CVE-2022-30238

A CWE-287: Improper Authentication vulnerability exists that could allow an attacker to take over the admin account when an attacker hijacks a session. Affected Products: Wiser Smart, EER21000 & E ...

Continue Reading
CVE-2022-31459

Owl Labs Meeting Owl 5.2.0.15 allows attackers to retrieve the passcode hash via a certain c 10 value over Bluetooth.Read More ...

Continue Reading
CVE-2022-31460

Owl Labs Meeting Owl 5.2.0.15 allows attackers to activate Tethering Mode with hard-coded hoothoot credentials via a certain c 150 value.Read More ...

Continue Reading
CVE-2022-31461

Owl Labs Meeting Owl 5.2.0.15 allows attackers to deactivate the passcode protection mechanism via a certain c 11 message.Read More ...

Continue Reading
CVE-2022-31462

Owl Labs Meeting Owl 5.2.0.15 allows attackers to control the device via a backdoor password (derived from the serial number) that can be found in Bluetooth broadcast data.Read More ...

Continue Reading
CVE-2022-31463

Owl Labs Meeting Owl 5.2.0.15 does not require a password for Bluetooth commands, because only client-side authentication is used.Read More ...

Continue Reading
RST Threat feed. IOC: https://hpmusic.cloud/api/config/database.php

Found **https://hpmusic[.]cloud/api/config/database.php** in [RS...Read More ...

Continue Reading
RST Threat feed. IOC: https://hpmusic.cloud/api/tests/exampletest.php

Found **https://hpmusic[.]cloud/api/tests/exampletest.php** in [...Read More ...

Continue Reading

Back to Main

Subscribe for the latest news: