βΌ CVE-2022-44316 βΌ
π Read
via "National Vulnerability Database".
PicoC Version 3.2.2 was discovered to contain a heap buffer overflow in the LexGetStringConstant function in lex.c when called from LexScanGetToken.π Read
via "National Vulnerability Database".
βΌ CVE-2022-44318 βΌ
π Read
via "National Vulnerability Database".
PicoC Version 3.2.2 was discovered to contain a heap buffer overflow in the StringStrcat function in cstdlib/string.c when called from ExpressionParseFunctionCall.π Read
via "National Vulnerability Database".
βΌ CVE-2022-44321 βΌ
π Read
via "National Vulnerability Database".
PicoC Version 3.2.2 was discovered to contain a heap buffer overflow in the LexSkipComment function in lex.c when called from LexScanGetToken.π Read
via "National Vulnerability Database".
βΌ CVE-2022-44319 βΌ
π Read
via "National Vulnerability Database".
PicoC Version 3.2.2 was discovered to contain a heap buffer overflow in the StdioBasePrintf function in cstdlib/string.c when called from ExpressionParseFunctionCall.π Read
via "National Vulnerability Database".
βΌ CVE-2022-44314 βΌ
π Read
via "National Vulnerability Database".
PicoC Version 3.2.2 was discovered to contain a heap buffer overflow in the StringStrncpy function in cstdlib/string.c when called from ExpressionParseFunctionCall.π Read
via "National Vulnerability Database".
βΌ CVE-2022-43343 βΌ
π Read
via "National Vulnerability Database".
N-Prolog v1.91 was discovered to contain a global buffer overflow vulnerability in the function gettoken() at Main.c.π Read
via "National Vulnerability Database".
βΌ CVE-2022-44311 βΌ
π Read
via "National Vulnerability Database".
html2xhtml v1.3 was discovered to contain an Out-Of-Bounds read in the function static void elm_close(tree_node_t *nodo) at procesador.c. This vulnerability allows attackers to access sensitive files or cause a Denial of Service (DoS) via a crafted html file.π Read
via "National Vulnerability Database".
βΌ CVE-2022-44320 βΌ
π Read
via "National Vulnerability Database".
PicoC Version 3.2.2 was discovered to contain a heap buffer overflow in the ExpressionCoerceFP function in expression.c when called from ExpressionParseFunctionCall.π Read
via "National Vulnerability Database".
βΌ CVE-2022-41757 βΌ
π Read
via "National Vulnerability Database".
An issue was discovered in the Arm Mali GPU Kernel Driver. A non-privileged user can make improper GPU processing operations to obtain write access to read-only memory, or obtain access to already freed memory. This affects Valhall r29p0 through r38p1 before r38p2, and r39p0 before r40p0.π Read
via "National Vulnerability Database".
βΌ CVE-2022-44317 βΌ
π Read
via "National Vulnerability Database".
PicoC Version 3.2.2 was discovered to contain a heap buffer overflow in the StdioOutPutc function in cstdlib/stdio.c when called from ExpressionParseFunctionCall.π Read
via "National Vulnerability Database".
β Silk Road drugs market hacker pleads guilty, faces 20 years inside β
π Read
via "Naked Security".
Jurisprudence isn't like arithmetic... two negatives never make a positive!π Read
via "Naked Security".
Naked Security
Silk Road drugs market hacker pleads guilty, faces 20 years inside
Jurisprudence isnβt like arithmeticβ¦ two negatives never make a positive!
βΌ CVE-2022-44556 βΌ
π Read
via "National Vulnerability Database".
Missing parameter type validation in the DRM module. Successful exploitation of this vulnerability may affect availability.π Read
via "National Vulnerability Database".
βΌ CVE-2021-40303 βΌ
π Read
via "National Vulnerability Database".
perfex crm 1.10 is vulnerable to Cross Site Scripting (XSS) via /clients/profile.π Read
via "National Vulnerability Database".
βΌ CVE-2022-39069 βΌ
π Read
via "National Vulnerability Database".
There is a SQL injection vulnerability in ZTE ZAIP-AIE. Due to lack of input verification by the server, an attacker could trigger an attack by building malicious requests. Exploitation of this vulnerability could cause the leakage of the current table content.π Read
via "National Vulnerability Database".
π’ LockBit repeats 'PR stunt' as Thales ransomware investigation reveals no breach π’
π Read
via "ITPro".
The ransomware group threatened to leak stolen data on the dark web, but Thales denies any attack occurredπ Read
via "ITPro".
ITPro
LockBit repeats 'PR stunt' as Thales ransomware investigation reveals no breach
The ransomware group threatened to leak stolen data on the dark web, but Thales denies any attack occurred
π’ Microsoft says βitβs just too difficultβ to effectively disrupt ransomware π’
π Read
via "ITPro".
The company details its new approach to combatting cyber crime as the underground industry drains $6 trillion from the global economyπ Read
via "ITPro".
ITPro
Microsoft says βitβs just too difficultβ to effectively disrupt ransomware
The company details its new approach to combatting cyber crime as the underground industry drains $6 trillion from the global economy
π’ Continental 'held to ransom', refuses to confirm if LockBit has stolen data π’
π Read
via "ITPro".
The ransomware group is threatening to leak the data it has on the German manufacturer tonight if a ransom isn't paidπ Read
via "ITPro".
ITPro
Continental 'held to ransom', refuses to confirm if LockBit has stolen data
The ransomware group is threatening to leak the data it has on the German manufacturer tonight if a ransom isn't paid
βΌ CVE-2022-41980 βΌ
π Read
via "National Vulnerability Database".
Auth. (admin+) Cross-Site Scripting (XSS) vulnerability in Mantenimiento web plugin <= 0.13 on WordPress.π Read
via "National Vulnerability Database".
βΌ CVE-2022-44741 βΌ
π Read
via "National Vulnerability Database".
Cross-Site Request Forgery (CSRF) vulnerability leading to Cross-Site Scripting (XSS) in David Anderson Testimonial Slider plugin <= 1.3.1 on WordPress.π Read
via "National Vulnerability Database".
βΌ CVE-2022-40205 βΌ
π Read
via "National Vulnerability Database".
Insecure direct object references (IDOR) vulnerability in the wpForo Forum plugin <= 2.0.5 on WordPress allows attackers with subscriber or higher user roles to mark any forum post as solved/unsolved.π Read
via "National Vulnerability Database".
βΌ CVE-2022-42494 βΌ
π Read
via "National Vulnerability Database".
Server Side Request Forgery (SSRF) vulnerability in All in One SEO Pro plugin <= 4.2.5.1 on WordPress.π Read
via "National Vulnerability Database".