KB5028223: Windows Server 2012 R2 Security Update (July 2023)

The remote Windows host is missing security update 5028223. It is, therefore, affected by multiple vulnerabilities - Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerabil ...

Continue Reading
Exploit for Server-Side Request Forgery in Rbaskets Request Baskets

# PoC of SSRF on Request-Baskets (CVE-2023-27163) This reposito...Read More ...

Continue Reading

CVSS3 - MEDIUM

CVSS2 - MEDIUM

Frappe Framework (ERPNext) 13.4.0 – Remote Code Execution (Authenticated)

Post ContentRead More ...

Continue Reading
Frappe Framework (ERPNext) 13.4.0 – Remote Code Execution (Authenticated) Vulnerability

Post ContentRead More ...

Continue Reading
Vendure Cross Site Request Forgery vulnerability impacting all API requests

### Impact Vendure is an e-commerce GraphQL framework with a number of APIs and different levels of authorization. By default the Cookie settings are insecure, having the SameSite setting as false whi ...

Continue Reading
Vendure Cross Site Request Forgery vulnerability impacting all API requests

### Impact Vendure is an e-commerce GraphQL framework with a number of APIs and different levels of authorization. By default the Cookie settings are insecure, having the SameSite setting as false whi ...

Continue Reading
Microsoft and Adobe Patch Tuesday, July 2023 Security Update Review

Microsoft has released July's edition of Patch Tuesday! This installment of security updates addressed **132** security vulnerabilities in various products, features, and roles. ## Microsoft Patch Tu ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

Fortinet Fortigate – Existing websocket connection persists after deleting API admin (FG-IR-23-028)

The version of Fortigate installed on the remote host is prior to tested version. It is, therefore, affected by a vulnerability as referenced in the FG-IR-23-028 advisory. - An insufficient session ...

Continue Reading

Back to Main

Subscribe for the latest news: