An issue discovered in N-able N-central before 2023.6 and earlier allows attackers to gain escalated privileges via API...Read More ...
Continue ReadingFebruary 09, 2024
Graylog is a free and open log management platform. Starting in version 2.0.0 and prior to versions 5.1.11 and 5.2.4, arbitrary classes can be loaded and instantiated using a HTTP PUT request to the / ...
Continue ReadingFebruary 09, 2024
Graylog is a free and open log management platform. Starting in version 4.3.0 and prior to versions 5.1.11 and 5.2.4, reauthenticating with an existing session cookie would re-use that session id, eve ...
Continue ReadingFebruary 09, 2024
Fortinet has disclosed a new critical security flaw in FortiOS SSL VPN that it said is likely being exploited in the wild. The vulnerability, CVE-2024-21762 (CVSS score: 9.6), allows for the execution ...
Continue ReadingFebruary 09, 2024
According to the versions of the tomcat packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities : Incomplete Cleanup vulnerability in Apache Tomca ...
Continue ReadingFebruary 09, 2024
According to the versions of the curl packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities : This flaw allows an attacker to insert cookies at ...
Continue ReadingFebruary 09, 2024
The remote CentOS Linux 8 host has a package installed that is affected by multiple vulnerabilities as referenced in the CESA-2023:1787 advisory. Unexpected data returned from the Safe Browsing API ...
Continue ReadingFebruary 09, 2024
The remote CentOS Linux 8 host has a package installed that is affected by multiple vulnerabilities as referenced in the CESA-2023:7508 advisory. On some systemsdepending on the graphics settings an ...
Continue ReadingFebruary 09, 2024
Back to Main