πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
β€Ό CVE-2022-1811 β€Ό

Unrestricted Upload of File with Dangerous Type in GitHub repository publify/publify prior to 9.2.9.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-30017 β€Ό

Rescue Dispatch Management System 1.0 suffers from Stored XSS, leading to admin account takeover via cookie stealing.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-30014 β€Ό

Lumidek Associates Simple Food Website 1.0 is vulnerable to Cross Site Request Forgery (CSRF) which allows anyone to takeover admin/moderater account.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-30016 β€Ό

Rescue Dispatch Management System 1.0 is vulnerable to Incorrect Access Control via http://localhost/rdms/admin/?page=system_info.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-28932 β€Ό

D-Link DSL-G2452DG HW:T1\\tFW:ME_2.00 was discovered to contain insecure permissions.

πŸ“– Read

via "National Vulnerability Database".
πŸ•΄ Linux Trojan XorDdos Attacks Surge, Targeting Cloud, IoT πŸ•΄

Analysts have seen a massive spike in malicious activity by the XorDdos trojan in the last six months, against Linux cloud and IoT infrastructures .

πŸ“– Read

via "Dark Reading".
πŸ” HHS Warns Healthcare Industry of Russian Threat Groups πŸ”

A new alert, via the HHS Cybersecurity Program, is reminding healthcare organizations about four Russian threat groups.

πŸ“– Read

via "".
β€Ό CVE-2022-31466 β€Ό

Quick Heal Total Security before 12.1.1.27 has a TOCTOU race condition that leads to privilege escalation. It may follow a symlink that was created after a malware check.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-28944 β€Ό

Certain EMCO Software products are affected by: CWE-494: Download of Code Without Integrity Check. This affects MSI Package Builder for Windows 9.1.4 and Remote Installer for Windows 6.0.13 and Ping Monitor for Windows 8.0.18 and Remote Shutdown for Windows 7.2.2 and WakeOnLan 2.0.8 and Network Inventory for Windows 5.8.22 and Network Software Scanner for Windows 2.0.8 and UnLock IT for Windows 6.1.1. The impact is: execute arbitrary code (remote). The component is: Updater. The attack vector is: To exploit this vulnerability, a user must trigger an update of an affected installation of EMCO Software. ¢¢ Multiple products from EMCO Software are affected by a remote code execution vulnerability during the update process.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-32935 β€Ό

The affected Cognex product, the In-Sight OPC Server versions v5.7.4 (96) and prior, deserializes untrusted data, which could allow a remote attacker access to system level permission commands and local privilege escalation.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-42233 β€Ό

The Simple Blog plugin in Wondercms 3.4.1 is vulnerable to stored cross-site scripting (XSS) vulnerability. When any user opens a particular blog hosted on an attackers' site, XSS may occur.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-32941 β€Ό

Annke N48PBB (Network Video Recorder) products of version 3.4.106 build 200422 and prior are vulnerable to a stack-based buffer overflow, which allows an unauthorized remote attacker to execute arbitrary code with the same privileges as the server user (root).

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-31467 β€Ό

Quick Heal Total Security before 12.1.1.27 allows DLL hijacking during installation.

πŸ“– Read

via "National Vulnerability Database".
πŸ•΄ Malicious Python Repository Package Drops Cobalt Strike on Windows, macOS & Linux Systems πŸ•΄

The PyPI "pymafka" package is the latest example of growing attacker interest in abusing widely used open source software repositories.

πŸ“– Read

via "Dark Reading".
πŸ•΄ Multiple Governments Buying Android Zero-Days for Spying: Google πŸ•΄

An analysis from Google TAG shows that Android zero-day exploits were packaged and sold for state-backed surveillance.

πŸ“– Read

via "Dark Reading".
β€Ό CVE-2022-28999 β€Ό

Insecure permissions in the install directories and binaries of Dev-CPP v4.9.9.2 allows attackers to execute arbitrary code via overwriting the binary devcpp.exe.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-29002 β€Ό

A Cross-Site Request Forgery (CSRF) in XXL-Job v2.3.0 allows attackers to arbitrarily create administrator accounts via the component /gaia-job-admin/user/add.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-31487 β€Ό

Inout Blockchain AltExchanger 1.2.1 and Inout Blockchain FiatExchanger 2.2.1 allow Chart/TradingView/chart_content/master.php symbol SQL injection.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-1467 β€Ό

Windows OS can be configured to overlay a Ò€œlanguage barҀ� on top of any application. When this OS functionality is enabled, the OS language bar UI will be viewable in the browser alongside the AVEVA InTouch Access Anywhere and Plant SCADA Access Anywhere applications. It is possible to manipulate the Windows OS language bar to launch an OS command prompt, resulting in a context-escape from application into OS.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-31489 β€Ό

Inout Blockchain AltExchanger 1.2.1 allows index.php/home/about inoutio_language cookie SQL injection.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-31488 β€Ό

Inout Blockchain AltExchanger 1.2.1 allows index.php/coins/update_marketboxslider marketcurrency SQL injection.

πŸ“– Read

via "National Vulnerability Database".