🛡 Cybersecurity & Privacy 🛡 - News
25.8K subscribers
89.2K links
🗞 The finest daily news on cybersecurity and privacy.

🔔 Daily releases.

💻 Is your online life secure?

📩 lalilolalo.dev@gmail.com
Download Telegram
‼️CVE-2023-23432‼️

Some Honor products are affected by signature management vulnerability, successful exploitation could cause the forged system file overwrite the correct system file.

📖 Read more

Via "National Vulnerability Database"
‼️CVE-2023-23433‼️

Some Honor products are affected by signature management vulnerability, successful exploitation could cause the forged system file overwrite the correct system file.

📖 Read more

Via "National Vulnerability Database"
‼️CVE-2023-23434‼️

Some Honor products are affected by information leak vulnerability, successful exploitation could cause the information leak.

📖 Read more

Via "National Vulnerability Database"
‼️CVE-2023-23435‼️

Some Honor products are affected by signature management vulnerability, successful exploitation could cause the forged system file overwrite the correct system file

📖 Read more

Via "National Vulnerability Database"
‼️CVE-2023-23436‼️

Some Honor products are affected by signature management vulnerability, successful exploitation could cause the forged system file overwrite the correct system file

📖 Read more

Via "National Vulnerability Database"
‼️CVE-2023-31292‼️

An issue was discovered in Sesami Cash Point Transport Optimizer CPTO 6.3.8.6 718, allows local attackers to obtain sensitive information and bypass authentication via "Back Button Refresh" attack.

📖 Read more

Via "National Vulnerability Database"
‼️CVE-2023-31298‼️

Cross Site Scripting XSS vulnerability in Sesami Cash Point Transport Optimizer CPTO version 6.3.8.6 718, allows remote attackers to execute arbitrary code and obtain sensitive information via the User ID field when creating a new system user.

📖 Read more

Via "National Vulnerability Database"
‼️CVE-2023-31301‼️

Stored Cross Site Scripting XSS Vulnerability in Sesami Cash Point Transport Optimizer CPTO version 6.3.8.6 718, allows remote attackers to execute arbitrary code and obtain sensitive information via the Username field of the login form and application log.

📖 Read more

Via "National Vulnerability Database"
‼️CVE-2023-7145‼️

A vulnerability classified as critical was found in gopeak MasterLab up to 3.3.10. This vulnerability affects the function sqlInject of the file appctrlFramework.php of the component HTTP POST Request Handler. The manipulation of the argument pwd leads to sql injection. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB249148.

📖 Read more

Via "National Vulnerability Database"
‼️CVE-2023-7146‼️

A vulnerability, which was classified as critical, has been found in gopeak MasterLab up to 3.3.10. This issue affects the function sqlInjectDelete of the file appctrlframeworkFeature.php of the component HTTP POST Request Handler. The manipulation of the argument phone leads to sql injection. The exploit has been disclosed to the public and may be used. The identifier VDB249149 was assigned to this vulnerability.

📖 Read more

Via "National Vulnerability Database"
👍1
‼️CVE-2023-23424‼️

Some Honor products are affected by file writing vulnerability, successful exploitation could cause code execution

📖 Read more

Via "National Vulnerability Database"
‼️CVE-2023-23426‼️

Some Honor products are affected by file writing vulnerability, successful exploitation could cause information disclosure.

📖 Read more

Via "National Vulnerability Database"
‼️CVE-2023-23427‼️

Some Honor products are affected by incorrect privilege assignment vulnerability, successful exploitation could cause device service exceptions.

📖 Read more

Via "National Vulnerability Database"
‼️CVE-2023-23428‼️

Some Honor products are affected by incorrect privilege assignment vulnerability, successful exploitation could cause device service exceptions.

📖 Read more

Via "National Vulnerability Database"
‼️CVE-2023-23429‼️

Some Honor products are affected by incorrect privilege assignment vulnerability, successful exploitation could cause device service exceptions.

📖 Read more

Via "National Vulnerability Database"
‼️CVE-2023-23430‼️

Some Honor products are affected by incorrect privilege assignment vulnerability, successful exploitation could cause device service exceptions.

📖 Read more

Via "National Vulnerability Database"
‼️CVE-2023-23437‼️

Some Honor products are affected by information leak vulnerability, successful exploitation could cause the information leak

📖 Read more

Via "National Vulnerability Database"
👍1
‼️CVE-2023-23438‼️

Some Honor products are affected by incorrect privilege assignment vulnerability, successful exploitation could cause device service exceptions

📖 Read more

Via "National Vulnerability Database"
‼️CVE-2023-23439‼️

Some Honor products are affected by information leak vulnerability, successful exploitation could cause the information leak.

📖 Read more

Via "National Vulnerability Database"
‼️CVE-2023-23440‼️

Some Honor products are affected by information leak vulnerability, successful exploitation could cause the information leak.

📖 Read more

Via "National Vulnerability Database"
‼️CVE-2023-31293‼️

An issue was discovered in Sesami Cash Point Transport Optimizer CPTO 6.3.8.6 718, allows remote attackers to obtain sensitive information and bypass profile restriction via improper access control in the Reader system user's web browser, allowing the journal to be displayed, despite the option being disabled.

📖 Read more

Via "National Vulnerability Database"