Aggregator
Ubuntu security advisory (AV25-053)
7 months 2 weeks ago
Canadian Centre for Cyber Security
Randall Munroe’s XKCD ‘AlphaMove’
7 months 2 weeks ago
via the comic humor & dry wit of Randall Munroe, creator of XKCD
The post Randall Munroe’s XKCD ‘AlphaMove’ appeared first on Security Boulevard.
Marc Handelman
IBM security advisory (AV25-052)
7 months 2 weeks ago
Canadian Centre for Cyber Security
Инновационная биоручка печатает живые ткани чернилами из комбучи
7 months 2 weeks ago
Ученые нашли способ печатать ткани с помощью биоразлагаемого материала.
Dell security advisory (AV25-051)
7 months 2 weeks ago
Canadian Centre for Cyber Security
CVE-2018-15133 | Laravel Framework up to 5.5.40/5.6.29 Token Encrypter.php decrypt X-XSRF-TOKEN deserialization (ID 153641 / EDB-47129)
7 months 2 weeks ago
A vulnerability was found in Laravel Framework up to 5.5.40/5.6.29 and classified as critical. This issue affects the function decrypt of the file Illuminate/Encryption/Encrypter.php of the component Token Handler. The manipulation of the argument X-XSRF-TOKEN leads to deserialization.
The identification of this vulnerability is CVE-2018-15133. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2021-3156 | Oracle MICROS Compact Workstation 3 310 Sudo off-by-one (EDB-49521 / Nessus ID 213304)
7 months 2 weeks ago
A vulnerability has been found in Oracle MICROS Compact Workstation 3 310 and classified as critical. Affected by this vulnerability is an unknown functionality of the component Sudo. The manipulation leads to off-by-one.
This vulnerability is known as CVE-2021-3156. Local access is required to approach this attack. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-3156 | Oracle MICROS ES400 Series up to 410 Sudo off-by-one (EDB-49521 / Nessus ID 213304)
7 months 2 weeks ago
A vulnerability was found in Oracle MICROS ES400 Series up to 410 and classified as critical. Affected by this issue is some unknown functionality of the component Sudo. The manipulation leads to off-by-one.
This vulnerability is handled as CVE-2021-3156. Attacking locally is a requirement. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-3156 | Oracle MICROS Kitchen Display System Hardware 210 Sudo off-by-one (EDB-49521 / Nessus ID 213304)
7 months 2 weeks ago
A vulnerability was found in Oracle MICROS Kitchen Display System Hardware 210. It has been classified as critical. This affects an unknown part of the component Sudo. The manipulation leads to off-by-one.
This vulnerability is uniquely identified as CVE-2021-3156. It is possible to launch the attack on the local host. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-3156 | Oracle MICROS Workstation 5A Sudo off-by-one (EDB-49521 / Nessus ID 213304)
7 months 2 weeks ago
A vulnerability was found in Oracle MICROS Workstation 5A 5A. It has been declared as critical. This vulnerability affects unknown code of the component Sudo. The manipulation leads to off-by-one.
This vulnerability was named CVE-2021-3156. The attack needs to be approached locally. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-3156 | Oracle MICROS Workstation 6 up to 655 Sudo off-by-one (EDB-49521 / Nessus ID 213304)
7 months 2 weeks ago
A vulnerability was found in Oracle MICROS Workstation 6 up to 655. It has been rated as critical. This issue affects some unknown processing of the component Sudo. The manipulation leads to off-by-one.
The identification of this vulnerability is CVE-2021-3156. An attack has to be approached locally. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-3156 | Oracle Tekelec Platform Distribution up to 7.7.1 Sudo off-by-one (EDB-49521 / Nessus ID 213304)
7 months 2 weeks ago
A vulnerability classified as critical was found in Oracle Tekelec Platform Distribution up to 7.7.1. This vulnerability affects unknown code of the component Sudo. The manipulation leads to off-by-one.
This vulnerability was named CVE-2021-3156. Attacking locally is a requirement. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-3156 | sudo up to 1.8.31p2/1.9.5p1 sudoers_policy_main heap-based overflow (EDB-49521 / Nessus ID 213304)
7 months 2 weeks ago
A vulnerability was found in sudo up to 1.8.31p2/1.9.5p1. It has been rated as critical. This issue affects the function sudoers_policy_main. The manipulation leads to heap-based buffer overflow.
The identification of this vulnerability is CVE-2021-3156. The attack may be initiated remotely. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2021-3156 | Apple macOS up to 11.2.0 Sudo out-of-bounds write (HT212177 / EDB-49521)
7 months 2 weeks ago
A vulnerability classified as problematic has been found in Apple macOS up to 11.2.0. Affected is an unknown function of the component Sudo. The manipulation leads to out-of-bounds write.
This vulnerability is traded as CVE-2021-3156. It is possible to launch the attack on the local host. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Rachel Hunter Targeted the Website of Ministry of Roads and Urban Development of Iran
7 months 2 weeks ago
Rachel Hunter Targeted the Website of Ministry of Roads and Urban Development of Iran
Dark Web Informer - Cyber Threat Intelligence
varun is Allegedly Selling the Data of EDF Prime Energy
7 months 2 weeks ago
varun is Allegedly Selling the Data of EDF Prime Energy
Dark Web Informer - Cyber Threat Intelligence
CVE-2024-54840 | CyberArk Access Manager Self-Hosted up to 14.3 PVWA Host injection
7 months 2 weeks ago
A vulnerability was found in CyberArk Access Manager Self-Hosted up to 14.3. It has been classified as problematic. Affected is an unknown function of the component PVWA. The manipulation of the argument Host leads to injection.
This vulnerability is traded as CVE-2024-54840. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-49840 | Qualcomm Snapdragon Compute FastConnect 6900 up to WSA8845 IOCTL Call out-of-range pointer offset
7 months 2 weeks ago
A vulnerability was found in Qualcomm Snapdragon Compute, Snapdragon Connectivity and Snapdragon Consumer Electronics Connectivity FastConnect 6900 up to WSA8845 and classified as critical. This issue affects some unknown processing of the component IOCTL Call Handler. The manipulation leads to use of out-of-range pointer offset.
The identification of this vulnerability is CVE-2024-49840. The attack needs to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Arab Ghosts Hackers Targeted the Website of Altay Global Trading
7 months 2 weeks ago
Arab Ghosts Hackers Targeted the Website of Altay Global Trading
Dark Web Informer - Cyber Threat Intelligence