πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ—“οΈ Attackers getting faster at latching onto unpatched vulnerabilities for stealth hacking campaigns – report πŸ—“οΈ

Enterprises need to be ready with β€˜battle-tested incident response procedures’ as zero-day exploitation ramps up

πŸ“– Read

via "The Daily Swig".
β€Ό CVE-2021-43721 β€Ό

Leanote 2.7.0 is vulnerable to Cross Site Scripting (XSS) in the markdown type note. This leads to remote code execution with payload : <video src=x onerror=(function(){require('child_process').exec('calc');})();>

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-44103 β€Ό

Vertical Privilege Escalation in KONGA 0.14.9 allows attackers to higher privilege users to full administration access. The attack vector is a crafted condition, as demonstrated by the /api/user/{ID} at ADMIN parameter.

πŸ“– Read

via "National Vulnerability Database".
❌ Critical Sophos Security Bug Allows RCE on Firewalls ❌

The security vendor's appliance suffers from an authentication-bypass issue.

πŸ“– Read

via "Threat Post".
❀1
β€Ό CVE-2021-44124 β€Ό

Hiby Music Hiby OS R3 Pro 1.5 and 1.6 is vulnerable to Directory Traversal. The HTTP Server does not have enough input data sanitization when shown data from SD Card, an attacker can navigate through the device's File System over HTTP.

πŸ“– Read

via "National Vulnerability Database".
❌ Okta Says It Goofed in Handling the Lapsus$ Attack ❌

"We made a mistake," Okta said, owning up to its responsibility for security incidents that hit its service providers and potentially its own customers.

πŸ“– Read

via "Threat Post".
πŸ•΄ Vodafone Portugal: The Attack on Brand Reputations and Public Confidence Through Cybercrime πŸ•΄

Companies must prepare effective, data-driven threat-response strategies as they monitor for reputational risks as well as cyberattacks.

πŸ“– Read

via "Dark Reading".
πŸ” Google: Update Chrome Now to Fix Zero-Day πŸ”

An emergency update for Google Chrome, released Friday, fixes a zero-day that's being exploited in attacks.

πŸ“– Read

via "".
β€Ό CVE-2022-1056 β€Ό

Out-of-bounds Read error in tiffcrop in libtiff 4.3.0 allows attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit 46dc8fcd.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-26980 β€Ό

Teampass 2.1.26 allows reflected XSS via the index.php PATH_INFO.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-0751 β€Ό

Inaccurate display of Snippet files containing special characters in all versions of GitLab CE/EE allows an attacker to create Snippets with misleading content which could trick unsuspecting users into executing arbitrary commands

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-0738 β€Ό

An issue has been discovered in GitLab affecting all versions starting from 14.6 before 14.6.5, all versions starting from 14.7 before 14.7.4, all versions starting from 14.8 before 14.8.2. GitLab was leaking user passwords when adding mirrors with SSH credentials under specific conditions.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-0818 β€Ό

The WooCommerce Affiliate Plugin WordPress plugin before 4.16.4.5 does not have authorization and CSRF checks on a specific action handler, as well as does not sanitize its settings, which enables an unauthenticated attacker to inject malicious XSS payloads into the settings page of the plugin.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-0680 β€Ό

The Plezi WordPress plugin before 1.0.3 has a REST endpoint allowing unauthenticated users to update the plz_configuration_tracker_enable option, which is then displayed in the admin panel without sanitisation and escaping, leading to a Stored Cross-Site Scripting issue

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-0499 β€Ό

The Sermon Browser WordPress plugin through 0.45.22 does not have CSRF checks in place when uploading Sermon files, and does not validate them in any way, allowing attackers to make a logged in admin upload arbitrary files such as PHP ones.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-0479 β€Ό

The Popup Builder WordPress plugin before 4.1.1 does not sanitise and escape the sgpb-subscription-popup-id parameter before using it in a SQL statement in the All Subscribers admin dashboard, leading to a SQL injection, which could also be used to perform Reflected Cross-Site Scripting attack against a logged in admin opening a malicious link

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-0679 β€Ό

The Narnoo Distributor WordPress plugin through 2.5.1 fails to validate and sanitize the lib_path parameter before it is passed into a call to require() via the narnoo_distributor_lib_request AJAX action (available to both unauthenticated and authenticated users) which results in the disclosure of arbitrary files as the content of the file is then displayed in the response as JSON data. This could also lead to RCE with various tricks but depends on the underlying system and it's configuration.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-0784 β€Ό

The Title Experiments Free WordPress plugin before 9.0.1 does not sanitise and escape the id parameter before using it in a SQL statement via the wpex_titles AJAX action (available to unauthenticated users), leading to an unauthenticated SQL injection

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-27658 β€Ό

Under certain conditions, SAP Innovation management - version 2.0, allows an attacker to access information which could lead to information gathering for further exploits and attacks.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-25070 β€Ό

The Block Bad Bots WordPress plugin before 6.88 does not properly sanitise and escape the User Agent before using it in a SQL statement to record logs, leading to an SQL Injection issue

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-0770 β€Ό

The Translate WordPress with GTranslate WordPress plugin before 2.9.9 does not have CSRF check in some files, and write debug data such as user's cookies in a publicly accessible file if a specific parameter is used when requesting them. Combining those two issues, an attacker could gain access to a logged in admin cookies by making them open a malicious link or page

πŸ“– Read

via "National Vulnerability Database".