โผ CVE-2023-25542 โผ
๐ Read
via "National Vulnerability Database".
Dell Trusted Device Agent, versions prior to 5.3.0, contain(s) an improper installation permissions vulnerability. An unauthenticated local attacker could potentially exploit this vulnerability, leading to escalated privileges.๐ Read
via "National Vulnerability Database".
โผ CVE-2023-29416 โผ
๐ Read
via "National Vulnerability Database".
An issue was discovered in libbzip3.a in bzip3 before 1.3.0. A bz3_decode_block out-of-bounds write can occur with a crafted archive because bzip3 does not follow the required procedure for interacting with libsais.๐ Read
via "National Vulnerability Database".
โผ CVE-2023-29419 โผ
๐ Read
via "National Vulnerability Database".
An issue was discovered in libbzip3.a in bzip3 before 1.2.3. There is a bz3_decode_block out-of-bounds read.๐ Read
via "National Vulnerability Database".
โผ CVE-2023-29421 โผ
๐ Read
via "National Vulnerability Database".
An issue was discovered in libbzip3.a in bzip3 before 1.2.3. There is an out-of-bounds write in bz3_decode_block.๐ Read
via "National Vulnerability Database".
โผ CVE-2023-23982 โผ
๐ Read
via "National Vulnerability Database".
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in WPGear.Pro WPFrom Email plugin <= 1.8.8 versions.๐ Read
via "National Vulnerability Database".
โผ CVE-2023-29415 โผ
๐ Read
via "National Vulnerability Database".
An issue was discovered in libbzip3.a in bzip3 before 1.3.0. A denial of service (process hang) can occur with a crafted archive because bzip3 does not follow the required procedure for interacting with libsais.๐ Read
via "National Vulnerability Database".
โผ CVE-2023-24003 โผ
๐ Read
via "National Vulnerability Database".
Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Timersys WP Popups รขโฌโ WordPress Popup plugin <= 2.1.4.8 versions.๐ Read
via "National Vulnerability Database".
โผ CVE-2023-23979 โผ
๐ Read
via "National Vulnerability Database".
Unauth. Stored Cross-Site Scripting (XSS) vulnerability in Fullworks Quick Event Manager plugin <= 9.7.4 versions.๐ Read
via "National Vulnerability Database".
โผ CVE-2023-29420 โผ
๐ Read
via "National Vulnerability Database".
An issue was discovered in libbzip3.a in bzip3 before 1.2.3. There is a crash caused by an invalid memmove in bz3_decode_block.๐ Read
via "National Vulnerability Database".
โผ CVE-2023-24006 โผ
๐ Read
via "National Vulnerability Database".
Auth. (admin+) Cross-Site Scripting (XSS) vulnerability in Link Software LLC WP Terms Popup plugin <= 2.6.0 versions.๐ Read
via "National Vulnerability Database".
โผ CVE-2023-23815 โผ
๐ Read
via "National Vulnerability Database".
Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Alan Jackson Multi-column Tag Map plugin <= 17.0.24 versions.๐ Read
via "National Vulnerability Database".
โผ CVE-2023-28046 โผ
๐ Read
via "National Vulnerability Database".
Dell Display Manager, versions 2.1.0 and prior, contains an arbitrary file or folder deletion vulnerability during uninstallation A local low privilege attacker could potentially exploit this vulnerability, leading to the deletion of arbitrary files on the operating system with high privileges.๐ Read
via "National Vulnerability Database".
โผ CVE-2023-23971 โผ
๐ Read
via "National Vulnerability Database".
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in CodePeople WP Time Slots Booking Form plugin <= 1.1.81 versions.๐ Read
via "National Vulnerability Database".
โผ CVE-2023-24001 โผ
๐ Read
via "National Vulnerability Database".
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Yannick Lefebvre Modal Dialog plugin <= 3.5.9 versions.๐ Read
via "National Vulnerability Database".
โผ CVE-2023-29418 โผ
๐ Read
via "National Vulnerability Database".
An issue was discovered in libbzip3.a in bzip3 before 1.2.3. There is an xwrite out-of-bounds read.๐ Read
via "National Vulnerability Database".
โผ CVE-2023-24002 โผ
๐ Read
via "National Vulnerability Database".
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in WPdevart YouTube Embed, Playlist and Popup by WpDevArt plugin <= 2.6.3 versions.๐ Read
via "National Vulnerability Database".
โผ CVE-2023-23987 โผ
๐ Read
via "National Vulnerability Database".
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in WPEverest User Registration plugin <= 2.3.0 versions.๐ Read
via "National Vulnerability Database".
โผ CVE-2023-23980 โผ
๐ Read
via "National Vulnerability Database".
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in MailOptin Popup Builder Team MailOptin plugin <= 1.2.54.0 versions.๐ Read
via "National Vulnerability Database".
โผ CVE-2023-1802 โผ
๐ Read
via "National Vulnerability Database".
In Docker Desktop 4.17.x the Artifactory Integration falls back to sending registry credentials over plain HTTP if the HTTPS health check has failed. A targeted network sniffing attack can lead to a disclosure of sensitive information. Only users who have Access Experimental Features enabled and have logged in to a private registry are affected.๐ Read
via "National Vulnerability Database".
๐ด The Pope's Security Gets a Boost With Vatican's MDM Move ๐ด
๐ Read
via "Dark Reading".
Faced with enterprise challenges, the Holy See looks to ensure it avoids a "holey" mobile device management solution.๐ Read
via "Dark Reading".
Dark Reading
The Pope's Security Gets a Boost With Vatican's MDM Move
Faced with enterprise challenges, the Holy See looks to ensure it avoids a "holey" mobile device management solution.
๐ด Styx Marketplace Provides Hub for Financial Cybercrime ๐ด
๐ Read
via "Dark Reading".
An emerging, illicit marketplace proves that financial cybercrime is still on the rise, with a need for countries to collectively put safeguards in place.๐ Read
via "Dark Reading".
Dark Reading
Styx Marketplace Provides Hub for Financial Cybercrime
An emerging, illicit marketplace proves that financial cybercrime is still on the rise, with a need for countries to collectively put safeguards in place.