Security
Headlines
HeadlinesLatestCVEs

Tag

#ssh

Joomla RAXO All-Mode PRO 2.01 Cross Site Scripting

Joomla RAXO All-Mode PRO extension version 2.01 suffers from a cross site scripting vulnerability.

Packet Storm
#sql#xss#vulnerability#web#auth#ssh
OpenSSH 9.1p1

This is a Linux/portable port of OpenBSD's excellent OpenSSH. OpenSSH is based on the last free version of Tatu Ylonen's SSH with all patent-encumbered algorithms removed, all known security bugs fixed, new features reintroduced, and many other clean-ups.

Joomla Rentalot Plus 19.05 Cross Site Scripting

Joomla Rentalot Plus extension version 19.05 suffers from a cross site scripting vulnerability.

Joomla MarvikShop ShoppingCart 3.4 Cross Site Scripting

Joomla MarvikShop ShoppingCart extension version 3.4 suffers from a suffers from a cross site scripting vulnerability.

Joomla Easy Shop 1.4.1 Cross Site Scripting

Joomla Easy Shop extension version 1.4.1 suffers from a cross site scripting vulnerability.

New DDoS Malware ‘Chaos’ Hits Linux and Windows Devices

By Deeba Ahmed Most devices infected by Chaos malware are located in Europe, particularly Italy but infections were also observed in Asia Pacific, South America, and North America. This is a post from HackRead.com Read the original post: New DDoS Malware ‘Chaos’ Hits Linux and Windows Devices

jCart For OpenCart 3.0.3.19 Cross Site Scripting

jCart for OpenCart version 3.0.3.19 suffers from a cross site scripting vulnerability.

Joomla JoomRecipe 4.2.2 Cross Site Scripting

Joomla JoomRecipe extension version 4.2.2 suffers from a cross site scripting vulnerability.

North Korean Hackers Weaponizing Open-Source Software in Latest Cyber Attacks

A "highly operational, destructive, and sophisticated nation-state activity group" with ties to North Korea has been weaponizing open source software in their social engineering campaigns aimed at companies around the world since June 2022. Microsoft's threat intelligence teams, alongside LinkedIn Threat Prevention and Defense, attributed the intrusions with high confidence to Zinc, which is

CVE-2022-40407: Security issues - Chamilo LMS

A zip slip vulnerability in the file upload function of Chamilo v1.11 allows attackers to execute arbitrary code via a crafted Zip file.