MoveIT v1.1.11 was discovered to contain a cross-site scripting (XSS) vulenrability via the API authentication function.Read More ...
Continue ReadingMay 11, 2023
Rockwell Automation ThinManager product allows the use of medium strength ciphers. Â If the client requests an insecure cipher, a malicious actor could potentially decrypt traffic sent between the c ...
Continue ReadingMay 11, 2023
net.opentsdb:opentsdb is vulnerable to Command Injection. Insufficient validation of parameters passed to the legacy HTTP query API allows crafted OS commands to bypass validation, allowing malicious ...
Continue ReadingMay 11, 2023
Post ContentRead More ...
Continue ReadingMay 11, 2023
[]() A previously undetected advanced persistent threat (APT) actor du ...
Continue ReadingMay 11, 2023
## 1. EXECUTIVE SUMMARY * **CVSS v3 7.5** * **ATTENTION:** Exploitable remotely/low attack complexity * **Vendor:** Rockwell Automation * **Equipment:** ThinManager * **Vulnerabilities:** In ...
Continue ReadingMay 11, 2023
## 1. EXECUTIVE SUMMARY * **CVSS v3 7.2 ** * **ATTENTION:** Exploitable remotely/low attack complexity * **Vendor:** Siemens * **Equipment:** SIMATIC Cloud Connect 7 * **Vulnerabilities:** I ...
Continue ReadingMay 11, 2023
Last week, there were 58 vulnerabilities disclosed in 43 WordPress Plugins and 3 WordPress themes that have been added to the Wordfence Intelligence Vulnerability Database, and there were 27 Vulnerabi ...
Continue ReadingMay 11, 2023
Back to Main