Opsview Monitor 5.x Command Execution

Post ContentRead More ...

Continue Reading
Quest NetVault Backup Server < 11.4.5 – Process Manager Service SQL Injection / Remote Code Execution

Post ContentRead More ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

GitHub: Github Apps can use Scoped-User-To-Server Tokens to Obtain Full Access to User’s Projects in Project V2 GraphQL api

An incorrect authorization vulnerability was identified in GitHub Enterprise Server, allowing for escalation of privileges in GraphQL API requests from GitHub Apps. This vulnerability allowed an app i ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

Nextcloud: Mail app stores cleartext password in database until OAUTH2 setup is done

## Summary: The Mail app usually stores the user password encrypted. For XOAUTH2 the encrypted access token is stored in the same columns. However, during the time of the setup, XOAUTH2 accounts have ...

Continue Reading

CVSS3 - MEDIUM

CVSS2 - MEDIUM

Microsoft Investigation – Threat actor consent phishing campaign abusing the verified publisher process

Summary Summary On December 15th, 2022, Microsoft became aware of a consent phishing campaign involving threat actors fraudulently impersonating legitimate companies when enrolling in the Microsoft Cl ...

Continue Reading
Fedora Update for php-nusoap FEDORA-2010-14100

Check for the Version of php-nusoapRead More ...

Continue Reading
Fedora Update for php-nusoap FEDORA-2010-14058

Check for the Version of php-nusoapRead More ...

Continue Reading
SAP NetWeaver RFC WSDL – XSS

**Application:** SAP NetWeaver **Versions Affected:** SAP NetWeaver 6.40, 7.02 and maybe others **Vendor URL:** [https://www.sap.com ]() **Bugs:** XSS **Exploits:** YES **Reported:** 13.05.2011 **Vendo ...

Continue Reading

Back to Main

Subscribe for the latest news: