EulerOS 2.0 SP10 : docker-engine (EulerOS-SA-2022-2427)

According to the versions of the docker-engine package installed, the EulerOS installation on the remote host is affected by the following vulnerabilities : - containerd is an open source container ...

Continue Reading
Ubuntu 16.04 ESM : nginx vulnerability (USN-5371-3)

The remote Ubuntu 16.04 ESM host has packages installed that are affected by a vulnerability as referenced in the USN-5371-3 advisory. - An issue was discovered in OpenResty before 1.15.8.4. ngx_htt ...

Continue Reading
Exploit for CVE-2022-2992

# CVE-2022-2992 Authenticated Remote Command Execution in Gitlab...Read More ...

Continue Reading
Threat Roundup for September 30 to October 7

[![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgDbBfe7re3_GTXSXxhXHE2wNeKNUPJ-Odym2Hj407JIEsoqhaRncqbWWVdFGF8HVFeuFf-9tRYJTDr5Yv3KtHFWHwNNCw0SfBhK253m7gw8NPS3_tw9byysNDzJXeSV6PpKRjM8Z ...

Continue Reading
Apache Airflow may allow authenticated users who have been deactivated to continue using the UI or API

In Apache Airflow, prior to version 2.4.1, deactivating a user wouldn't prevent an already authenticated user from being able to continue using the UI or API.Read More ...

Continue Reading

CVSS3 - HIGH

CVE-2022-39289

ZoneMinder is a free, open source Closed-circuit television software application. In affected versions the ZoneMinder API Exposes Database Log contents to user without privileges, allows insertion, mo ...

Continue Reading
Apache Airflow may allow authenticated users who have been deactivated to continue using the UI or API

In Apache Airflow, prior to version 2.4.1, deactivating a user wouldn't prevent an already authenticated user from being able to continue using the UI or API.Read More ...

Continue Reading
Heimdal Kerbos vulnerable to remotely triggered NULL pointer dereference

### Overview The Heimdal Software Kerberos 5 implementation is vulnerable to a null pointer dereferance. An attacker with network access to an application that depends on the vulnerable code path can ...

Continue Reading

Back to Main

Subscribe for the latest news: