Security
Headlines
HeadlinesLatestCVEs

Source

Packet Storm

Debian Security Advisory 5381-1

Debian Linux Security Advisory 5381-1 - Several security vulnerabilities have been discovered in the Tomcat servlet and JSP engine.

Packet Storm
#vulnerability#linux#debian#apache#js
Debian Security Advisory 5382-1

Debian Linux Security Advisory 5382-1 - It was reported that cairosvg, a SVG converter based on Cairo, can send requests to external hosts when processing specially crafted SVG files with external file resource loading. An attacker can take advantage of this flaw to perform a server-side request forgery or denial of service. Fetching of external files is disabled by default with this update.

Universal Media Server 13.2.1 Cross Site Scripting

Universal Media Server version 13.2.1 suffers from a cross site scripting vulnerability.

BulletProof FTP Server 2019.0.0.51 Denial Of Service

BulletProof FTP Server version 2019.0.0.51 suffers from a denial of service vulnerability.

Microsoft Excel Spoofing

Microsoft Excel suffers from a spoofing vulnerability.

Mitel MiCollab AWV 8.1.2.4 / 9.1.3 Directory Traversal / LFI

Mitel MiCollab AWV versions 8.1.2.4 and 9.1.3 suffers from a directory traversal and local file inclusion vulnerabilities.

HospitalRun 1.0.0-beta macOS Local Root

HospitalRun version 1.0.0-beta local root exploit for macOS.

WIMAX SWC-5100W Remote Command Execution

WIMAX SWC-5100W suffers from an authenticated remote command execution vulnerability.

Linux/x86_64 Bash Shellcode

71 bytes small Linux/x86_64 bash shellcode with XOR encoding.