‼ CVE-2023-20858 ‼
📖 Read
via "National Vulnerability Database".
VMware Carbon Black App Control 8.7.x prior to 8.7.8, 8.8.x prior to 8.8.6, and 8.9.x.prior to 8.9.4 contain an injection vulnerability. A malicious actor with privileged access to the App Control administration console may be able to use specially crafted input allowing access to the underlying server operating system.📖 Read
via "National Vulnerability Database".
‼ CVE-2021-23940 ‼
📖 Read
via "National Vulnerability Database".
** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues. Notes: none.📖 Read
via "National Vulnerability Database".
‼ CVE-2023-24080 ‼
📖 Read
via "National Vulnerability Database".
A lack of rate limiting on the password reset endpoint of Chamberlain myQ v5.222.0.32277 (on iOS) allows attackers to compromise user accounts via a bruteforce attack.📖 Read
via "National Vulnerability Database".
‼ CVE-2021-23947 ‼
📖 Read
via "National Vulnerability Database".
** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues. Notes: none.📖 Read
via "National Vulnerability Database".
‼ CVE-2021-23939 ‼
📖 Read
via "National Vulnerability Database".
** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues. Notes: none.📖 Read
via "National Vulnerability Database".
‼ CVE-2021-23944 ‼
📖 Read
via "National Vulnerability Database".
** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues. Notes: none.📖 Read
via "National Vulnerability Database".
‼ CVE-2021-23949 ‼
📖 Read
via "National Vulnerability Database".
** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues. Notes: none.📖 Read
via "National Vulnerability Database".
‼ CVE-2021-23941 ‼
📖 Read
via "National Vulnerability Database".
** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues. Notes: none.📖 Read
via "National Vulnerability Database".
‼ CVE-2021-23948 ‼
📖 Read
via "National Vulnerability Database".
** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues. Notes: none.📖 Read
via "National Vulnerability Database".
‼ CVE-2021-23952 ‼
📖 Read
via "National Vulnerability Database".
** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues. Notes: none.📖 Read
via "National Vulnerability Database".
‼ CVE-2021-23951 ‼
📖 Read
via "National Vulnerability Database".
** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues. Notes: none.📖 Read
via "National Vulnerability Database".
‼ CVE-2021-23942 ‼
📖 Read
via "National Vulnerability Database".
** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues. Notes: none.📖 Read
via "National Vulnerability Database".
‼ CVE-2021-23943 ‼
📖 Read
via "National Vulnerability Database".
** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues. Notes: none.📖 Read
via "National Vulnerability Database".
‼ CVE-2023-24081 ‼
📖 Read
via "National Vulnerability Database".
Multiple stored cross-site scripting (XSS) vulnerabilities in Redrock Software TutorTrac before v4.2.170210 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the reason and location fields of the visits listing page.📖 Read
via "National Vulnerability Database".
‼ CVE-2021-23950 ‼
📖 Read
via "National Vulnerability Database".
** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues. Notes: none.📖 Read
via "National Vulnerability Database".
‼ CVE-2021-23938 ‼
📖 Read
via "National Vulnerability Database".
** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues. Notes: none.📖 Read
via "National Vulnerability Database".
‼ CVE-2022-38779 ‼
📖 Read
via "National Vulnerability Database".
An open redirect issue was discovered in Kibana that could lead to a user being redirected to an arbitrary website if they use a maliciously crafted Kibana URL.📖 Read
via "National Vulnerability Database".
🕴 How to Stop Attackers That Target Healthcare Imaging Data 🕴
📖 Read
via "Dark Reading".
Attribute-based encryption could help keep sensitive metadata off of the Dark Web.📖 Read
via "Dark Reading".
Dark Reading
How to Stop Attackers That Target Healthcare Imaging Data
Attribute-based encryption could help keep sensitive metadata off of the Dark Web.
‼ CVE-2023-24108 ‼
📖 Read
via "National Vulnerability Database".
MvcTools 6d48cd6830fc1df1d8c9d61caa1805fd6a1b7737 was discovered to contain a code execution backdoor via the request package (requirements.txt). This vulnerability allows attackers to access sensitive user information and execute arbitrary code.📖 Read
via "National Vulnerability Database".
‼ CVE-2023-0947 ‼
📖 Read
via "National Vulnerability Database".
Path Traversal in GitHub repository flatpressblog/flatpress prior to 1.3.📖 Read
via "National Vulnerability Database".
‼ CVE-2022-2883 ‼
📖 Read
via "National Vulnerability Database".
In affected versions of Octopus Deploy it is possible to upload a zipbomb file as a task which results in Denial of Service📖 Read
via "National Vulnerability Database".