Amazon has seen massive adoption of passkeys since the company quietly rolled them out a year ago, announcing today that over 175 million customers use the security feature. [...]
Amazon has seen massive adoption of passkeys since the company quietly rolled them out a year ago, announcing today that over 175 million customers use the security feature. [...]
A vulnerability classified as problematic has been found in Atlassian FishEye and Crucible up to 4.4.0 on Windows. This affects the function MultiPathResource. The manipulation leads to path traversal.
This vulnerability is uniquely identified as CVE-2017-9511. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as problematic, was found in Oracle Database 12.2.0.1/18c/19c. Affected is an unknown function of the component MapViewer. The manipulation leads to xml external entity reference.
This vulnerability is traded as CVE-2019-13990. Attacking locally is a requirement. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as very critical, has been found in Oracle Communications IP Service Activator 7.3.0/7.4.0. Affected by this issue is some unknown functionality of the component Netwok Processor Configuration Management. The manipulation leads to xml external entity reference.
This vulnerability is handled as CVE-2019-13990. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Oracle Banking Payments 14.1.x/14.2.x/14.3.x/14.4.0. It has been rated as very critical. Affected by this issue is some unknown functionality of the component Core. The manipulation leads to xml external entity reference.
This vulnerability is handled as CVE-2019-13990. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability has been found in Oracle FLEXCUBE Investor Servicing 12.1.0/12.3.0/12.4.0/14.0.0/14.1.0 and classified as very critical. Affected by this vulnerability is an unknown functionality of the component Infrastructure. The manipulation leads to xml external entity reference.
This vulnerability is known as CVE-2019-13990. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as problematic, has been found in Mozilla Firefox. This issue affects some unknown processing of the component IndexedDB File Handler. The manipulation of the argument browser.privatebrowsing.autostart leads to information disclosure.
The identification of this vulnerability is CVE-2024-4767. An attack has to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as problematic, was found in Mozilla Thunderbird. Affected is an unknown function of the component IndexedDB File Handler. The manipulation of the argument browser.privatebrowsing.autostart leads to information disclosure.
This vulnerability is traded as CVE-2024-4767. Local access is required to approach this attack. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as critical was found in Linux Kernel up to 5.8.2. This vulnerability affects unknown code of the file fs/nfs/nfs4proc.c of the component NFS Client. The manipulation leads to time-of-check time-of-use.
This vulnerability was named CVE-2020-25212. Local access is required to approach this attack. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as problematic has been found in Linux Kernel up to 5.7.11. This affects an unknown part of the file drivers/char/random.c of the component RNG. The manipulation leads to information disclosure.
This vulnerability is uniquely identified as CVE-2020-16166. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability was found in Intel BlueZ. It has been declared as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to improper input validation.
This vulnerability is known as CVE-2020-12351. The attack can only be initiated within the local network. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.