πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
β€Ό CVE-2023-3105 β€Ό

The LearnDash LMS plugin for WordPress is vulnerable to Insecure Direct Object References in versions up to, and including, 4.6.0. This is due to the plugin providing user-controlled access to objects, letting a user bypass authorization and access system resources. This makes it possible for attackers with with existing account access at any level, to change user passwords and potentially take over administrator accounts.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2023-3082 β€Ό

The Post SMTP plugin for WordPress is vulnerable to Stored Cross-Site Scripting via email contents in versions up to, and including, 2.5.7 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2023-30927 β€Ό

In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2023-3199 β€Ό

The MStore API plugin for WordPress is vulnerable to Cross-Site Request Forgery due to missing nonce validation on the mstore_update_status_order_title function. This makes it possible for unauthenticated attackers to update status order title via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2023-30935 β€Ό

In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2023-33884 β€Ό

In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2023-3023 β€Ό

The WP EasyCart plugin for WordPress is vulnerable to time-based SQL Injection via the Γ’β‚¬ΛœorderbyÒ€ℒ parameter in versions up to, and including, 5.4.10 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers, with administrator-level or above permissions, to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2023-29414 β€Ό

A CWE-120: Buffer Copy without Checking Size of Input (Classic Buffer Overflow) vulnerabilityexists that could cause user privilege escalation if a local user sends specific string input to alocal function call.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2023-3158 β€Ό

The Mail Control plugin for WordPress is vulnerable to Stored Cross-Site Scripting via an email subject in versions up to, and including, 0.2.8 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2023-33891 β€Ό

In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-48450 β€Ό

In bluetooth service, there is a possible missing params check. This could lead to local denial of service with System execution privileges needed.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2023-30929 β€Ό

In telephony service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2023-3202 β€Ό

The MStore API plugin for WordPress is vulnerable to Cross-Site Request Forgery due to missing nonce validation on the mstore_update_firebase_server_key function. This makes it possible for unauthenticated attackers to update the firebase server key to push notification when order status changed via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2020-36761 β€Ό

The Top 10 plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2.10.4. This is due to missing or incorrect nonce validation on the tptn_export_tables() function. This makes it possible for unauthenticated attackers to generate an export of the top 10 table via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2023-30917 β€Ό

In DMService, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2023-30937 β€Ό

In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2023-33879 β€Ό

In music service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2023-2562 β€Ό

The Gallery Metabox for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the refresh_metabox function in versions up to, and including, 1.5. This makes it possible for subscriber-level attackers to obtain a list of images attached to a post.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2023-33880 β€Ό

In music service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2023-30921 β€Ό

In messaging service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed.

πŸ“– Read

via "National Vulnerability Database".
πŸ“’ Microsoft SQL password-guessing attacks rising as hackers pivot from OneNote vectors πŸ“’

Database admins are advised to enforce better controls as attacks ending in ransomware are being observed

πŸ“– Read

via "ITPro".