🚨 CVE-2021-3431
Assertion reachable with repeated LL_FEATURE_REQ. Zephyr versions >= v2.5.0 contain Reachable Assertion (CWE-617). For more information, see https://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-7548-5m6f-mqv9
🎖@cveNotify
Assertion reachable with repeated LL_FEATURE_REQ. Zephyr versions >= v2.5.0 contain Reachable Assertion (CWE-617). For more information, see https://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-7548-5m6f-mqv9
🎖@cveNotify
GitHub
BT: Assertion failure on repeated LL_FEATURE_REQ
### Impact
BT: Assertion failure on repeated LL_FEATURE_REQ
### Patches
This has been fixed in:
- main #33340
- v2.5: #33369
- v1.14: NA
### For more information
If you have any questio...
BT: Assertion failure on repeated LL_FEATURE_REQ
### Patches
This has been fixed in:
- main #33340
- v2.5: #33369
- v1.14: NA
### For more information
If you have any questio...
🚨 CVE-2021-3430
Assertion reachable with repeated LL_CONNECTION_PARAM_REQ. Zephyr versions >= v1.14 contain Reachable Assertion (CWE-617). For more information, see https://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-46h3-hjcq-2jjr
🎖@cveNotify
Assertion reachable with repeated LL_CONNECTION_PARAM_REQ. Zephyr versions >= v1.14 contain Reachable Assertion (CWE-617). For more information, see https://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-46h3-hjcq-2jjr
🎖@cveNotify
GitHub
BT: Assertion failure on repeated LL_CONNECTION_PARAM_REQ
### Impact
Assertion reachable with repeated LL_CONNECTION_PARAM_REQ.
### Patches
This has been fixed in:
- main: #33272
- v2.5: #33369
- v1.14: #33759
### For more information
If you h...
Assertion reachable with repeated LL_CONNECTION_PARAM_REQ.
### Patches
This has been fixed in:
- main: #33272
- v2.5: #33369
- v1.14: #33759
### For more information
If you h...
🚨 CVE-2021-3432
Invalid interval in CONNECT_IND leads to Division by Zero. Zephyr versions >= v1.14.0 Divide By Zero (CWE-369). For more information, see https://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-7364-p4wc-8mj4
🎖@cveNotify
Invalid interval in CONNECT_IND leads to Division by Zero. Zephyr versions >= v1.14.0 Divide By Zero (CWE-369). For more information, see https://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-7364-p4wc-8mj4
🎖@cveNotify
GitHub
BT: Invalid interval in CONNECT_IND leads to Division by Zero
### Impact
Invalid interval in CONNECT_IND leads to Division by Zero
### Patches
This has been fixed in:
- main #33278
- v2.5: #33369
- v1.14: TBD
### For more information
If you have a...
Invalid interval in CONNECT_IND leads to Division by Zero
### Patches
This has been fixed in:
- main #33278
- v2.5: #33369
- v1.14: TBD
### For more information
If you have a...
🚨 CVE-2022-32974
An authenticated attacker could read arbitrary files from the underlying operating system of the scanner using a custom crafted compliance audit file without providing any valid SSH credentials.
🎖@cveNotify
An authenticated attacker could read arbitrary files from the underlying operating system of the scanner using a custom crafted compliance audit file without providing any valid SSH credentials.
🎖@cveNotify
Tenable®
[R3] Nessus Version 10.2.0 Fixes Multiple Vulnerabilities
Nessus leverages third-party software to help provide underlying functionality. Several of the third-party components (zlib, expat, jQuery UI) were found to contain vulnerabilities, and updated versions have been made available by the providers. Additionally…
🚨 CVE-2022-33995
A path traversal issue in entry attachments in Devolutions Remote Desktop Manager before 2022.2 allows attackers to create or overwrite files in an arbitrary location.
🎖@cveNotify
A path traversal issue in entry attachments in Devolutions Remote Desktop Manager before 2022.2 allows attackers to create or overwrite files in an arbitrary location.
🎖@cveNotify
Devolutions
Devolutions | Productivity & security solutions for IT professionals
Discover one Devolutions ecosystem for remote connections, passwords, privileged access, and automation — secure productivity for IT professionals worldwide.
🚨 CVE-2022-31884
Marval MSM v14.19.0.12476 has an Improper Access Control vulnerability which allows a low privilege user to delete other users API Keys including high privilege and the Administrator users API Keys.
🎖@cveNotify
Marval MSM v14.19.0.12476 has an Improper Access Control vulnerability which allows a low privilege user to delete other users API Keys including high privilege and the Administrator users API Keys.
