systemd before 247 does not adequately block local privilege escalation for some Sudo configurations, e.g., plausible sudoers files in which the "systemctl status" command may be executed. Specificall ...
Continue ReadingMarch 03, 2023
A flaw was found in coreDNS. This flaw allows a malicious user to reroute internal calls to some internal services that were accessed by the FQDN in a format of ..svc.Read More ...
Continue ReadingMarch 03, 2023
![Avoid The Randomness From The Sky](https://words.filippo.io/content/images/2023/03/IMG_0461-1.jpeg) This is a plea for cryptography specification authors. If your protocol uses randomness, please ** ...
Continue ReadingMarch 03, 2023
An issue discovered in Shenzhen Zhibotong Electronics WBT WE1626 Router v 21.06.18 allows attacker to execute arbitrary commands via serial connection to the UART port.Read More ...
Continue ReadingMarch 03, 2023
An issue discovered in Shenzhen Zhiboton Electronics ZBT WE1626 Router v 21.06.18 allows attackers to escalate privileges via WGET command to the Network Diagnosis endpoint.Read More ...
Continue ReadingMarch 03, 2023
An Insecure Permissions vulnerability in Shenzhen Zhiboton Electronics ZBT WE1626 Router v 21.06.18 allows attackers to obtain sensitive information via SPI bus interface connected to pinout of the NA ...
Continue ReadingMarch 03, 2023
The version of GitLab installed on the remote host is 12.8 prior to 15.7.8, 15.8.4, 15.9.2. It is, therefore, affected by a vulnerability as referenced in the SECURITY-RELEASE-GITLAB-15-9-2-RELEASED a ...
Continue ReadingMarch 03, 2023
The version of GitLab installed on the remote host is 12.1 prior to 15.7.8, 15.8.4, 15.9.2. It is, therefore, affected by a vulnerability as referenced in the SECURITY-RELEASE-GITLAB-15-9-2-RELEASED a ...
Continue ReadingMarch 03, 2023
Back to Main