πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
β€Ό CVE-2022-23342 β€Ό

The Hyland Onbase Application Server releases prior to 20.3.58.1000 and OnBase releases 21.1.1.1000 through 21.1.15.1000 are vulnerable to a username enumeration vulnerability. An attacker can obtain valid users based on the response returned for invalid and valid users by sending a POST login request to the /mobilebroker/ServiceToBroker.svc/Json/Connect endpoint. This can lead to user enumeration against the underlying Active Directory integrated systems.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-27870 β€Ό

A maliciously crafted TGA file in Autodesk AutoCAD 2023 may be used to write beyond the allocated buffer while parsing TGA file. This vulnerability may be exploited to execute arbitrary code.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-32973 β€Ό

An authenticated attacker could create an audit file that bypasses PowerShell cmdlet checks and executes commands with administrator privileges.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-31786 β€Ό

IdeaLMS 2022 allows reflected Cross Site Scripting (XSS) via the IdeaLMS/Class/Assessment/ PATH_INFO.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-29774 β€Ό

iSpyConnect iSpy v7.2.2.0 is vulnerable to path traversal.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-27869 β€Ό

A maliciously crafted TIFF file in Autodesk AutoCAD 2023 can be forced to read and write beyond allocated boundaries when parsing the TIFF file. This vulnerability can be exploited to execute arbitrary code.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-27868 β€Ό

A maliciously crafted CAT file in Autodesk AutoCAD 2023 can be used to trigger use-after-free vulnerability. Exploitation of this vulnerability may lead to code execution.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-33055 β€Ό

Online Railway Reservation System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /orrs/admin/trains/manage_train.php.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-33049 β€Ό

Online Railway Reservation System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /orrs/admin/?page=user/manage_user.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-33048 β€Ό

Online Railway Reservation System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /orrs/admin/reservations/view_details.php.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-32974 β€Ό

An authenticated attacker could read arbitrary files from the underlying operating system of the scanner using a custom crafted compliance audit file without providing any valid SSH credentials.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-29775 β€Ό

iSpyConnect iSpy v7.2.2.0 allows attackers to bypass authentication via a crafted URL.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-1665 β€Ό

A set of pre-production kernel packages of Red Hat Enterprise Linux for IBM Power architecture can be booted by the grub in Secure Boot mode even though it shouldn't. These kernel builds don't have the secure boot lockdown patches applied to it and can bypass the secure boot validations, allowing the attacker to load another non-trusted code.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-31478 β€Ό

The UserTakeOver plugin before 4.0.1 for ILIAS allows an attacker to list all users via the search function.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-33995 β€Ό

A path traversal issue in entry attachments in Devolutions Remote Desktop Manager before 2022.2 allows attackers to create or overwrite files in an arbitrary location.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-33056 β€Ό

Online Railway Reservation System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /orrs/admin/schedules/manage_schedule.php.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-34008 β€Ό

Comodo Antivirus 12.2.2.8012 has a quarantine flaw that allows privilege escalation. To escalate privilege, a low-privileged attacker can use an NTFS directory junction to restore a malicious DLL from quarantine into the System32 folder.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-2068 β€Ό

In addition to the c_rehash shell command injection identified in CVE-2022-1292, further circumstances where the c_rehash script does not properly sanitise shell metacharacters to prevent command injection were found by code review. When the CVE-2022-1292 was fixed it was not discovered that there are other places in the script where the file names of certificates being hashed were possibly passed to a command executed through the shell. This script is distributed by some operating systems in a manner where it is automatically executed. On such operating systems, an attacker could execute arbitrary commands with the privileges of the script. Use of the c_rehash script is considered obsolete and should be replaced by the OpenSSL rehash command line tool. Fixed in OpenSSL 3.0.4 (Affected 3.0.0,3.0.1,3.0.2,3.0.3). Fixed in OpenSSL 1.1.1p (Affected 1.1.1-1.1.1o). Fixed in OpenSSL 1.0.2zf (Affected 1.0.2-1.0.2ze).

πŸ“– Read

via "National Vulnerability Database".
πŸ—“οΈ Single largest disclosure for vulnerabilities in industrial control security reveals 56 flaws πŸ—“οΈ

Scores of security issues in industrial control systems unveiled

πŸ“– Read

via "The Daily Swig".
πŸ•΄ Why Financial Institutions Must Double Down on Open Source Investments πŸ•΄

Open source is here to stay, and it's imperative that CIOs have a mature, open source engagement strategy, across consumption, contribution, and funding as a pillar of digital transformation.

πŸ“– Read

via "Dark Reading".
β€Ό CVE-2021-40511 β€Ό

OBDA systemsÒ€ℒ Mastro 1.0 is vulnerable to XML Entity Expansion (aka Ò€œbillion laughsҀ�) attack allowing denial of service.

πŸ“– Read

via "National Vulnerability Database".