Oracle Linux 8 : pki-core:10.6 / and / pki-deps:10.6 (ELSA-2022-7470)

The remote Oracle Linux 8 host has packages installed that are affected by a vulnerability as referenced in the ELSA-2022-7470 advisory. - Access to external entities when parsing XML documents can ...

Continue Reading
Netatalk contains multiple error and memory management vulnerabilities

### Overview There are six new vulnerabilities in the latest release of Netatalk (3.1.12) that could allow for Remote Code Execution as well as Out-of-bounds Read. ### Description Below are the new CV ...

Continue Reading
(RHSA-2022:8506) Important: Satellite 6.12 Release

Red Hat Satellite is a systems management tool for Linux-based infrastructure. It allows for provisioning, remote management, and monitoring of multiple Linux deployments with a single centralized too ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

CVE-2022-41622 and CVE-2022-41800 (FIXED): F5 BIG-IP and iControl REST Vulnerabilities and Exposures

![CVE-2022-41622 and CVE-2022-41800 (FIXED): F5 BIG-IP and iControl REST Vulnerabilities and Exposures](https://blog.rapid7.com/content/images/2022/11/GettyImages-1331943958.jpg) Rapid7 discovered sev ...

Continue Reading
YAPI SQL Injection Vulnerability

YAPI is an api management platform. YAPI is vulnerable to SQL injection, which can be exploited by attackers to obtain user token and cause command execution.Read More ...

Continue Reading
Simmeth System GmbH Supplier Manager LFI / SQL Injection / Bypass Vulnerabilities

Simmeth System GmbH Supplier Manager (Lieferantenmanager) versions prior to 5.6 suffer from authentication bypass, code execution, cross site scripting, information leakage, remote SQL injection, and ...

Continue Reading
VMware NSX Manager XStream Unauthenticated Remote Code Execution Exploit

VMware Cloud Foundation (NSX-V) contains a remote code execution vulnerability via XStream open source library. VMware has evaluated the severity of this issue to be in the Critical severity range wit ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

CVE-2022-20925

A vulnerability in the web management interface of the Cisco Firepower Management Center (FMC) Software could allow an authenticated, remote attacker to execute arbitrary commands on the underlying op ...

Continue Reading

Back to Main

Subscribe for the latest news: