βΌ CVE-2023-1398 βΌ
π Read
via "National Vulnerability Database".
A vulnerability classified as critical was found in XiaoBingBy TeaCMS 2.0. Affected by this vulnerability is an unknown functionality of the file /admin/upload. The manipulation leads to path traversal: '../filedir'. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-222985 was assigned to this vulnerability.π Read
via "National Vulnerability Database".
βΌ CVE-2023-1391 βΌ
π Read
via "National Vulnerability Database".
A vulnerability, which was classified as problematic, was found in SourceCodester Online Tours & Travels Management System 1.0. Affected is an unknown function of the file admin/ab.php. The manipulation of the argument img leads to unrestricted upload. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-222978 is the identifier assigned to this vulnerability.π Read
via "National Vulnerability Database".
βΌ CVE-2023-1392 βΌ
π Read
via "National Vulnerability Database".
A vulnerability has been found in SourceCodester Online Pizza Ordering System 1.0 and classified as critical. Affected by this vulnerability is the function save_menu. The manipulation leads to unrestricted upload. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-222979.π Read
via "National Vulnerability Database".
π΄ How Businesses Can Get Ready for AI-Powered Security Threats π΄
π Read
via "Dark Reading".
Organizations need to take steps now to strengthen their cyber defenses.π Read
via "Dark Reading".
Dark Reading
How Businesses Can Get Ready for AI-Powered Security Threats
Organizations need to take steps now to strengthen their cyber defenses.
β Firefox 111 patches 11 holes, but not 1 zero-day among themβ¦ β
π Read
via "Naked Security".
In the game of cricket, 111 is an unauspicious number, but for Firefox, there doesn't seem to be much to worry about this month.π Read
via "Naked Security".
Sophos News
Naked Security β Sophos News
βΌ CVE-2023-23388 βΌ
π Read
via "National Vulnerability Database".
Windows Bluetooth Driver Elevation of Privilege Vulnerabilityπ Read
via "National Vulnerability Database".
βΌ CVE-2023-21708 βΌ
π Read
via "National Vulnerability Database".
Remote Procedure Call Runtime Remote Code Execution Vulnerabilityπ Read
via "National Vulnerability Database".
βΌ CVE-2023-23398 βΌ
π Read
via "National Vulnerability Database".
Microsoft Excel Spoofing Vulnerabilityπ Read
via "National Vulnerability Database".
βΌ CVE-2023-23421 βΌ
π Read
via "National Vulnerability Database".
Windows Kernel Elevation of Privilege Vulnerabilityπ Read
via "National Vulnerability Database".
βΌ CVE-2023-23404 βΌ
π Read
via "National Vulnerability Database".
Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerabilityπ Read
via "National Vulnerability Database".
βΌ CVE-2023-23383 βΌ
π Read
via "National Vulnerability Database".
Service Fabric Explorer Spoofing Vulnerabilityπ Read
via "National Vulnerability Database".
βΌ CVE-2023-23417 βΌ
π Read
via "National Vulnerability Database".
Windows Partition Management Driver Elevation of Privilege Vulnerabilityπ Read
via "National Vulnerability Database".
βΌ CVE-2023-23400 βΌ
π Read
via "National Vulnerability Database".
Windows DNS Server Remote Code Execution Vulnerabilityπ Read
via "National Vulnerability Database".
βΌ CVE-2023-23402 βΌ
π Read
via "National Vulnerability Database".
Windows Media Remote Code Execution Vulnerabilityπ Read
via "National Vulnerability Database".
βΌ CVE-2022-39216 βΌ
π Read
via "National Vulnerability Database".
Combodo iTop is an open source, web-based IT service management platform. Prior to versions 2.7.8 and 3.0.2-1, the reset password token is generated without any randomness parameter. This may lead to account takeover. The issue is fixed in versions 2.7.8 and 3.0.2-1.π Read
via "National Vulnerability Database".
βΌ CVE-2023-23420 βΌ
π Read
via "National Vulnerability Database".
Windows Kernel Elevation of Privilege Vulnerabilityπ Read
via "National Vulnerability Database".
βΌ CVE-2023-23389 βΌ
π Read
via "National Vulnerability Database".
Microsoft Defender Elevation of Privilege Vulnerabilityπ Read
via "National Vulnerability Database".
βΌ CVE-2023-23397 βΌ
π Read
via "National Vulnerability Database".
Microsoft Outlook Elevation of Privilege Vulnerabilityπ Read
via "National Vulnerability Database".
βΌ CVE-2023-23391 βΌ
π Read
via "National Vulnerability Database".
Office for Android Spoofing Vulnerabilityπ Read
via "National Vulnerability Database".
βΌ CVE-2023-23409 βΌ
π Read
via "National Vulnerability Database".
Client Server Run-Time Subsystem (CSRSS) Information Disclosure Vulnerabilityπ Read
via "National Vulnerability Database".
βΌ CVE-2023-23416 βΌ
π Read
via "National Vulnerability Database".
Windows Cryptographic Services Remote Code Execution Vulnerabilityπ Read
via "National Vulnerability Database".