A flaw was discovered in Kibana, allowing view-only users of alerting to use the run_soon API making the alerting rule run continuously, potentially affecting the system availability if the alerting r ...
Continue ReadingJune 17, 2024
CVE-2024-30078 Detection and Command Execution Script This project contains a NASL script that detects the CVE-2024-30078 vulnerability and executes a specified command if the target is vulnerable. Th ...
Continue ReadingJune 17, 2024
NativeDump allows to dump the lsass process using only NTAPIs generating a Minidump file with only the streams needed to be parsed by tools like Mimikatz or Pypykatz (SystemInfo, ModuleList and Memory ...
Continue ReadingJune 16, 2024
Shenzhen Guoxin Synthesis image system before 8.3.0 allows unauthorized user information retrieval via the queryUser...Read More ...
Continue ReadingJune 16, 2024
Shenzhen Guoxin Synthesis image system before 8.3.0 allows unauthorized password resets via the resetPassword...Read More ...
Continue ReadingJune 16, 2024
Shenzhen Guoxin Synthesis image system before 8.3.0 allows unauthorized password resets via the resetPassword...Read More ...
Continue ReadingJune 16, 2024
Shenzhen Guoxin Synthesis image system before 8.3.0 allows unauthorized user information retrieval via the queryUser...Read More ...
Continue ReadingJune 16, 2024
Shenzhen Guoxin Synthesis image system before 8.3.0 allows unauthorized user information retrieval via the queryUser...Read More ...
Continue ReadingJune 16, 2024
Back to Main