βΌ CVE-2022-3277 βΌ
π Read
via "National Vulnerability Database".
An uncontrolled resource consumption flaw was found in openstack-neutron. This flaw allows a remote authenticated user to query a list of security groups for an invalid project. This issue creates resources that are unconstrained by the user's quota. If a malicious user were to submit a significant number of requests, this could lead to a denial of service.π Read
via "National Vulnerability Database".
βΌ CVE-2022-4134 βΌ
π Read
via "National Vulnerability Database".
A flaw was found in openstack-glance. This issue could allow a remote, authenticated attacker to tamper with images, compromising the integrity of virtual machines created using these modified images.π Read
via "National Vulnerability Database".
βΌ CVE-2023-27891 βΌ
π Read
via "National Vulnerability Database".
rami.io pretix before 4.17.1 allows OAuth application authorization from a logged-out session. The fixed versions are 4.15.1, 4.16.1, and 4.17.1.π Read
via "National Vulnerability Database".
βΌ CVE-2022-3854 βΌ
π Read
via "National Vulnerability Database".
A flaw was found in Ceph, relating to the URL processing on RGW backends. An attacker can exploit the URL processing by providing a null URL to crash the RGW, causing a denial of service.π Read
via "National Vulnerability Database".
βΌ CVE-2021-20251 βΌ
π Read
via "National Vulnerability Database".
A flaw was found in samba. A race condition in the password lockout code may lead to the risk of brute force attacks being successful if special conditions are met.π Read
via "National Vulnerability Database".
βΌ CVE-2022-3424 βΌ
π Read
via "National Vulnerability Database".
A use-after-free flaw was found in the Linux kernelΓ’β¬β’s SGI GRU driver in the way the first gru_file_unlocked_ioctl function is called by the user, where a fail pass occurs in the gru_check_chiplet_assignment function. This flaw allows a local user to crash or potentially escalate their privileges on the system.π Read
via "National Vulnerability Database".
βΌ CVE-2023-1240 βΌ
π Read
via "National Vulnerability Database".
Cross-site Scripting (XSS) - Stored in GitHub repository answerdev/answer prior to 1.0.6.π Read
via "National Vulnerability Database".
βΌ CVE-2023-1239 βΌ
π Read
via "National Vulnerability Database".
Cross-site Scripting (XSS) - Reflected in GitHub repository answerdev/answer prior to 1.0.6.π Read
via "National Vulnerability Database".
βΌ CVE-2023-1242 βΌ
π Read
via "National Vulnerability Database".
Cross-site Scripting (XSS) - Stored in GitHub repository answerdev/answer prior to 1.0.6.π Read
via "National Vulnerability Database".
βΌ CVE-2022-3760 βΌ
π Read
via "National Vulnerability Database".
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Mia Technology Mia-Med.This issue affects Mia-Med: before 1.0.0.58.π Read
via "National Vulnerability Database".
βΌ CVE-2023-1243 βΌ
π Read
via "National Vulnerability Database".
Cross-site Scripting (XSS) - Stored in GitHub repository answerdev/answer prior to 1.0.6.π Read
via "National Vulnerability Database".
βΌ CVE-2023-1238 βΌ
π Read
via "National Vulnerability Database".
Cross-site Scripting (XSS) - Stored in GitHub repository answerdev/answer prior to 1.0.6.π Read
via "National Vulnerability Database".
βΌ CVE-2023-1247 βΌ
π Read
via "National Vulnerability Database".
Cross-site Scripting (XSS) - Reflected in GitHub repository pimcore/pimcore prior to 11.0.0.π Read
via "National Vulnerability Database".
βΌ CVE-2023-1244 βΌ
π Read
via "National Vulnerability Database".
Cross-site Scripting (XSS) - Stored in GitHub repository answerdev/answer prior to 1.0.6.π Read
via "National Vulnerability Database".
βΌ CVE-2023-1237 βΌ
π Read
via "National Vulnerability Database".
Cross-site Scripting (XSS) - Stored in GitHub repository answerdev/answer prior to 1.0.6.π Read
via "National Vulnerability Database".
βΌ CVE-2023-1241 βΌ
π Read
via "National Vulnerability Database".
Cross-site Scripting (XSS) - Stored in GitHub repository answerdev/answer prior to 1.0.6.π Read
via "National Vulnerability Database".
βΌ CVE-2023-1245 βΌ
π Read
via "National Vulnerability Database".
Cross-site Scripting (XSS) - Stored in GitHub repository answerdev/answer prior to 1.0.6.π Read
via "National Vulnerability Database".
π΄ Cyber Security Works to Rebrand As Securin Inc. π΄
π Read
via "Dark Reading".
Securin Inc. will provide tech-enabled security solutions, vulnerability intelligence and deep domain expertise.π Read
via "Dark Reading".
Dark Reading
Cyber Security Works to Rebrand As Securin Inc.
Securin Inc. will provide tech-enabled security solutions, vulnerability intelligence and deep domain expertise.
π΄ Ransomware's Favorite Target: Critical Infrastructure and Its Industrial Control Systems π΄
π Read
via "Dark Reading".
The health, manufacturing, and energy sectors are the most vulnerable to ransomware.π Read
via "Dark Reading".
Dark Reading
Ransomware's Favorite Target: Critical Infrastructure and Its Industrial Control Systems
The health, manufacturing, and energy sectors are the most vulnerable to ransomware.
βΌ CVE-2023-26955 βΌ
π Read
via "National Vulnerability Database".
onekeyadmin v1.3.9 was discovered to contain a stored cross-site scripting (XSS) vulnerability via the Admin Group module.π Read
via "National Vulnerability Database".