βΌ CVE-2022-28907 βΌ
π Read
via "National Vulnerability Database".
TOTOLink N600R V5.3c.7159_B20190425 was discovered to contain a command injection vulnerability via the hosttime function in /setting/NTPSyncWithHost.π Read
via "National Vulnerability Database".
βΌ CVE-2022-28901 βΌ
π Read
via "National Vulnerability Database".
A command injection vulnerability in the component /SetTriggerLEDBlink/Blink of D-Link DIR882 DIR882A1_FW130B06 allows attackers to escalate privileges to root via a crafted payload.π Read
via "National Vulnerability Database".
βΌ CVE-2022-29325 βΌ
π Read
via "National Vulnerability Database".
D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a stack overflow via the addurlfilter parameter in /goform/websURLFilter.π Read
via "National Vulnerability Database".
βΌ CVE-2022-28912 βΌ
π Read
via "National Vulnerability Database".
TOTOLink N600R V5.3c.7159_B20190425 was discovered to contain a command injection vulnerability via the filename parameter in /setting/setUpgradeFW.π Read
via "National Vulnerability Database".
βΌ CVE-2022-28913 βΌ
π Read
via "National Vulnerability Database".
TOTOLink N600R V5.3c.7159_B20190425 was discovered to contain a command injection vulnerability via the filename parameter in /setting/setUploadSetting.π Read
via "National Vulnerability Database".
βΌ CVE-2022-29329 βΌ
π Read
via "National Vulnerability Database".
D-Link DAP-1330_OSS-firmware_1.00b21 was discovered to contain a heap overflow via the devicename parameter in /goform/setDeviceSettings.π Read
via "National Vulnerability Database".
βΌ CVE-2022-29322 βΌ
π Read
via "National Vulnerability Database".
D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a stack overflow via the IPADDR and nvmacaddr parameters in /goform/form2Dhcpip.π Read
via "National Vulnerability Database".
βΌ CVE-2022-28910 βΌ
π Read
via "National Vulnerability Database".
TOTOLink N600R V5.3c.7159_B20190425 was discovered to contain a command injection vulnerability via the devicename parameter in /setting/setDeviceName.π Read
via "National Vulnerability Database".
βΌ CVE-2022-1397 βΌ
π Read
via "National Vulnerability Database".
API Privilege Escalation in GitHub repository alextselegidis/easyappointments prior to 1.5.0. Full system takeover.π Read
via "National Vulnerability Database".
βΌ CVE-2022-29326 βΌ
π Read
via "National Vulnerability Database".
D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a stack overflow via the addhostfilter parameter in /goform/websHostFilter.π Read
via "National Vulnerability Database".
βΌ CVE-2022-29327 βΌ
π Read
via "National Vulnerability Database".
D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a stack overflow via the urladd parameter in /goform/websURLFilterAddDel.π Read
via "National Vulnerability Database".
βΌ CVE-2022-28906 βΌ
π Read
via "National Vulnerability Database".
TOTOLink N600R V5.3c.7159_B20190425 was discovered to contain a command injection vulnerability via the langtype parameter in /setting/setLanguageCfg.π Read
via "National Vulnerability Database".
βΌ CVE-2022-26988 βΌ
π Read
via "National Vulnerability Database".
TP-Link TL-WDR7660 2.0.30, Mercury D196G 20200109_2.0.4, and Fast FAC1900R 20190827_2.0.2 routers have a stack overflow issue in `MntAte` function. Local users could get remote code execution.π Read
via "National Vulnerability Database".
βΌ CVE-2022-28915 βΌ
π Read
via "National Vulnerability Database".
D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a command injection vulnerability via the admuser and admpass parameters in /goform/setSysAdm.π Read
via "National Vulnerability Database".
βΌ CVE-2022-29323 βΌ
π Read
via "National Vulnerability Database".
D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a stack overflow via the MAC parameter in /goform/editassignment.π Read
via "National Vulnerability Database".
βΌ CVE-2022-29328 βΌ
π Read
via "National Vulnerability Database".
D-Link DAP-1330_OSS-firmware_1.00b21 was discovered to contain a stack overflow via the function checkvalidupgrade.π Read
via "National Vulnerability Database".
βΌ CVE-2022-29321 βΌ
π Read
via "National Vulnerability Database".
D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a stack overflow via the lanip parameter in /goform/setNetworkLan.π Read
via "National Vulnerability Database".
βΌ CVE-2022-29324 βΌ
π Read
via "National Vulnerability Database".
D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a stack overflow via the proto parameter in /goform/form2IPQoSTcAdd.π Read
via "National Vulnerability Database".
β Colonial Pipeline facing $1,000,000 fine for poor recovery plans β
π Read
via "Naked Security".
How good is your cybersecurity? Are you making the same mistakes as lots of other people? Here's some real-life advice...π Read
via "Naked Security".
Naked Security
Colonial Pipeline facing $1,000,000 fine for poor recovery plans
How good is your cybersecurity? Are you making the same mistakes as lots of other people? Hereβs some real-life adviceβ¦
π΄ Lincoln College Set to Close After Crippling Cyberattack π΄
π Read
via "Dark Reading".
COVID-19 and a December 2021 cyberattack combined to put the future of Abraham Lincoln's namesake college in peril.π Read
via "Dark Reading".
Darkreading
Lincoln College Set to Close After Crippling Cyberattack
COVID-19 and a December 2021 cyberattack combined to put the future of Abraham Lincoln's namesake college in peril.
βΌ CVE-2021-39024 βΌ
π Read
via "National Vulnerability Database".
IBM Guardium Data Encryption (GDE) 4.0.0.0 and 5.0.0.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 213862.π Read
via "National Vulnerability Database".