🎖@cveNotify
Marval
Marval ITSM: Where people, process, and technology unite
Transform your IT and service support operations with Marval ITSM. Our integrated solutions, aligned with ITIL and ISO/IEC 20000, deliver cost reduction, standardization, ICT efficiency, and improved customer satisfaction. Partner with us to elevate your…
🚨 CVE-2022-25238
Silverstripe silverstripe/framework through 4.10.0 allows XSS, inside of script tags that can can be added to website content via XHR by an authenticated CMS user if the cwp-core module is not installed on the sanitise_server_side contig is not set to true in project code.
🎖@cveNotify
Silverstripe silverstripe/framework through 4.10.0 allows XSS, inside of script tags that can can be added to website content via XHR by an authenticated CMS user if the cwp-core module is not installed on the sanitise_server_side contig is not set to true in project code.
🎖@cveNotify
🚨 CVE-2022-24444
Silverstripe silverstripe/framework through 4.10 allows Session Fixation.
🎖@cveNotify
Silverstripe silverstripe/framework through 4.10 allows Session Fixation.
🎖@cveNotify
🚨 CVE-2021-41559
Silverstripe silverstripe/framework 4.8.1 has a quadratic blowup in Convert::xml2array() that enables a remote attack via a crafted XML document.
🎖@cveNotify
Silverstripe silverstripe/framework 4.8.1 has a quadratic blowup in Convert::xml2array() that enables a remote attack via a crafted XML document.
🎖@cveNotify
www.silverstripe.org
Security Releases
When potential security holes are discovered in SilverStripe's supported modules[https://docs.silverstripe.org/en/project_governance/supported_modules/], we produce security releases to ensure that you are able to promptly secure your SilverStripe websites…
🚨 CVE-2020-19897
A reflected Cross Site Scripting (XSS) in wuzhicms v4.1.0 allows remote attackers to execute arbitrary web script or HTML via the imgurl parameter.
🎖@cveNotify
A reflected Cross Site Scripting (XSS) in wuzhicms v4.1.0 allows remote attackers to execute arbitrary web script or HTML via the imgurl parameter.
🎖@cveNotify
GitHub
wuzhicms v4.1.0 statcode reflected xss vulnerability · Issue #183 · wuzhicms/wuzhicms
A xss vulnerability was discovered in WUZHI CMS 4.1.0 There is a reflected XSS vulnerability which allows remote attackers to inject arbitrary web script or HTML via the imgurl parameter of /index....
🚨 CVE-2020-19896
File inclusion vulnerability in Minicms v1.9 allows remote attackers to execute arbitary PHP code via post-edit.php.
🎖@cveNotify
File inclusion vulnerability in Minicms v1.9 allows remote attackers to execute arbitary PHP code via post-edit.php.
🎖@cveNotify
GitHub
file inclusion vulnerability · Issue #36 · bg5sbk/MiniCMS
Require: PHP Version <5.3.4 magic_quotes_gpc=off 1. require $index_file $index_file = '../mc-files/posts/index/'.$post_old_state.'.php' $post_old_state = $data['state'] 2...
🚨 CVE-2017-12562
Heap-based Buffer Overflow in the psf_binheader_writef function in common.c in libsndfile through 1.0.28 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact.
🎖@cveNotify
Heap-based Buffer Overflow in the psf_binheader_writef function in common.c in libsndfile through 1.0.28 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact.
🎖@cveNotify
GitHub
Heap buffer overflows in `psf_binheader_writef` in 1.0.28 and later · Issue #292 · libsndfile/libsndfile
Case 's' only enlarges the buffer by 16 bytes instead of size bytes. This issue had originally reported by funute against openmpt123 (see https://bugs.openmpt.org/view.php?id=974 )....
🚨 CVE-2021-4156
An out-of-bounds read flaw was found in libsndfile's FLAC codec functionality. An attacker who is able to submit a specially crafted file (via tricking a user to open or otherwise) to an application linked with libsndfile and using the FLAC codec, could trigger an out-of-bounds read that would most likely cause a crash but could potentially leak memory information that could be used in further exploitation of other flaws.
🎖@cveNotify
An out-of-bounds read flaw was found in libsndfile's FLAC codec functionality. An attacker who is able to submit a specially crafted file (via tricking a user to open or otherwise) to an application linked with libsndfile and using the FLAC codec, could trigger an out-of-bounds read that would most likely cause a crash but could potentially leak memory information that could be used in further exploitation of other flaws.
🎖@cveNotify
🚨 CVE-2022-32532
Apache Shiro before 1.9.1, A RegexRequestMatcher can be misconfigured to be bypassed on some servlet containers. Applications using RegExPatternMatcher with `.` in the regular expression are possibly vulnerable to an authorization bypass.
🎖@cveNotify
Apache Shiro before 1.9.1, A RegexRequestMatcher can be misconfigured to be bypassed on some servlet containers. Applications using RegExPatternMatcher with `.` in the regular expression are possibly vulnerable to an authorization bypass.
