βΌ CVE-2023-2536 βΌ
π Read
via "National Vulnerability Database".
** REJECT ** This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.π Read
via "National Vulnerability Database".
βΌ CVE-2023-28068 βΌ
π Read
via "National Vulnerability Database".
Dell Command Monitor, versions 10.9 and prior, contains an improper folder permission vulnerability. A local authenticated malicious user can potentially exploit this vulnerability leading to privilege escalation by writing to a protected directory when Dell Command Monitor is installed to a non-default pathπ Read
via "National Vulnerability Database".
βΌ CVE-2023-2537 βΌ
π Read
via "National Vulnerability Database".
** REJECT ** This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.π Read
via "National Vulnerability Database".
π΄ Google Expands Passkey Support with Passwordless Authentication π΄
π Read
via "Dark Reading".
One year after Apple, Google and Microsoft pledged to support the FIDO Allianceβs passkeys standard, support is growing, though still early in adoption.π Read
via "Dark Reading".
Dark Reading
Google Expands Passkey Support With Passwordless Authentication
One year after Apple, Google and Microsoft pledged to support the FIDO Allianceβs passkeys standard, support is growing, though still early in adoption.
π΄ The (Security) Cost of Too Much Data Privacy π΄
π Read
via "Dark Reading".
The online fraud prevention industry has taken the brunt of increased privacy actions.π Read
via "Dark Reading".
Dark Reading
The (Security) Cost of Too Much Data Privacy
The online fraud prevention industry has taken the brunt of increased privacy actions.
π΄ 2 Years After Colonial Pipeline, US Critical Infrastructure Still Not Ready for Ransomware π΄
π Read
via "Dark Reading".
Sweeping changes implemented since the May 2021 cyberattack are helping -- but more work remains to be done, security experts say.π Read
via "Dark Reading".
Dark Reading
2 Years After Colonial Pipeline, US Critical Infrastructure Still Not Ready for Ransomware
Sweeping changes implemented since the May 2021 cyberattack are helping β but more work remains to be done, security experts say.
π1
βΌ CVE-2023-30242 βΌ
π Read
via "National Vulnerability Database".
NS-ASG v6.3 was discovered to contain a SQL injection vulnerability via the component /admin/add_ikev2.php.π Read
via "National Vulnerability Database".
π΄ New White House AI Initiatives Include AI Software-Vetting Event at DEF CON π΄
π Read
via "Dark Reading".
The Biden administration outlined its plans to ensure responsible AI development β cyber-risk is a core element.π Read
via "Dark Reading".
Dark Reading
New White House AI Initiatives Include AI Software-Vetting Event at DEF CON
The Biden administration outlined its plans to ensure responsible AI development β cyber-risk is a core element.
βΌ CVE-2022-43919 βΌ
π Read
via "National Vulnerability Database".
IBM MQ 9.2 CD, 9.2 LTS, 9.3 CD, and 9.3 LTS could allow an authenticated attacker with authorization to craft messages to cause a denial of service. IBM X-Force ID: 241354.π Read
via "National Vulnerability Database".
βΌ CVE-2023-29935 βΌ
π Read
via "National Vulnerability Database".
llvm-project commit a0138390 was discovered to contain an assertion failure at !replacements.count(op) && "operation was already replaced.π Read
via "National Vulnerability Database".
βΌ CVE-2023-29932 βΌ
π Read
via "National Vulnerability Database".
llvm-project commit fdbc55a5 was discovered to contain a segmentation fault via the component mlir::IROperand<mlir::OpOperand.π Read
via "National Vulnerability Database".
βΌ CVE-2023-22874 βΌ
π Read
via "National Vulnerability Database".
IBM MQ Clients 9.2 CD, 9.3 CD, and 9.3 LTS are vulnerable to a denial of service attack when processing configuration files. IBM X-Force ID: 244216.π Read
via "National Vulnerability Database".
βΌ CVE-2023-29934 βΌ
π Read
via "National Vulnerability Database".
llvm-project commit 6c01b5c was discovered to contain a segmentation fault via the component mlir::Type::getDialect().π Read
via "National Vulnerability Database".
βΌ CVE-2023-30053 βΌ
π Read
via "National Vulnerability Database".
TOTOLINK A7100RU V7.4cu.2313_B20191024 is vulnerable to Command Injection.π Read
via "National Vulnerability Database".
βΌ CVE-2023-29939 βΌ
π Read
via "National Vulnerability Database".
llvm-project commit a0138390 was discovered to contain a segmentation fault via the component mlir::spirv::TargetEnv::TargetEnv(mlir::spirv::TargetEnvAttr).π Read
via "National Vulnerability Database".
βΌ CVE-2023-29941 βΌ
π Read
via "National Vulnerability Database".
llvm-project commit a0138390 was discovered to contain a segmentation fault via the component matchAndRewriteSortOp<mlir::sparse_tensor::SortOp>(mlir::sparse_tensor::SortOp.π Read
via "National Vulnerability Database".
βΌ CVE-2023-29933 βΌ
π Read
via "National Vulnerability Database".
llvm-project commit bd456297 was discovered to contain a segmentation fault via the component mlir::Block::getArgument.π Read
via "National Vulnerability Database".
βΌ CVE-2023-30243 βΌ
π Read
via "National Vulnerability Database".
Beijing Netcon NS-ASG Application Security Gateway v6.3 is vulnerable to SQL Injection via TunnelId that allows access to sensitive information.π Read
via "National Vulnerability Database".
βΌ CVE-2023-30434 βΌ
π Read
via "National Vulnerability Database".
IBM Storage Scale (IBM Spectrum Scale 5.1.0.0 through 5.1.2.9, 5.1.3.0 through 5.1.6.1 and IBM Elastic Storage Systems 6.1.0.0 through 6.1.2.5, 6.1.3.0 through 6.1.6.0) could allow a local user to cause a kernel panic. IBM X-Force ID: 252187.π Read
via "National Vulnerability Database".
βΌ CVE-2023-29942 βΌ
π Read
via "National Vulnerability Database".
llvm-project commit a0138390 was discovered to contain a segmentation fault via the component mlir::Type::isa<mlir::LLVM::LLVMVoidType.π Read
via "National Vulnerability Database".
βΌ CVE-2023-30013 βΌ
π Read
via "National Vulnerability Database".
TOTOLINK X5000R V9.1.0u.6118_B20201102 and V9.1.0u.6369_B20230113 contain a command insertion vulnerability in setting/setTracerouteCfg. This vulnerability allows an attacker to execute arbitrary commands through the "command" parameter.π Read
via "National Vulnerability Database".