Security
Headlines
HeadlinesLatestCVEs

Tag

#google

Ubuntu Security Notice USN-6284-1

Ubuntu Security Notice 6284-1 - It was discovered that the netlink implementation in the Linux kernel did not properly validate policies when parsing attributes in some situations. An attacker could use this to cause a denial of service. Billy Jheng Bing Jhong discovered that the CIFS network file system implementation in the Linux kernel did not properly validate arguments to ioctl in some situations. A local attacker could possibly use this to cause a denial of service.

Packet Storm
#vulnerability#web#mac#google#amazon#ubuntu#linux#dos#oracle#perl#aws#amd#ssl
CVE-2023-40359: XTERM - Change Log

xterm before 380 supports ReGIS reporting for character-set names even if they have unexpected characters (i.e., neither alphanumeric nor underscore), aka a pointer/overflow issue.

BookingWizz 6.0.1 Information Disclosure

BookingWizz version 6.0.1 suffers from an information leakage vulnerability.

E-commerce Growisei CMS 2.0 Insecure Settings

E-commerce Growisei CMS version 2.0 appears to leave default credentials installed after installation.

DBCInfoTech CMS 2.0 Administrator Reinstall

DBCInfoTech CMS version 2.0 suffers from an unauthenticated administrator reinstall vulnerability.

Education Time Indonesian School CRM 1.7 Cross Site Scripting

Education Time Indonesian School CRM version 1.7 suffers from a cross site scripting vulnerability.

Eden CMS 1.02 Cross Site Scripting

Eden CMS version 1.02 suffers from a cross site scripting vulnerability.

Ecommerce Responsive 1.2 Insecure Direct Object Reference

Ecommerce Responsive version 1.2 suffers from an insecure direct object reference vulnerability.

E-Biz CMS 2.0 Cross Site Request Forgery

E-Biz CMS version 2.0 suffers from a cross site request forgery vulnerability.

EasyPX CMS 06.02.04 Cross Site Scripting

EasyPX CMS version 06.02.04 suffers from a cross site scripting vulnerability.