🛡 Cybersecurity & Privacy 🛡 - News
25.8K subscribers
89.2K links
🗞 The finest daily news on cybersecurity and privacy.

🔔 Daily releases.

💻 Is your online life secure?

📩 lalilolalo.dev@gmail.com
Download Telegram
‼️CVE-2023-31294‼️

CSV Injection vulnerability in Sesami Cash Point Transport Optimizer CPTO version 6.3.8.6 718, allows remote attackers to obtain sensitive information via the Delivery Name field.

📖 Read more

Via "National Vulnerability Database"
‼️CVE-2023-7147‼️

A vulnerability, which was classified as critical, was found in gopeak MasterLab up to 3.3.10. Affected is the function base64ImageContent of the file appctrlUser.php. The manipulation of the argument image leads to unrestricted upload. It is possible to launch the attack remotely. VDB249150 is the identifier assigned to this vulnerability.

📖 Read more

Via "National Vulnerability Database"
‼️CVE-2023-7148‼️

A vulnerability has been found in ShifuML shifu 0.12.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file srcmainjavamlshifushifucoreDataPurifier.java of the component Java Expression Language Handler. The manipulation of the argument FilterExpression leads to code injection. The attack can be launched remotely. The complexity of an attack is rather high. The exploitation appears to be difficult. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB249151.

📖 Read more

Via "National Vulnerability Database"
‼️CVE-2023-23441‼️

Some Honor products are affected by out of bounds read vulnerability, successful exploitation could cause information leak.

📖 Read more

Via "National Vulnerability Database"
‼️CVE-2023-23442‼️

Some Honor products are affected by type confusion vulnerability, successful exploitation could cause information leak.

📖 Read more

Via "National Vulnerability Database"
‼️CVE-2023-23443‼️

Some Honor products are affected by type confusion vulnerability, successful exploitation could cause information leak.

📖 Read more

Via "National Vulnerability Database"
‼️CVE-2023-31296‼️

CSV Injection vulnerability in Sesami Cash Point Transport Optimizer CPTO version 6.3.8.6 718, allows attackers to obtain sensitive information via the User Name field.

📖 Read more

Via "National Vulnerability Database"
‼️CVE-2023-51426‼️

Some Honor products are affected by type confusion vulnerability, successful exploitation could cause information leak.

📖 Read more

Via "National Vulnerability Database"
‼️CVE-2023-51427‼️

Some Honor products are affected by type confusion vulnerability, successful exploitation could cause information leak.

📖 Read more

Via "National Vulnerability Database"
‼️CVE-2023-51428‼️

Some Honor products are affected by type confusion vulnerability, successful exploitation could cause information leak.

📖 Read more

Via "National Vulnerability Database"
‼️CVE-2023-51429‼️

Some Honor products are affected by incorrect privilege assignment vulnerability, successful exploitation could cause information leak.

📖 Read more

Via "National Vulnerability Database"
‼️CVE-2023-51430‼️

Some Honor products are affected by incorrect privilege assignment vulnerability, successful exploitation could cause information leak.

📖 Read more

Via "National Vulnerability Database"
‼️CVE-2023-51431‼️

Some Honor products are affected by incorrect privilege assignment vulnerability, successful exploitation could cause device service exceptions.

📖 Read more

Via "National Vulnerability Database"
‼️CVE-2023-51432‼️

Some Honor products are affected by out of bounds read vulnerability, successful exploitation could cause information leak.

📖 Read more

Via "National Vulnerability Database"
‼️CVE-2023-51433‼️

Some Honor products are affected by incorrect privilege assignment vulnerability, successful exploitation could cause information leak.

📖 Read more

Via "National Vulnerability Database"
‼️CVE-2023-51434‼️

Some Honor products are affected by buffer overflow vulnerability, successful exploitation could cause code execution.

📖 Read more

Via "National Vulnerability Database"
‼️CVE-2023-51435‼️

Some Honor products are affected by incorrect privilege assignment vulnerability, successful exploitation could cause information leak.

📖 Read more

Via "National Vulnerability Database"
‼️CVE-2023-52173‼️

XnView Classic before 2.51.3 on Windows has a Write Access Violation at xnview.exe0x3ADBD0.

📖 Read more

Via "National Vulnerability Database"
‼️CVE-2023-52174‼️

XnView Classic before 2.51.3 on Windows has a Write Access Violation at xnview.exe0x3125D6.

📖 Read more

Via "National Vulnerability Database"
‼️CVE-2023-6939‼️

Some Honor products are affected by type confusion vulnerability, successful exploitation could cause denial of service.

📖 Read more

Via "National Vulnerability Database"
‼️CVE-2023-7149‼️

A vulnerability was found in codeprojects QR Code Generator 1.0. It has been classified as problematic. This affects an unknown part of the file download.php?fileauthor.png. The manipulation of the argument file with the input " leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB249153 was assigned to this vulnerability.

📖 Read more

Via "National Vulnerability Database"