CVE-2024-4885 PoC for CVE-2024-4885 Progress WhatsUp Gold GetFileWithoutZip Unauthenticated Remote Code Execution (CVE-2024-4885) Technical Analysis A root cause analysis of the vulnerability can be ...
Continue ReadingJuly 08, 2024
Directus is a real-time API and App dashboard for managing SQL database content. When relying on SSO providers in combination with local authentication it can be possible to enumerate existing SSO use ...
Continue ReadingJuly 08, 2024
Talos Vulnerability Report TALOS-2023-1899 Realtek rtl819x Jungle SDK boa formWsc OS command injection vulnerabilities July 8, 2024 CVE Number CVE-2023-50381,CVE-2023-50383,CVE-2023-50382 SUMMARY Thre ...
Continue ReadingJuly 08, 2024
Talos Vulnerability Report TALOS-2023-1874 Realtek rtl819x Jungle SDK boa formUpload firmware update vulnerability July 8, 2024 CVE Number CVE-2023-34435 SUMMARY A firmware update vulnerability exists ...
Continue ReadingJuly 08, 2024
Talos Vulnerability Report TALOS-2023-1873 LevelOne WBR-6013 boa formSysCmd leftover debug code vulnerability July 8, 2024 CVE Number CVE-2023-49593 SUMMARY Leftover debug code exists in the boa formS ...
Continue ReadingJuly 08, 2024
Releases Ubuntu 24.04 LTS Ubuntu 23.10 Ubuntu 22.04 LTS Ubuntu 20.04 LTS Packages nova - OpenStack Compute cloud infrastructure Details Martin Kaesberger discovered that Nova incorrectly handled ...
Continue ReadingJuly 08, 2024
Releases Ubuntu 24.04 LTS Ubuntu 23.10 Ubuntu 22.04 LTS Ubuntu 20.04 LTS Packages cinder - OpenStack storage service Details Martin Kaesberger discovered that Cinder incorrectly handled QCOW2 ima ...
Continue ReadingJuly 08, 2024
Talos Vulnerability Report TALOS-2023-1872 Realtek rtl819x Jungle SDK boa CSRF protection cross-site request forgery (CSRF) vulnerability July 8, 2024 CVE Number CVE-2023-47677 SUMMARY A cross-site re ...
Continue ReadingJuly 08, 2024
Back to Main