A vulnerability was found in Data Format Extension on Jackson. It has been classified as very critical. This affects an unknown part of the component XmlMapper. The manipulation leads to xml external entity reference.
This vulnerability is uniquely identified as CVE-2016-3720. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Oracle BI Publisher 11.1.1.7.0/12.2.1.1.0/12.2.1.2.0. It has been rated as very critical. Affected by this issue is some unknown functionality of the component Apache ActiveMQ. The manipulation leads to improper input validation.
This vulnerability is handled as CVE-2015-5254. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability has been found in PHP 5.2.1 and classified as critical. Affected by this vulnerability is the function substr_compare. The manipulation of the argument length leads to integer coercion error.
This vulnerability is known as CVE-2007-1375. The attack can be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as problematic has been found in Blueriver Sava CMS up to 5.2. Affected is an unknown function of the file fileManager.cfc. The manipulation of the argument FILEID leads to path traversal.
This vulnerability is traded as CVE-2010-3468. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
A vulnerability classified as very critical has been found in Oracle Enterprise Repository 11.1.1.7.0/12.1.3.0.0. Affected is an unknown function of the component Apache ActiveMQ. The manipulation leads to improper input validation.
This vulnerability is traded as CVE-2015-5254. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
Key Takeaways In December 2023, we observed an intrusion that started with the execution of a Cobalt Strike beacon and ended in the deployment of BlackSuit ransomware. The threat actor … Read More
A vulnerability was found in Apache ActiveMQ up to 5.12.x. It has been classified as very critical. This affects an unknown part of the component Broker Service. The manipulation leads to improper input validation.
This vulnerability is uniquely identified as CVE-2015-5254. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as critical was found in D-Link DIR-645 up to Frimware 1.03b08. This vulnerability affects unknown code of the file authentication.cgi. The manipulation of the argument password as part of POST Request leads to cross site scripting.
This vulnerability was named CVE-2013-7389. The attack can be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as critical, has been found in fingersoft Cartoon Camera 1.2.2. Affected by this issue is some unknown functionality of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
This vulnerability is handled as CVE-2014-5618. Access to the local network is required for this attack. There is no exploit available.