CVE-2023-30682

Improper access control in Telecom prior to SMR Aug-2023 Release 1 allows local attackers to call silenceRinger API without permission.Read More ...

Continue Reading
CVE-2023-30683

Improper access control in Telecom prior to SMR Aug-2023 Release 1 allows local attackers to call endCall API without permission.Read More ...

Continue Reading
CVE-2023-30684

Improper access control in Samsung Telecom prior to SMR Aug-2023 Release 1 allows local attackers to call acceptRingingCall API without permission.Read More ...

Continue Reading
Metabase Setup Token RCE

Metabase versions before 0.46.6.1 contain a flaw where the secret setup-token is accessible even after the setup process has been completed. With this token a user is able to submit the setup function ...

Continue Reading
Privilege Escalation

sentry is vulnerable to Privilege Escalation. An authenticated attacker is able to take advantage of an access token with a restricted scope by requesting a list of all user-created tokens, including ...

Continue Reading
Exploit for Server-Side Request Forgery in Rbaskets Request Baskets

# CVE-2023-27163 - Request Baskets SSRF Request Baskets SSRF P...Read More ...

Continue Reading

CVSS3 - MEDIUM

CVSS2 - MEDIUM

Sentry vulnerable to incorrect credential validation on OAuth token requests

### Impact An attacker with sufficient client-side exploits could retrieve a valid access token for another user during the OAuth token exchange due to incorrect credential validation. The client ID m ...

Continue Reading
[SECURITY] [DSA 5473-1] orthanc security update

- ------------------------------------------------------------------------- Debian Security Advisory DSA-5473-1 [email protected] https://www.debian.org/security/ ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

Back to Main

Subscribe for the latest news: