โผ CVE-2023-27019 โผ
๐ Read
via "National Vulnerability Database".
Tenda AC10 US_AC10V4.0si_V16.03.10.13_cn was discovered to contain a stack overflow via the sub_458FBC function. This vulnerability allows attackers to cause a Denial of Service (DoS) or execute arbitrary code via a crafted payload.๐ Read
via "National Vulnerability Database".
โผ CVE-2023-27013 โผ
๐ Read
via "National Vulnerability Database".
Tenda AC10 US_AC10V4.0si_V16.03.10.13_cn was discovered to contain a stack overflow via the get_parentControl_list_Info function. This vulnerability allows attackers to cause a Denial of Service (DoS) or execute arbitrary code via a crafted payload.๐ Read
via "National Vulnerability Database".
โผ CVE-2023-27016 โผ
๐ Read
via "National Vulnerability Database".
Tenda AC10 US_AC10V4.0si_V16.03.10.13_cn was discovered to contain a stack overflow via the R7WebsSecurityHandler function. This vulnerability allows attackers to cause a Denial of Service (DoS) or execute arbitrary code via a crafted payload.๐ Read
via "National Vulnerability Database".
โผ CVE-2020-11935 โผ
๐ Read
via "National Vulnerability Database".
It was discovered that aufs improperly managed inode reference counts in the vfsub_dentry_open() method. A local attacker could use this vulnerability to cause a denial of service attack.๐ Read
via "National Vulnerability Database".
โผ CVE-2023-25218 โผ
๐ Read
via "National Vulnerability Database".
Tenda AC5 US_AC5V1.0RTL_V15.03.06.28 was discovered to contain a stack overflow via the form_fast_setting_wifi_set function. This vulnerability allows attackers to cause a Denial of Service (DoS) or execute arbitrary code via a crafted payload.๐ Read
via "National Vulnerability Database".
โผ CVE-2023-27017 โผ
๐ Read
via "National Vulnerability Database".
Tenda AC10 US_AC10V4.0si_V16.03.10.13_cn was discovered to contain a stack overflow via the sub_45DC58 function. This vulnerability allows attackers to cause a Denial of Service (DoS) or execute arbitrary code via a crafted payload.๐ Read
via "National Vulnerability Database".
โผ CVE-2023-24800 โผ
๐ Read
via "National Vulnerability Database".
D-Link DIR878 DIR_878_FW120B05 was discovered to contain a stack overflow in the sub_495220 function. This vulnerability allows attackers to cause a Denial of Service (DoS) or execute arbitrary code via a crafted payload.๐ Read
via "National Vulnerability Database".
โผ CVE-2023-24799 โผ
๐ Read
via "National Vulnerability Database".
D-Link DIR878 DIR_878_FW120B05 was discovered to contain a stack overflow in the sub_48AF78 function. This vulnerability allows attackers to cause a Denial of Service (DoS) or execute arbitrary code via a crafted payload.๐ Read
via "National Vulnerability Database".
โผ CVE-2023-27021 โผ
๐ Read
via "National Vulnerability Database".
Tenda AC10 US_AC10V4.0si_V16.03.10.13_cn was discovered to contain a stack overflow via the formSetFirewallCfg function. This vulnerability allows attackers to cause a Denial of Service (DoS) or execute arbitrary code via a crafted payload.๐ Read
via "National Vulnerability Database".
โผ CVE-2023-25061 โผ
๐ Read
via "National Vulnerability Database".
Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Kiboko Labs Arigato Autoresponder and Newsletter plugin <= 2.7.1.1 versions.๐ Read
via "National Vulnerability Database".
โผ CVE-2023-24402 โผ
๐ Read
via "National Vulnerability Database".
Auth. (admin+) Cross-Site Scripting (XSS) vulnerability in Veribo, Roland Murg WP Booking System รขโฌโ Booking Calendar plugin <= 2.0.18 versions.๐ Read
via "National Vulnerability Database".
โผ CVE-2023-1937 โผ
๐ Read
via "National Vulnerability Database".
A vulnerability, which was classified as problematic, was found in zhenfeng13 My-Blog. Affected is an unknown function of the file /admin/configurations/userInfo. The manipulation of the argument yourAvatar/yourName/yourEmail leads to cross-site request forgery. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. This product is using a rolling release to provide continious delivery. Therefore, no version details for affected nor updated releases are available. The identifier of this vulnerability is VDB-225264.๐ Read
via "National Vulnerability Database".
โผ CVE-2023-25059 โผ
๐ Read
via "National Vulnerability Database".
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in avalex GmbH avalex รขโฌโ Automatically secure legal texts plugin <= 3.0.3 versions.๐ Read
via "National Vulnerability Database".
โผ CVE-2023-28051 โผ
๐ Read
via "National Vulnerability Database".
Dell Power Manager, versions 3.10 and prior, contains an Improper Access Control vulnerability. A low-privileged attacker could potentially exploit this vulnerability to elevate privileges on the system.๐ Read
via "National Vulnerability Database".
๐ด Cybercriminals 'CAN' Steal Your Car, Using Novel IoT Hack ๐ด
๐ Read
via "Dark Reading".
Your family's SUV could be gone in the night thanks to a headlight crack and hack attack.๐ Read
via "Dark Reading".
Dark Reading
Cybercriminals 'CAN' Steal Your Car, Using Novel IoT Hack
Your family's SUV could be gone in the night thanks to a headlight crack and hack attack.
๐ด Bad Actors Will Use Large Language Models โ but Defenders Can, Too ๐ด
๐ Read
via "Dark Reading".
Security teams need to find the best, most effective uses of large language models for defensive purposes.๐ Read
via "Dark Reading".
Dark Reading
Bad Actors Will Use Large Language Models โ but Defenders Can, Too
Security teams need to find the best, most effective uses of large language models for defensive purposes.
๐ด Cybercriminals 'CAN' Steal Your Car, Using Novel IoT Hack ๐ด
๐ Read
via "Dark Reading".
Your family's SUV could be gone in the night thanks to a headlight crack and hack attack.๐ Read
via "Dark Reading".
Dark Reading
Cybercriminals 'CAN' Steal Your Car, Using Novel IoT Hack
Your family's SUV could be gone in the night thanks to a headlight crack and hack attack.
โผ CVE-2023-29236 โผ
๐ Read
via "National Vulnerability Database".
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Cththemes Outdoor theme <= 3.9.6 versions.๐ Read
via "National Vulnerability Database".
โผ CVE-2023-25705 โผ
๐ Read
via "National Vulnerability Database".
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Go Prayer WP Prayer plugin <= 1.9.6 versions.๐ Read
via "National Vulnerability Database".
โผ CVE-2023-25712 โผ
๐ Read
via "National Vulnerability Database".
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in WP-Buddy Google Analytics Opt-Out plugin <= 2.3.4 versions.๐ Read
via "National Vulnerability Database".
โผ CVE-2023-23885 โผ
๐ Read
via "National Vulnerability Database".
Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Fullworks Quick Contact Form plugin <= 8.0.3.1 versions.๐ Read
via "National Vulnerability Database".