πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
β€Ό CVE-2022-4698 β€Ό

The ProfilePress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via several form fields in versions up to, and including, 4.5.0 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with administrator-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. This only affects multi-site installations and installations where unfiltered_html has been disabled.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-47942 β€Ό

An issue was discovered in ksmbd in the Linux kernel before 5.19.2. There is a heap-based buffer overflow in set_ntacl_dacl, related to use of SMB2_QUERY_INFO_HE after a malformed SMB2_SET_INFO_HE command.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-46642 β€Ό

D-Link DIR-846 A1_FW100A43 was discovered to contain a command injection vulnerability via the auto_upgrade_hour parameter in the SetAutoUpgradeInfo function.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-4697 β€Ό

The ProfilePress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Γ’β‚¬Λœwp_user_cover_default_image_urlÒ€ℒ parameter in versions up to, and including, 4.5.0 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with administrator-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. This only affects multi-site installations and installations where unfiltered_html has been disabled.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-44565 β€Ό

An improper access validation vulnerability exists in airMAX AC <8.7.11, airFiber 60/LR <2.6.2, airFiber 60 XG/HD <v1.0.0 and airFiber GBE <1.4.1 that allows a malicious actor to retrieve status and usage data from the UISP device.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-44567 β€Ό

A command injection vulnerability exists in Rocket.Chat-Desktop <3.8.14 that could allow an attacker to pass a malicious url of openInternalVideoChatWindow to shell.openExternal(), which may lead to remote code execution (internalVideoChatWindow.ts#L17). To exploit the vulnerability, the internal video chat window must be disabled or a Mac App Store build must be used (internalVideoChatWindow.ts#L14). The vulnerability may be exploited by an XSS attack because the function openInternalVideoChatWindow is exposed in the Rocket.Chat-Desktop-API.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-23547 β€Ό

PJSIP is a free and open source multimedia communication library written in C language implementing standard based protocols such as SIP, SDP, RTP, STUN, TURN, and ICE. This issue is similar to GHSA-9pfh-r8x4-w26w. Possible buffer overread when parsing a certain STUN message. The vulnerability affects applications that uses STUN including PJNATH and PJSUA-LIB. The patch is available as commit in the master branch.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-38757 β€Ό

A vulnerability has been identified in Micro Focus ZENworks 2020 Update 3a and prior versions. This vulnerability allows administrators with rights to perform actions (e.g., install a bundle) on a set of managed devices, to be able to exercise these rights on managed devices in the ZENworks zone but which are outside the scope of the administrator. This vulnerability does not result in the administrators gaining additional rights on the managed devices, either in the scope or outside the scope of the administrator.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-47940 β€Ό

An issue was discovered in ksmbd in the Linux kernel before 5.18.18. fs/ksmbd/smb2pdu.c lacks length validation in the non-padding case in smb2_write.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-47939 β€Ό

An issue was discovered in ksmbd in the Linux kernel before 5.19.2. fs/ksmbd/smb2pdu.c has a use-after-free and OOPS for SMB2_TREE_DISCONNECT.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-46641 β€Ό

D-Link DIR-846 A1_FW100A43 was discovered to contain a command injection vulnerability via the lan(0)_dhcps_staticlist parameter in the SetIpMacBindSettings function.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-47938 β€Ό

An issue was discovered in ksmbd in the Linux kernel before 5.19.2. fs/ksmbd/smb2misc.c has an out-of-bounds read and OOPS for SMB2_TREE_CONNNECT.

πŸ“– Read

via "National Vulnerability Database".
⚠ S3 Ep114: Preventing cyberthreats – stop them before they stop you! [Audio + Text] ⚠

Join world-renowned expert Fraser Howard, Director of Research at SophosLabs, for this fascinating episode on how to fight cybercrime.

πŸ“– Read

via "Naked Security".
πŸ•΄ Videoconferencing Worries Grow, With SMBs in Cyberattack Crosshairs πŸ•΄

Securing videoconferencing solutions is just one of many IT security challenges small businesses are facing, often with limited financial and human resources.

πŸ“– Read

via "Dark Reading".
πŸ•΄ LastPass Cops to Massive Breach Including Customer Vault Data πŸ•΄

The follow-on attack from August's source-code breach could fuel future campaigns against LastPass customers.

πŸ“– Read

via "Dark Reading".
⚠ LastPass finally admits: They did steal your password vaults after all ⚠

The crooks now know who you are, where you live, which computers are yours... and they got those password vaults, too.

πŸ“– Read

via "Naked Security".
β€Ό CVE-2022-47943 β€Ό

An issue was discovered in ksmbd in the Linux kernel before 5.19.2. There is an out-of-bounds read and OOPS for SMB2_WRITE, when there is a large length in the zero DataOffset case.

πŸ“– Read

via "National Vulnerability Database".
πŸ•΄ Container Verification Bug Allows Malicious Images to Cloud Up Kubernetes πŸ•΄

A complete bypass of the Kyverno security mechanism for container image imports allows cyberattackers to completely take over a Kubernetes pod to steal data and inject malware.

πŸ“– Read

via "Dark Reading".
β€Ό CVE-2022-28228 β€Ό

Out-of-bounds read was discovered in YDB server. An attacker could construct a query with insert statement that would allow him to read sensitive information from other memory locations or cause a crash.

πŸ“– Read

via "National Vulnerability Database".
πŸ‘1
β€Ό CVE-2022-28229 β€Ό

The hash functionality in userver before 42059b6319661583b3080cab9b595d4f8ac48128 allows attackers to cause a denial of service via crafted HTTP request, involving collisions.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-47946 β€Ό

An issue was discovered in the Linux kernel 5.10.x before 5.10.155. A use-after-free in io_sqpoll_wait_sq in fs/io_uring.c allows an attacker to crash the kernel, resulting in denial of service. finish_wait can be skipped. An attack can occur in some situations by forking a process and then quickly terminating it. NOTE: later kernel versions, such as the 5.15 longterm series, substantially changed the implementation of io_sqpoll_wait_sq.

πŸ“– Read

via "National Vulnerability Database".