSESSID attacks. The malicious user can attack the system by using the already session which he has from inside and outside of the network.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-25082 β€Ό

TOTOLink A950RG V5.9c.4050_B20190424 and V4.1.2cu.5204_B20210112 were discovered to contain a command injection vulnerability in the "Main" function. This vulnerability allows attackers to execute arbitrary commands via the QUERY_STRING parameter.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-24566 β€Ό

In Checkmk <=2.0.0p19 fixed in 2.0.0p20 and Checkmk <=1.6.0p27 fixed in 1.6.0p28, the title of a Predefined condition is not properly escaped when shown as condition, which can result in Cross Site Scripting (XSS).

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-25076 β€Ό

TOTOLink A800R V4.1.2cu.5137_B20200730 was discovered to contain a command injection vulnerability in the "Main" function. This vulnerability allows attackers to execute arbitrary commands via the QUERY_STRING parameter.

πŸ“– Read

via "National Vulnerability Database".