Admidio Vulnerable to RCE via Arbitrary File Upload in Message Attachment

Description: Remote Code Execution Vulnerability has been identified in the Message module of the Admidio Application, where it is possible to upload a PHP file in the attachment. The uploaded file ca ...

Continue Reading
Exploit for CVE-2024-41628

CVE-2024-41628 Simple exploit script developed by Redshift Cyber Security to exploit (CVE-2024-41628) ClusterControl LFI vulnerability. The vulnerability affects the CMON API and specifically the RPC ...

Continue Reading
The Aftermath of the WordPress.org Supply Chain Attack: New Malware and Techniques Emerge

On Monday June 24th, 2024 the Wordfence Threat Intelligence team was made aware of the presence of malware in the Social Warfare repository plugin. After adding the malicious code to our Threat Intell ...

Continue Reading
ROS-20240729-21

Vulnerability of authorization plugins (AuthZ) of the software for automating deployment and management of applications in containerized environments Docker Engine is related to flaws in the AuthZ plu ...

Continue Reading
ROS-20240729-21

Vulnerability of authorization plugins (AuthZ) of the software for automating deployment and management of applications in containerized environments Docker Engine is related to flaws in the AuthZ plu ...

Continue Reading
AnythingLLM API Sensitive Information Disclosure

AnythingLLM suffers from an information disclosure vulnerability through the /api/setup-complete API endpoint. By accessing this endpoint, a remote and unauthenticated attacker can access sensitive co ...

Continue Reading
How Searchable Encryption Changes the Data Security Game

Searchable Encryption has long been a mystery. An oxymoron. An unattainable dream of cybersecurity professionals everywhere. Organizations know they must encrypt their most valuable, sensitive data to ...

Continue Reading
Malicious code in melio-platform-api-client (RubyGems)

-= Per source details. Do not edit below this line.=- Source: ossf-package-analysis (cb4e0efafa3bf0645819f2aa88cfdc7778f938470c0984afc5e1f1504df982aa) The OpenSSF Package Analysis project identified & ...

Continue Reading

Back to Main

Subscribe for the latest news: