🛡 Cybersecurity & Privacy 🛡 - News
25.8K subscribers
89.2K links
🗞 The finest daily news on cybersecurity and privacy.

🔔 Daily releases.

💻 Is your online life secure?

📩 lalilolalo.dev@gmail.com
Download Telegram
‼ CVE-2023-24943 ‼

Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-20098 ‼

A vulnerability in the CLI of Cisco SDWAN vManage Software could allow an authenticated, local attacker to delete arbitrary files. This vulnerability is due to improper filtering of directory traversal character sequences within system commands. An attacker with administrative privileges could exploit this vulnerability by running a system command containing directory traversal character sequences to target an arbitrary file. A successful exploit could allow the attacker to delete arbitrary files from the system, including files owned by root.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-24903 ‼

Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-24939 ‼

Server for NFS Denial of Service Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-24899 ‼

Windows Graphics Component Elevation of Privilege Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-24932 ‼

Secure Boot Security Feature Bypass Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-29336 ‼

Win32k Elevation of Privilege Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-29340 ‼

AV1 Video Extension Remote Code Execution Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-31472 ‼

An issue was discovered on GL.iNet devices before 3.216. There is an arbitrary file write in which an empty file can be created anywhere on the filesystem. This is caused by a command injection vulnerability with a filter applied.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-28283 ‼

Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-24954 ‼

Microsoft SharePoint Server Information Disclosure Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-24955 ‼

Microsoft SharePoint Server Remote Code Execution Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-29325 ‼

Windows OLE Remote Code Execution Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-29341 ‼

AV1 Video Extension Remote Code Execution Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-29335 ‼

Microsoft Word Security Feature Bypass Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-31474 ‼

An issue was discovered on GL.iNet devices before 3.216. Through the software installation feature, it is possible to inject arbitrary parameters in a request to cause opkg to obtain a list of files in a specific directory, by using the regex feature in a package name.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-29338 ‼

Visual Studio Code Information Disclosure Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-28290 ‼

Microsoft Remote Desktop app for Windows Information Disclosure Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-29324 ‼

Windows MSHTML Platform Security Feature Bypass Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-28251 ‼

Windows Driver Revocation List Security Feature Bypass Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-29333 ‼

Microsoft Access Denial of Service Vulnerability

📖 Read

via "National Vulnerability Database".