Security Updates for Microsoft SQL Server ODBC Driver (April 2023)

The Microsoft SQL Server driver installation on the remote host is missing a security update. It is, therefore, affected by the following vulnerability: - A remote code execution vulnerability. An a ...

Continue Reading

CVSS3 - HIGH

RHEL 9 : edk2 (RHSA-2023:2165)

The remote Redhat Enterprise Linux 9 host has packages installed that are affected by multiple vulnerabilities as referenced in the RHSA-2023:2165 advisory. - Existing CommBuffer checks in SmmEntryP ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

Pentaho Business Server Auth Bypass and Server Side Template Injection RCE

Hitachi Vantara Pentaho Business Analytics Server prior to versions 9.4.0.1 and 9.3.0.2, including 8.3.x is vulnerable to an authentication bypass (CVE-2022-43939) and a Server Side Template Injection ...

Continue Reading

CVSS3 - CRITICAL

Command Injection

net.opentsdb:opentsdb is vulnerable to Command Injection. Insufficient validation of parameters passed to the legacy HTTP query API allows crafted OS commands to bypass validation, allowing malicious ...

Continue Reading

CVSS3 - CRITICAL

Pentaho Business Server Authentication Bypass / SSTI / Code Execution

Post ContentRead More ...

Continue Reading

CVSS3 - CRITICAL

Siemens SIMATIC Cloud Connect 7

## 1. EXECUTIVE SUMMARY * **CVSS v3 7.2 ** * **ATTENTION:** Exploitable remotely/low attack complexity * **Vendor:** Siemens * **Equipment:** SIMATIC Cloud Connect 7 * **Vulnerabilities:** I ...

Continue Reading

CVSS3 - HIGH

Wordfence Intelligence Weekly WordPress Vulnerability Report (May 1, 2023 to May 7, 2023)

Last week, there were 58 vulnerabilities disclosed in 43 WordPress Plugins and 3 WordPress themes that have been added to the Wordfence Intelligence Vulnerability Database, and there were 27 Vulnerabi ...

Continue Reading

CVSS3 - CRITICAL

Fedora 37 : vtk (2023-2cf9dd7d52)

The remote Fedora 37 host has a package installed that is affected by a vulnerability as referenced in the FEDORA-2023-2cf9dd7d52 advisory. - There is a NULL pointer dereference vulnerability in VTK ...

Continue Reading

CVSS3 - HIGH

Back to Main

Subscribe for the latest news: