Agile Approach to Mass Cloud Credential Harvesting and Crypto Mining Sprints Ahead
Developers are not the only people who have adopted the agile methodology for their development processes. From 2023-06-15 to 2023-07-11,...
Developers are not the only people who have adopted the agile methodology for their development processes. From 2023-06-15 to 2023-07-11,...
A malicious toolset dubbed Spacecolon is being deployed as part of an ongoing campaign to spread variants of the Scarab...
A Syrian threat actor named EVLF has been outed as the creator of malware families CypherRAT and CraxsRAT. "These RATs...
NAME__________TPLink Smart bulb Tapo series L530 and Tapo Application information disclosurePlatforms Affected:TPLink Smart bulb Tapo series L530 1.0.0 TPLink Tapo...
NAME__________IBM Robotic Process Automation information disclosurePlatforms Affected:IBM Robotic Process Automation 21.0.0 IBM Robotic Process Automation 21.0.7.1Risk Level:3.7Exploitability:UnprovenConsequences:Obtain Information DESCRIPTION__________IBM Robotic...
NAME__________TPLink Smart bulb Tapo series L530 and Tapo Application information disclosurePlatforms Affected:TPLink Smart bulb Tapo series L530 1.0.0 TPLink Tapo...
NAME__________Puma HTTP request smugglingPlatforms Affected:Puma Puma 5.6.6 Puma Puma 6.3.0Risk Level:7.3Exploitability:UnprovenConsequences:Gain Access DESCRIPTION__________Puma is vulnerable to HTTP request smuggling, caused...
NAME__________EnterpriseDB Postgres Advanced Server UTL_ENCODE information disclosurePlatforms Affected:EnterpriseDB Postgres Advanced Server 11.21 EnterpriseDB Postgres Advanced Server 12.16 EnterpriseDB Postgres Advanced...
NAME__________Typora directory traversalPlatforms Affected:Typora Typora 1.6.0 Typora Typora 1.5.0Risk Level:6.3Exploitability:UnprovenConsequences:Obtain Information DESCRIPTION__________Typora could allow a remote attacker to traverse directories...
NAME__________TPLink Smart bulb Tapo series L530 and Tapo Application information disclosurePlatforms Affected:TPLink Smart bulb Tapo series L530 1.0.0 TPLink Tapo...
NAME__________Veilid denial of servicePlatforms Affected:Veilid Veilid 0.1.8Risk Level:7.5Exploitability:UnprovenConsequences:Denial of Service DESCRIPTION__________Veilid is vulnerable to a denial of service, caused by...
NAME__________Cockpit cross-site scriptingPlatforms Affected:Cockpit-HQ Cockpit 2.6.3Risk Level:6.1Exploitability:HighConsequences:Cross-Site Scripting DESCRIPTION__________Cockpit is vulnerable to cross-site scripting, caused by improper validation of user-supplied...
NAME__________IBM Robotic Process Automation privilege escalationPlatforms Affected:IBM Robotic Process Automation 21.0.0 IBM Robotic Process Automation 23.0.0 IBM Robotic Process Automation...
NAME__________3CX privilege escalationPlatforms Affected:3CX Phone Management System 18Risk Level:7Exploitability:UnprovenConsequences:Gain Privileges DESCRIPTION__________3CX could allow a local authenticated attacker to gain elevated...
NAME__________Sourceforge DoorGets CMS information disclosurePlatforms Affected:Sourceforge DoorGets CMS 7.0Risk Level:5.3Exploitability:UnprovenConsequences:Obtain Information DESCRIPTION__________Sourceforge DoorGets CMS could allow a remote attacker to...
NAME__________EnterpriseDB Postgres Advanced Server UTL_FILE security bypassPlatforms Affected:EnterpriseDB Postgres Advanced Server 11.21 EnterpriseDB Postgres Advanced Server 12.16 EnterpriseDB Postgres Advanced...
NAME__________IBM Robotic Process Automation information disclosurePlatforms Affected:IBM Robotic Process Automation 21.0.0 IBM Robotic Process Automation 21.0.7Risk Level:4.3Exploitability:UnprovenConsequences:Obtain Information DESCRIPTION__________IBM Robotic...
NAME__________EnterpriseDB Postgres Advanced Server DBMS_PROFILER security bypassPlatforms Affected:EnterpriseDB Postgres Advanced Server 11.21 EnterpriseDB Postgres Advanced Server 12.16 EnterpriseDB Postgres Advanced...
NAME__________EnterpriseDB Postgres Advanced Server DBMS_MVIEW security bypassPlatforms Affected:EnterpriseDB Postgres Advanced Server 11.21 EnterpriseDB Postgres Advanced Server 12.16 EnterpriseDB Postgres Advanced...
NAME__________20script Fara Melk Estate CMS information disclosurePlatforms Affected:20script Fara Melk Estate CMS 1.5.0Risk Level:5.3Exploitability:UnprovenConsequences:Obtain Information DESCRIPTION__________20script Fara Melk Estate CMS...
NAME__________Devolutions Remote Desktop Manager security bypassPlatforms Affected:Devolutions Remote Desktop Manager 2023.2.19Risk Level:4.3Exploitability:UnprovenConsequences:Bypass Security DESCRIPTION__________Devolutions Remote Desktop Manager could allow a...
NAME__________EnterpriseDB Postgres Advanced Server get_url_as_text and get_url_as_bytea information disclosurePlatforms Affected:EnterpriseDB Postgres Advanced Server 11.21 EnterpriseDB Postgres Advanced Server 12.16 EnterpriseDB...
NAME__________IBM Robotic Process Automation information disclosurePlatforms Affected:IBM Robotic Process Automation 21.0.0 IBM Robotic Process Automation 23.0.0 IBM Robotic Process Automation...
NAME__________ASUSTOR Data Master security bypassPlatforms Affected:ASUSTOR Data Master 4.0 ASUSTOR Data Master 4.1 ASUSTOR Data Master 4.2Risk Level:7.5Exploitability:UnprovenConsequences:Bypass Security DESCRIPTION__________ASUSTOR...