🎖@cveNotify
🚨 CVE-2022-0546
A missing bounds check in the image loader used in Blender 3.x and 2.93.8 leads to out-of-bounds heap access, allowing an attacker to cause denial of service, memory corruption or potentially code execution.
🎖@cveNotify
A missing bounds check in the image loader used in Blender 3.x and 2.93.8 leads to out-of-bounds heap access, allowing an attacker to cause denial of service, memory corruption or potentially code execution.
🎖@cveNotify
Blender Projects
Out-of-bounds memory access due to malformed HDR image file
**System Information**
Operating system: Windows-10-10.0.19044-SP0 64 Bits
Graphics card: Radeon RX 580 Series ATI Technologies Inc. 4.5.14761 Core Profile Context 21.10.3 30.0.13031.1001
**Blender Version**
Broken: version: 3.1.0 Alpha, branch: master,…
Operating system: Windows-10-10.0.19044-SP0 64 Bits
Graphics card: Radeon RX 580 Series ATI Technologies Inc. 4.5.14761 Core Profile Context 21.10.3 30.0.13031.1001
**Blender Version**
Broken: version: 3.1.0 Alpha, branch: master,…
🚨 CVE-2021-40642
Textpattern CMS v4.8.7 and older vulnerability exists through Sensitive Cookie in HTTPS Session Without 'Secure' Attribute via textpattern/lib/txplib_misc.php. The secure flag is not set for txp_login session cookie in the application. If the secure flag is not set, then the cookie will be transmitted in clear-text if the user visits any HTTP URLs within the cookie's scope. An attacker may be able to induce this event by feeding a user suitable links, either directly or via another web site.
🎖@cveNotify
Textpattern CMS v4.8.7 and older vulnerability exists through Sensitive Cookie in HTTPS Session Without 'Secure' Attribute via textpattern/lib/txplib_misc.php. The secure flag is not set for txp_login session cookie in the application. If the secure flag is not set, then the cookie will be transmitted in clear-text if the user visits any HTTP URLs within the cookie's scope. An attacker may be able to induce this event by feeding a user suitable links, either directly or via another web site.
🎖@cveNotify
GitHub
Secure cookie test · textpattern/textpattern@211fab0
A flexible, elegant, fast and easy-to-use content management system written in PHP. - Secure cookie test · textpattern/textpattern@211fab0
🚨 CVE-2022-31303
maccms10 was discovered to contain a stored cross-site scripting (XSS) vulnerability via the Server Group text field.
🎖@cveNotify
maccms10 was discovered to contain a stored cross-site scripting (XSS) vulnerability via the Server Group text field.
🎖@cveNotify
GitHub
后台服务器组中存在XSS漏洞 · Issue #20 · maccmspro/maccms10
进入后台,点击视频-->服务器组-->添加, 在名称框插入payload1:<script>alert(1)</script> 在服务器组地址框插入payload2:<script>alert(2)</script> 在排序框插入payload3:<script>alert(3)</script> 在提示框插...
🚨 CVE-2022-31306
Nginx NJS v0.7.2 was discovered to contain a segmentation violation in the function njs_array_convert_to_slow_array at src/njs_array.c.
🎖@cveNotify
Nginx NJS v0.7.2 was discovered to contain a segmentation violation in the function njs_array_convert_to_slow_array at src/njs_array.c.
🎖@cveNotify
GitHub
SEGV njs_array.c:151:13 in njs_array_convert_to_slow_array · Issue #481 · nginx/njs
Environment OS : Linux ubuntu 5.13.0-27-generic #29~20.04.1-Ubuntu SMP Fri Jan 14 00:32:30 UTC 2022 x86_64 x86_64 x86_64 GNU/Linux Commit : f65981b0b8fcf02d69a40bc934803c25c9f607ab Version : 0.7.2 ...
🚨 CVE-2022-31307
Nginx NJS v0.7.2 was discovered to contain a segmentation violation in the function njs_string_offset at src/njs_string.c.
🎖@cveNotify
Nginx NJS v0.7.2 was discovered to contain a segmentation violation in the function njs_string_offset at src/njs_string.c.
🎖@cveNotify
GitHub
Fixed Array.prototype.lastIndexOf() with unicode string as "this". · nginx/njs@eafe4c7
Previously, when lastIndexOf() was called with unicode string as "this"
argument and a negative "fromIndex" argument null-pointer dererence
might occur because n...
argument and a negative "fromIndex" argument null-pointer dererence
might occur because n...
🚨 CVE-2022-31897
SourceCodester Zoo Management System 1.0 is vulnerable to Cross Site Scripting (XSS) via public_html/register_visitor?msg=.
🎖@cveNotify
SourceCodester Zoo Management System 1.0 is vulnerable to Cross Site Scripting (XSS) via public_html/register_visitor?msg=.
🎖@cveNotify
packetstorm.news
Packet Storm
Information Security Services, News, Files, Tools, Exploits, Advisories, and Whitepapers