🛡 Cybersecurity & Privacy 🛡 - News
25.8K subscribers
89.2K links
🗞 The finest daily news on cybersecurity and privacy.

🔔 Daily releases.

💻 Is your online life secure?

📩 lalilolalo.dev@gmail.com
Download Telegram
‼ CVE-2023-35376 ‼

Microsoft Message Queuing Denial of Service Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-36894 ‼

Microsoft SharePoint Server Information Disclosure Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-35379 ‼

Reliability Analysis Metrics Calculation Engine (RACEng) Elevation of Privilege Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-36912 ‼

Microsoft Message Queuing Denial of Service Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-39218 ‼

Client-side enforcement of server-side security in Zoom clients before 5.14.10 may allow a privileged user to enable information disclosure via network access.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-40041 ‼

TOTOLINK T10_v2 5.9c.5061_B20200511 has a stack-based buffer overflow in setWiFiWpsConfig in /lib/cste_modules/wps.so. Attackers can send crafted data in an MQTT packet, via the pin parameter, to control the return address and execute code.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-38815 ‼

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2023-40042. Reason: This candidate is a reservation duplicate of CVE-2023-40042. Notes: All CVE users should reference CVE-2023-40042 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-36908 ‼

Windows Hyper-V Information Disclosure Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-35387 ‼

Windows Bluetooth A2DP driver Elevation of Privilege Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-38180 ‼

.NET and Visual Studio Denial of Service Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-35389 ‼

Microsoft Dynamics 365 On-Premises Remote Code Execution Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-35377 ‼

Microsoft Message Queuing Denial of Service Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-38170 ‼

HEVC Video Extensions Remote Code Execution Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-35381 ‼

Windows Fax Service Remote Code Execution Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-20562 ‼

Insufficient validation in the IOCTL (Input Output Control) input buffer in AMD uProf may allow an authenticated user to load an unsigned driver potentially leading to arbitrary kernel execution.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-38184 ‼

Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-38254 ‼

Microsoft Message Queuing Denial of Service Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-20555 ‼

Insufficient input validation inCpmDisplayFeatureSmm may allow an attacker to corrupt SMM memory by overwritingan arbitrary bit in an attacker-controlled pointer potentially leading toarbitrary code execution in SMM.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-36911 ‼

Microsoft Message Queuing Remote Code Execution Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-29328 ‼

Microsoft Teams Remote Code Execution Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-35388 ‼

Microsoft Exchange Server Remote Code Execution Vulnerability

📖 Read

via "National Vulnerability Database".