🛡 Cybersecurity & Privacy 🛡 - News
25.8K subscribers
89.2K links
🗞 The finest daily news on cybersecurity and privacy.

🔔 Daily releases.

💻 Is your online life secure?

📩 lalilolalo.dev@gmail.com
Download Telegram
‼ CVE-2022-37097 ‼

H3C H200 H200V100R004 was discovered to contain a stack overflow via the function SetAPInfoById.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-36479 ‼

TOTOLINK N350RT V9.3.5u.6139_B20201216 was discovered to contain a command injection vulnerability via the host_time parameter in the function NTPSyncWithHost.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-36477 ‼

H3C B5 Mini B5MiniV100R005 was discovered to contain a stack overflow via the function AddWlanMacList.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-37066 ‼

H3C GR-1200W MiniGRW1A0V100R006 was discovered to contain a stack overflow via the function UpdateDDNS.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-36500 ‼

H3C Magic NX18 Plus NX18PV100R003 was discovered to contain a stack overflow via the function EditWlanMacList.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-37243 ‼

MDaemon Technologies SecurityGateway for Email Servers 8.5.2 is vulnerable to Cross Site Scripting (XSS) via the whitelist endpoint.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-37068 ‼

H3C GR-1200W MiniGRW1A0V100R006 was discovered to contain a stack overflow via the function UpdateMacCloneFinal.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-37096 ‼

H3C H200 H200V100R004 was discovered to contain a stack overflow via the function EnableIpv6.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-36520 ‼

H3C GR-1200W MiniGRW1A0V100R006 was discovered to contain a stack overflow via the function DEleteusergroup.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-37819 ‼

Tenda AX1803 v1.0.0.1 was discovered to contain a stack overflow via the timezone parameter in the function fromSetSysTime.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-37812 ‼

Tenda AC1206 V15.03.06.23 was discovered to contain a stack overflow via the firewallEn parameter in the function formSetFirewallCfg.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-36478 ‼

H3C B5 Mini B5MiniV100R005 was discovered to contain a stack overflow via the function Edit_BasicSSID.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-36475 ‼

H3C B5 Mini B5MiniV100R005 was discovered to contain a stack overflow via the function AddMacList.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-36505 ‼

H3C Magic NX18 Plus NX18PV100R003 was discovered to contain a stack overflow via the function EDitusergroup.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-37069 ‼

H3C GR-1200W MiniGRW1A0V100R006 was discovered to contain a stack overflow via the function UpdateSnat.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-36516 ‼

H3C GR-1200W MiniGRW1A0V100R006 was discovered to contain a stack overflow via the function ap_version_check.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-36501 ‼

H3C Magic NX18 Plus NX18PV100R003 was discovered to contain a stack overflow via the function UpdateSnat.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-37820 ‼

Tenda AX1803 v1.0.0.1 was discovered to contain a stack overflow via the ddnsEn parameter in the function formSetSysToolDDNS.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-36458 ‼

TOTOLINK A3700R V9.1.2u.6134_B20201202 was discovered to contain a command injection vulnerability via the command parameter in the function setTracerouteCfg.

📖 Read

via "National Vulnerability Database".
🕴 ReasonLabs Launches Free Online Security Tool to Power Secure Web Experience for Millions of Global Users 🕴

Online Security autonomously blocks malicious URLs, extensions, ad trackers, and pop-ups 24/7, protecting consumers from complex and rapidly evolving cyber threats online.

📖 Read

via "Dark Reading".
‼ CVE-2022-37161 ‼

Claroline 13.5.7 and prior is vulnerable to Cross Site Scripting (XSS) via SVG file upload.

📖 Read

via "National Vulnerability Database".