🛡 Cybersecurity & Privacy 🛡 - News
25.8K subscribers
89.2K links
🗞 The finest daily news on cybersecurity and privacy.

🔔 Daily releases.

💻 Is your online life secure?

📩 lalilolalo.dev@gmail.com
Download Telegram
‼ CVE-2022-41034 ‼

Visual Studio Code Remote Code Execution Vulnerability.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-41083 ‼

Visual Studio Code Elevation of Privilege Vulnerability.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-41081 ‼

Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-22035, CVE-2022-24504, CVE-2022-30198, CVE-2022-33634, CVE-2022-38000, CVE-2022-38047.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-38045 ‼

Server Service Remote Protocol Elevation of Privilege Vulnerability.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-38040 ‼

Microsoft ODBC Driver Remote Code Execution Vulnerability.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-38053 ‼

Microsoft SharePoint Server Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-41036, CVE-2022-41037, CVE-2022-41038.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-38048 ‼

Microsoft Office Remote Code Execution Vulnerability.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-37973 ‼

Windows Local Session Manager (LSM) Denial of Service Vulnerability. This CVE ID is unique from CVE-2022-37998.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-38049 ‼

Microsoft Office Graphics Remote Code Execution Vulnerability.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-37965 ‼

Windows Point-to-Point Tunneling Protocol Denial of Service Vulnerability.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-41043 ‼

Microsoft Office Information Disclosure Vulnerability.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-3453 ‼

A vulnerability was found in SourceCodester Book Store Management System 1.0. It has been rated as problematic. This issue affects some unknown processing of the file /transcation.php. The manipulation of the argument buyer_name leads to cross site scripting. The attack may be initiated remotely. The identifier VDB-210437 was assigned to this vulnerability.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-38047 ‼

Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-22035, CVE-2022-24504, CVE-2022-30198, CVE-2022-33634, CVE-2022-38000, CVE-2022-41081.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-22035 ‼

Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-24504, CVE-2022-30198, CVE-2022-33634, CVE-2022-38000, CVE-2022-38047, CVE-2022-41081.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-38046 ‼

Web Account Manager Information Disclosure Vulnerability.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-34689 ‼

Windows CryptoAPI Spoofing Vulnerability.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-37609 ‼

Prototype pollution vulnerability in beautify-web js-beautify 1.13.7 via the name variable in options.js.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-37599 ‼

A Regular expression denial of service (ReDoS) flaw was found in Function interpolateName in interpolateName.js in webpack loader-utils 2.0.0 via the resourcePath variable in interpolateName.js.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-39296 ‼

MelisAssetManager provides deliveries of Melis Platform's assets located in every module's public folder. Attackers can read arbitrary files on affected versions of `melisplatform/melis-asset-manager`, leading to the disclosure of sensitive information. Conducting this attack does not require authentication. Users should immediately upgrade to `melisplatform/melis-asset-manager` >= 5.0.1. This issue was addressed by restricting access to files to intended directories only.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-37983 ‼

Microsoft DWM Core Library Elevation of Privilege Vulnerability.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-37975 ‼

Windows Group Policy Elevation of Privilege Vulnerability.

📖 Read

via "National Vulnerability Database".