Palo Alto Networks – readSessionVarsFromFile() Session Corruption Exploit

This Metasploit module exploits a chain of vulnerabilities in Palo Alto Networks products running PAN-OS versions prior to 6.1.19, 7.0.19, 7.1.14, and 8.0.6. This chain starts by using an authenticati ...

Continue Reading
Hackers Stole Over $20 Million in Ethereum from Insecurely Configured Clients

[![ethereum](https://thehackernews.com/images/-9Knd5dDX3hE/Wx5IfVWydPI/AAAAAAAAxBU/bR1uTuJSFes4vZcxVS8w20HbYTp7TOiGwCLcBGAs/s728-e100/ethereum.png)]() Security researchers have been warning about cybe ...

Continue Reading
IOVLabs: Attacker can add arbitrary data to the blockchain without paying gas

**Summary:** Due to a missing sanity check in Transaction::rlpParse, an attacker can append arbitrary RLP-encoded data to the end of an otherwise valid transaction, and that data will not only pass th ...

Continue Reading
Opsview Monitor Multiple Vulnerabilities

### 1. Advisory Information **Title: **Opsview Monitor Multiple Vulnerabilities **Advisory ID: **CORE-2018-0008 **Advisory URL: ** **Date published: **2018-09-04 **Date of last update: **2018-09-04 ** ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

Monero: Monero can leak unitialized memory

See this proof of concept: ```cpp #include #include #include INITIALIZE_EASYLOGGINGPP template static void invoke_http_json(void) { typename T::request ireq; typename T::response ires; st ...

Continue Reading
Quest NetVault Backup Server < 11.4.5 – SQL Injection / Remote Code Execution Vulnerability

Exploit for multiple platform in category web applicationsRead More ...

Continue Reading
Quest NetVault Backup Server Code Execution / SQL Injection

Post ContentRead More ...

Continue Reading
Kyverno vulnerable due to usage of insecure cipher

### Summary Insecure 3DES ciphers are used which may lead to exploitation of the [Sweet32 vulnerability](https://sweet32.info/). Specifically, the ciphers TLS_ECDHE_RSA_WITH_3DES_EDE_CBC_SHA (secp256r ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

Back to Main

Subscribe for the latest news: