πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
β€Ό CVE-2022-28053 β€Ό

Typemill v1.5.3 was discovered to contain an arbitrary file upload vulnerability via the upload function. This vulnerability allows attackers to execute arbitrary code via a crafted PHP file.

πŸ“– Read

via "National Vulnerability Database".
πŸ•΄ Trend Micro Launches New Security Platform πŸ•΄

An ecosystem of native and third-party integrations provides visibility and control across the entire attack surface.

πŸ“– Read

via "Dark Reading".
πŸ—“οΈ IBM database updates address critical vulnerabilities in third-party XML parser πŸ—“οΈ

Flaws in popular parser prompt updates from numerous downstream vendors

πŸ“– Read

via "The Daily Swig".
πŸ‘1
⚠ QNAP warns of new bugs in its Network Attached Storage devices ⚠

Here's what you need to know - plus some sensible advice for all the devices on your home or small biz network!

πŸ“– Read

via "Naked Security".
β€Ό CVE-2022-28093 β€Ό

SCBS Online Sports Venue Reservation System v1.0 was discovered to contain a local file inclusion vulnerability which allow attackers to execute arbitrary code via a crafted PHP file.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-29078 β€Ό

The ejs (aka Embedded JavaScript templates) package 3.1.6 for Node.js allows server-side template injection in settings[view options][outputFunctionName]. This is parsed as an internal option, and overwrites the outputFunctionName option with an arbitrary OS command (which is executed upon template compilation).

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-28094 β€Ό

SCBS Online Sports Venue Reservation System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the fid parameter at booking.php.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-26111 β€Ό

The BeanShell components of IRISNext through 9.8.28 allow execution of arbitrary commands on the target server by creating a custom search (or editing an existing/predefined search) of the documents. The search components permit adding BeanShell expressions that result in Remote Code Execution in the context of the IRISNext application user, running on the web server.

πŸ“– Read

via "National Vulnerability Database".
⚠ Phishing goes KISS: Don’t let plain and simple messages catch you out! ⚠

Sometimes we receive phishing tricks that we grudgingly have to admit are better than average, just because they're uncomplicated.

πŸ“– Read

via "Naked Security".
πŸ•΄ Ukraine Invasion Driving DDoS Attacks to All-Time Highs πŸ•΄

Unprecedented numbers of DDoS attacks since February are the result of hacktivists' cyberwar against Russian state interests, researchers say.

πŸ“– Read

via "Dark Reading".
πŸ‘1
β€Ό CVE-2022-0953 β€Ό

The Anti-Malware Security and Brute-Force Firewall WordPress plugin before 4.20.96 does not sanitise and escape the QUERY_STRING before outputting it back in an admin page, leading to a Reflected Cross-Site Scripting in browsers which do not encode characters

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-0398 β€Ό

The ThirstyAffiliates Affiliate Link Manager WordPress plugin before 3.10.5 does not have authorisation and CSRF checks when creating affiliate links, which could allow any authenticated user, such as subscriber to create arbitrary affiliate links, which could then be used to redirect users to an arbitrary website

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-26597 β€Ό

Cross-site scripting (XSS) vulnerability in the Layout module's Open Graph integration in Liferay Portal 7.3.0 through 7.4.0, and Liferay DXP 7.3 before service pack 3 allows remote attackers to inject arbitrary web script or HTML via the site name.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-22392 β€Ό

IBM Planning Analytics Local 2.0 could allow an attacker to upload arbitrary executable files which, when executed by an unsuspecting victim could result in code execution. IBM X-Force ID: 222066.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-26596 β€Ό

Cross-site scripting (XSS) vulnerability in Journal module's web content display configuration page in Liferay Portal 7.1.0 through 7.3.3, and Liferay DXP 7.0 before fix pack 94, 7.1 before fix pack 19, and 7.2 before fix pack 8, allows remote attackers to inject arbitrary web script or HTML via web content template names.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-24957 β€Ό

The Advanced Page Visit Counter WordPress plugin through 5.0.8 does not escape the artID parameter before using it in a SQL statement in the apvc_reset_count_art AJAX action, available to any authenticated user, leading to a SQL injection

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-1441 β€Ό

MP4Box is a component of GPAC-2.0.0, which is a widely-used third-party package on RPM Fusion. When MP4Box tries to parse a MP4 file, it calls the function `diST_box_read()` to read from video. In this function, it allocates a buffer `str` with fixed length. However, content read from `bs` is controllable by user, so is the length, which causes a buffer overflow.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-0287 β€Ό

The myCred WordPress plugin before 2.4.3.1 does not have any authorisation in place in its mycred-tools-select-user AJAX action, allowing any authenticated user, such as subscriber to call and retrieve all email addresses from the blog

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-0657 β€Ό

The 5 Stars Rating Funnel WordPress Plugin | RRatingg WordPress plugin before 1.2.54 does not properly sanitise, validate and escape lead ids before using them in a SQL statement via the rrtngg_delete_leads AJAX action, available to unauthenticated users, leading to an unauthenticated SQL injection issue. There is an attempt to sanitise the input, using sanitize_text_field(), however such function is not intended to prevent SQL injections.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-29417 β€Ό

Plugin Settings Update vulnerability in ShortPixel's ShortPixel Adaptive Images plugin <= 3.3.1 at WordPress allows an attacker with a low user role like a subscriber or higher to change the plugin settings.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-1156 β€Ό

The Books & Papers WordPress plugin through 0.20210223 does not escape its Custom DB prefix settings, allowing high privilege users to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed

πŸ“– Read

via "National Vulnerability Database".