_This blog post was authored by Ankur Saini and Hossein Jazi_ The Malwarebytes Threat Intelligence team has identified a new Remote Access Trojan we are calling Woody Rat that has been in the wild for ...
Continue ReadingAugust 08, 2022
An update that fixes one vulnerability is now available. Description: This update for trivy fixes the following issues: trivy was updated to version 0.30.4: * fix: remove the first arg when r ...
Continue ReadingAugust 06, 2022
An update that fixes one vulnerability is now available. Description: This update for caddy fixes the following issues: Update to version 2.5.2: * admin: expect quoted ETags (#4879) * head ...
Continue ReadingAugust 06, 2022
## Log4Shell in MobileIron Core ![Metasploit Weekly Wrap-Up](https://blog.rapid7.com/content/images/2022/08/metasploit-ascii-1-2.png) Thanks to [jbaines-r7]() we have yet another Log4Shell [exploit]( ...
Continue ReadingAugust 05, 2022
**Issue Overview:** A flaw was found in the tomcat package. When a web application sends a WebSocket message concurrently with the WebSocket connection closing, the application may continue to use th ...
Continue ReadingAugust 04, 2022
- CVE-2021-21702: Fix null pointer dereference in Soap ClientRead More ...
Continue ReadingAugust 04, 2022
OMICARD EDMs mail file relay function has a path traversal vulnerability. An unauthenticated remote attacker can exploit this vulnerability to by-pass authentication and access arbitrary system fil ...
Continue ReadingAugust 04, 2022
OMICARD EDM has a hard-coded machine key. An unauthenticated remote attacker can use the machine key to send serialized payload to the server to execute arbitrary code, manipulate system data and dis ...
Continue ReadingAugust 04, 2022
Back to Main