🛡 Cybersecurity & Privacy 🛡 - News
25.8K subscribers
89.2K links
🗞 The finest daily news on cybersecurity and privacy.

🔔 Daily releases.

💻 Is your online life secure?

📩 lalilolalo.dev@gmail.com
Download Telegram
‼ CVE-2023-33886 ‼

In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-30928 ‼

In telephony service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-3106 ‼

A NULL pointer dereference vulnerability was found in netlink_dump. This issue can occur when the Netlink socket receives the message(sendmsg) for the XFRM_MSG_GETSA, XFRM_MSG_GETPOLICY type message, and the DUMP flag is set and can cause a denial of service or possibly another unspecified impact. Due to the nature of the flaw, privilege escalation cannot be fully ruled out, although it is unlikely.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-3135 ‼

The Mailtree Log Mail plugin for WordPress is vulnerable to Stored Cross-Site Scripting via an email subject in versions up to, and including, 1.0.0 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-2517 ‼

The Metform Elementor Contact Form Builder plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 3.3.2. This is due to missing or incorrect nonce validation on the permalink_setup function. This makes it possible for unauthenticated attackers to change the permalink structure via a forged request granted they can trick a site administrator into performing an action such as clicking on a link. While nonce verification is implemented, verification only takes place when a nonce is provided.

📖 Read

via "National Vulnerability Database".
‼ CVE-2021-4420 ‼

The Sell Media plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2.5.5. This is due to missing or incorrect nonce validation on the sell_media_process() function. This makes it possible for unauthenticated attackers to sell media paypal orders via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-2763 ‼

Use-After-Free, Out-of-bounds Write and Heap-based Buffer Overflow vulnerabilities exist in the DWG and DXF file reading procedure in SOLIDWORKS Desktop from Release SOLIDWORKS 2021 through Release SOLIDWORKS 2023. These vulnerabilities could allow an attacker to execute arbitrary code while opening a specially crafted DWG or DXF file.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-30940 ‼

In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-33893 ‼

In fastDial service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-33889 ‼

In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-33883 ‼

In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-33892 ‼

In fastDial service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-3011 ‼

The ARMember plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 4.0.5. This is due to missing or incorrect nonce validation on the arm_check_user_cap function. This makes it possible for unauthenticated attackers to perform multiple unauthorized actions via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-37200 ‼

A CWE-611: Improper Restriction of XML External Entity Reference vulnerability exists thatcould cause loss of confidentiality when replacing a project file on the local filesystem and aftermanual restart of the server.

📖 Read

via "National Vulnerability Database".
‼ CVE-2020-36756 ‼

The 10WebAnalytics plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.2.8. This is due to missing or incorrect nonce validation on the create_csv_file() function. This makes it possible for unauthenticated attackers to create a CSV file via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-3369 ‼

The About Me 3000 widget plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in versions up to, and including, 2.2.6 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with administrator-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. This only affects multi-site installations and installations where unfiltered_html has been disabled.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-3105 ‼

The LearnDash LMS plugin for WordPress is vulnerable to Insecure Direct Object References in versions up to, and including, 4.6.0. This is due to the plugin providing user-controlled access to objects, letting a user bypass authorization and access system resources. This makes it possible for attackers with with existing account access at any level, to change user passwords and potentially take over administrator accounts.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-3082 ‼

The Post SMTP plugin for WordPress is vulnerable to Stored Cross-Site Scripting via email contents in versions up to, and including, 2.5.7 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-30927 ‼

In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-3199 ‼

The MStore API plugin for WordPress is vulnerable to Cross-Site Request Forgery due to missing nonce validation on the mstore_update_status_order_title function. This makes it possible for unauthenticated attackers to update status order title via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-30935 ‼

In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed.

📖 Read

via "National Vulnerability Database".