Orthanc before 1.12.0 allows authenticated users with access to the Orthanc API to overwrite arbitrary files on the file system, and in specific deployment scenarios allows the attacker to overwrite t ...
Continue ReadingJune 29, 2023
## 1. EXECUTIVE SUMMARY * **âCVSS v3 7.2** * **âATTENTION:** Exploitable remotely/low attack complexity * **âVendor: **Ovarro * **âEquipment: **TBox RTUs * **âVulner ...
Continue ReadingJune 29, 2023
Last week, there were 84 vulnerabilities disclosed in 76 WordPress Plugins and 2 WordPress themes that have been added to the Wordfence Intelligence Vulnerability Database, and there were 42 Vulnerabi ...
Continue ReadingJune 29, 2023
[]() Cybersecurity researchers have shared the inner workings of a ...
Continue ReadingJune 29, 2023
streampipes-rest is vulnerable to Improper Privilege Management. The vulnerability exists due to improperly validating admin-only access in `UserResource.java`, which allows an attacker to elevate pri ...
Continue ReadingJune 29, 2023
github.com/mattermost/mattermost-server is vulnerable to Missing Authorization. The vulnerability exists because the library fails to validate all parameters, allowing an authenticated attacker to edi ...
Continue ReadingJune 29, 2023
github.com/mattermost/mattermost-server is vulnerable to Missing Authorization. The vulnerability exists because the library does not verify whether the requestor is a system admin or not before allow ...
Continue ReadingJune 29, 2023
github.com/mattermost/mattermost is vulnerable to Missing Authorization. A remote authenticated attacker is able to gain access to arbitrary posts by using the message threads API because the library ...
Continue ReadingJune 29, 2023
Back to Main