Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2023-27572: SEC Consult Blog - Information Security and Company News

An issue was discovered in CommScope Arris DG3450 Cable Gateway AR01.02.056.18_041520_711.NCS.10. A reflected XSS vulnerability was discovered in the https_redirect.php web page via the page parameter.

CVE
#xss#vulnerability#web#git#php#pdf
  • All
  • teamsecconsult
  • events
  • ISMS
  • research
  • defence
  • dataprotection
  • hardware
  • IoT
  • news
  • redteaming
  • SSDLC
  • vulnerability

11.04.2023 research

BumbleBee, a malware which is mainly abused by threat actors in data exfiltration and ransomware incidents, was recently analyzed by Angelo Violetti…

Read more

06.04.2023 teamsecconsult

For four years now, SEC Consult has participated in the annual “Great Place To Work” evaluation to find out how satisfied employees and managers are…

Read more

27.03.2023 research

Nowadays, PDFs are often used to sign contracts digitally. PDFs also support many interactive features. During his bachelor thesis, Tobias Friese…

Read more

22.03.2023

Electronic shelf labels (ESL tags) are frequently used in supermarkets as price tags, as they allow for convenient and quick price changes. Thus,…

Read more

24.02.2023

A deep dive into the technical aspects of the QUIC protocol will show why it is relevant to care about it in regards to security for the upcoming…

Read more

09.02.2023 teamsecconsult

We want to be at the forefront of the competition among the best - also in terms of workplace culture!

Read more

30.01.2023 dataprotection

Enterprise data protection and information security programs often clash over two issues: log management and digital forensics in case of information…

Read more

24.01.2023

As you know Ransomware is not a new phenomenon. But the increasing specialization and professionalisation and offers such as "Ransomware-as-a-Service"…

Read more

20.12.2022 research

Why parental control apps aren’t the answer to protecting your kids online

Read more

Related news

Arris DG3450 AR01.02.056.18_041520_711.NCS.10 XSS / Missing Authentication

Arris DG3450 cable gateway version AR01.02.056.18_041520_711.NCS.10 suffers from cross site scripting and missing authentication vulnerabilities.

CVE: Latest News

CVE-2023-50976: Transactions API Authorization by oleiman · Pull Request #14969 · redpanda-data/redpanda
CVE-2023-6905
CVE-2023-6903
CVE-2023-6904
CVE-2023-3907