Hyperledger Besu is an open-source, MainNet compatible, Ethereum client written in Java. In Besu before version 1.5.1 there is a denial-of-service vulnerability involving the HTTP JSON-RPC API service ...
Continue ReadingMay 30, 2022
## Summary: Using a flaw in the gossip protocol, a malicious shard member can trick any other fellow shard member into signing an arbitrary message. One way this can be exploited is by creating a tran ...
Continue ReadingMay 30, 2022
[![](https://1.bp.blogspot.com/-W5l3sL1zTfc/X8XGnBYqMPI/AAAAAAAAUhc/Zcc1GATZITUeA6iKqaQ4XRBFJUHJ6uokACNcBGAsYHQ/w438-h640/enum4linux-ng_5_demo1.gif)]() enum4linux-ng.py is a rewrite of Mark Lowe's (fo ...
Continue ReadingMay 30, 2022
[![](https://1.bp.blogspot.com/-02gmDwssX6I/X7NeUmSof6I/AAAAAAAAUZM/DsK-gF0mowYMB78XRA12uNh2Nj4ChbV-gCNcBGAsYHQ/w640-h142/openedr_1.jpeg)]() We at OpenEDR believe in creating a [cybersecurity]( "cyber ...
Continue ReadingMay 30, 2022
The vCenter Server contains an information disclosure vulnerability in VAPI (vCenter API) service. A malicious actor with network access to port 443 on vCenter Server may exploit this issue by sending ...
Continue ReadingMay 30, 2022
In Arista's MOS (Metamako Operating System) software which is supported on the 7130 product line, under certain conditions, user authentication can be bypassed when API access is enabled via the JSON- ...
Continue ReadingMay 30, 2022
[![](https://2.bp.blogspot.com/-2DFBtt0igd8/YR2RnxGfu_I/AAAAAAAArR4/u_iEJXOd1hwknuA-Bil4XIP3QN8pDPt2gCK4BGAYYCw/w400-h351/fpicker_1_fpicker_logo-766362.png)]() fpicker is a Frida-based fuzzing suite t ...
Continue ReadingMay 30, 2022
An improper input validation vulnerability in the service of ezPDFReader allows attacker to execute arbitrary command. This issue occurred when the ezPDF launcher received and executed crafted input v ...
Continue ReadingMay 30, 2022
Back to Main