Security
Headlines
HeadlinesLatestCVEs

Tag

#google

WonderCMS 0.6-Beta Password Disclosure

WonderCMS version 0.6-Beta suffers from a password disclosure vulnerability.

Packet Storm
#vulnerability#web#windows#google#auth#firefox
xForUp Simple File Uploader 1.0 SQL Injection

xForUp Simple File Uploader version 1.0 suffers from a remote SQL injection vulnerability.

B-OBEC V.092019 SQL Injection

B-OBEC version V.092019 suffers from a remote SQL injection vulnerability.

BMIT BMS 2.1 SQL Injection

BMIT BMS version 2.1 suffers from a remote SQL injection vulnerability that allows for authentication bypass.

AMSS++ 5.21.09 SQL Injection

AMSS++ version 5.21.09 suffers from a remote SQL injection vulnerability.

AMS Logistics 2.2 SQL Injection

AMS Logistics version 2.2 suffers from a remote SQL injection vulnerability.

Aicte India LMS 3.0 SQL Injection

Aicte India LMS version 3.0 suffers from a remote SQL injection vulnerability.

New Malvertising Campaign Distributing Trojanized IT Tools via Google and Bing Search Ads

A new malvertising campaign has been observed leveraging ads on Google Search and Bing to target users seeking IT tools like AnyDesk, Cisco AnyConnect VPN, and WinSCP, and trick them into downloading trojanized installers with an aim to breach enterprise networks and likely carry out future ransomware attacks. Dubbed Nitrogen, the "opportunistic" activity is designed to deploy second-stage

CVE-2023-37624: GitHub - benjaminpsinclair/Netdisco-2023-Advisory

Netdisco before v2.063000 was discovered to contain an open redirect vulnerability. An attacker may exploit this vulnerability to redirect users to arbitrary web URLs by tricking the victim users to click on crafted links.