πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
❌ Fake Reservation Links Prey on Weary Travelers ❌

Fake travel reservations are exacting more pain from the travel weary, already dealing with the misery of canceled flights and overbooked hotels.

πŸ“– Read

via "Threat Post".
β€Ό CVE-2022-1340 β€Ό

Cross-site Scripting (XSS) - Stored in GitHub repository yetiforcecompany/yetiforcecrm prior to 6.4.0.

πŸ“– Read

via "National Vulnerability Database".
πŸ‘1
β€Ό CVE-2022-2930 β€Ό

Unverified Password Change in GitHub repository octoprint/octoprint prior to 1.8.3.

πŸ“– Read

via "National Vulnerability Database".
πŸ‘1
⚠ Laptop denial-of-service via music: the 1980s R&B song with a CVE! ⚠

We haven't validated this vuln ourselves... but the source of the story is impeccable. (Impeccably dressed, at least.)

πŸ“– Read

via "Naked Security".
β€Ό CVE-2022-2312 β€Ό

The Student Result or Employee Database WordPress plugin before 1.7.5 does not have CSRF in its AJAX actions, allowing attackers to make logged in user with a role as low as contributor to add/edit and delete students via CSRF attacks. Furthermore, due to the lack of sanitisation and escaping, it could also lead to Stored Cross-Site scripting

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-2594 β€Ό

The Advanced Custom Fields WordPress plugin before 5.12.3, Advanced Custom Fields Pro WordPress plugin before 5.12.3 allows unauthenticated users to upload files allowed in a default WP configuration (so PHP is not possible) if there is a frontend form available. This vulnerability was introduced in the 5.0 rewrite and did not exist prior to that release.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-3586 β€Ό

A flaw was found in servicemesh-operator. The NetworkPolicy resources installed for Maistra do not properly specify which ports may be accessed, allowing access to all ports on these resources from any pod. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

πŸ“– Read

via "National Vulnerability Database".
πŸ‘1
β€Ό CVE-2022-2593 β€Ό

The Better Search Replace WordPress plugin before 1.4.1 does not properly sanitise and escape table data before inserting it into a SQL query, which could allow high privilege users to perform SQL Injection attacks

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-24911 β€Ό

The Transposh WordPress Translation WordPress plugin before 1.0.8 does not sanitise and escape the tk0 parameter from the tp_translation AJAX action, leading to Stored Cross-Site Scripting, which will trigger in the admin dashboard of the plugin. The minimum role needed to perform such attack depends on the plugin "Who can translate ?" setting.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-33900 β€Ό

PHP Object Injection vulnerability in Easy Digital Downloads plugin <= 3.0.1 at WordPress.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-2890 β€Ό

Cross-site Scripting (XSS) - Stored in GitHub repository yetiforcecompany/yetiforcecrm prior to 6.4.0.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-2555 β€Ό

The Yotpo Reviews for WooCommerce WordPress plugin through 2.0.4 lacks nonce check when updating its settings, which could allow attacker to make a logged in admin change them via a CSRF attack.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-2392 β€Ό

The Lana Downloads Manager WordPress plugin before 1.8.0 is affected by an arbitrary file download vulnerability that can be exploited by users with "Contributor" permissions or higher.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-35654 β€Ό

Pega Platform from 8.5.4 to 8.7.3 is affected by an XSS issue with an unauthenticated user and the redirect parameter.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-2557 β€Ό

The Team WordPress plugin before 4.1.2 contains a file which could allow any authenticated users to download arbitrary files from the server via a path traversal vector. Furthermore, the file will also be deleted after its content is returned to the user

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-2362 β€Ό

The Download Manager WordPress plugin before 3.2.50 prioritizes getting a visitor's IP from certain HTTP headers over PHP's REMOTE_ADDR, which makes it possible to bypass IP-based download blocking restrictions.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-2558 β€Ό

The Simple Job Board WordPress plugin before 2.10.0 is susceptible to Directory Listing which allows the public listing of uploaded resumes in certain configurations.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-36346 β€Ό

Multiple Cross-Site Request Forgery (CSRF) vulnerabilities in Max Foundry MaxButtons plugin <= 9.2 at WordPress.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-35656 β€Ό

Pega Platform from 8.3 to 8.7.3 vulnerability may allow authenticated security administrators to alter CSRF settings directly.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-34775 β€Ό

Tabit - Excessive data exposure. Another endpoint mapped by the tiny url, was one for reservation cancellation, containing the MongoDB ID of the reservation, and organization. This can be used to query the http://tgm-api.tabit.cloud/rsv/management/{reservationId}?organization={orgId} API which returns a lot of data regarding the reservation (OWASP: API3): Name, mail, phone number, the number of visits of the user to this specific restaurant, the money he spent there, the money he spent on alcohol, whether he left a deposit etc. This information can easily be used for a phishing attack.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-35655 β€Ό

Pega Platform from 7.3 to 8.7.3 is affected by an XSS issue due to a misconfiguration of a datapage setting.

πŸ“– Read

via "National Vulnerability Database".