Aggregator
CVE-2024-2860 | Brocade SAnnav up to 2.3.0 PostgreSQL Database missing authentication
CVE-2024-32100 | Easy Digital Downloads Plugin up to 3.2.11 on WordPress information disclosure
Hackers Exploiting SimpleHelp RMM Flaws for Persistent Access and Ransomware
Infosec pros struggle under growing compliance
The implementation of new regulatory measures that impact the UK, EU, and beyond are driving organizations to enhance vigilance in addressing evolving cybersecurity and operational risks, according to AuditBoard. The research showed 91% of respondents report feeling concerned about cybersecurity threats to their organization, and 86% are aware of incidents within their industry in the past year. Compliance pressure grows among organizations Organizations are under constant pressure to adopt more proactive and strategic approaches to … More →
The post Infosec pros struggle under growing compliance appeared first on Help Net Security.
CVE-2023-38095 | Netgear ProSAFE Network Management System MFileUploadController unrestricted upload
CVE-2023-38097 | Netgear ProSAFE Network Management System BkreProcessThread routine
CVE-2023-38098 | Netgear ProSAFE Network Management System UpLoadServlet unrestricted upload
CVE-2023-38099 | Netgear ProSAFE Network Management System getNodesByTopologyMapSearch sql injection
CVE-2023-38101 | Netgear ProSAFE Network Management System SettingConfigController routine
CVE-2023-38096 | Netgear ProSAFE Network Management System MyHandlerInterceptor improper authentication
CVE-2023-38100 | Netgear ProSAFE Network Management System clearAlertByIds sql injection
CVE-2023-38102 | Netgear ProSAFE Network Management System createUser authorization
CVE-2024-2667 | InstaWP Connect Plugin up to 0.1.0.22 on WordPress unrestricted upload
CVE-2023-6962 | WP Meta SEO Plugin up to 4.5.12 on WordPress Meta Description sensitive information
CVE-2024-3107 | Spectra Plugin up to 2.12.6 on WordPress path traversal (ID 3062684)
CVE-2024-3309 | Qi Addons for Elementor Plugin up to 1.7.0 on WordPress Countdown Widget cross site scripting
CVE-2024-2273 | Kadence Gutenberg Blocks Plugin up to 3.2.34 on WordPress cross site scripting
Overconfident execs are making their companies vulnerable to fraud
Cyber fraud (which includes activity such as hacking, deepfakes, voice cloning and highly sophisticated phishing schemes) rose by 14% year over year, according to Trustpair. US faces cyber fraud growth The proprietary research, which is based on a survey of 200 senior finance, treasury, and accounts payable executives, reveals that 90% of US companies were targeted by cyber fraud in the past year, compared to 79% of companies in 2023. The surge in fraud is … More →
The post Overconfident execs are making their companies vulnerable to fraud appeared first on Help Net Security.