CVE-2023-1547

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Elra Parkmatik allows SQL Injection through SOAP Parameter Tampering, Command Line Execution throu ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

PHP vulnerability

## Releases * Ubuntu 23.04 * Ubuntu 22.10 * Ubuntu 22.04 LTS * Ubuntu 20.04 LTS ## Packages * php7.4 - HTML-embedded scripting language interpreter * php8.1 - HTML-embedded scripting langu ...

Continue Reading
Ubuntu 20.04 LTS / 22.04 LTS / 22.10 / 23.04 : PHP vulnerability (USN-6199-1)

The remote Ubuntu 20.04 LTS / 22.04 LTS / 22.10 / 23.04 host has packages installed that are affected by a vulnerability as referenced in the USN-6199-1 advisory. - The vulnerability exists due to a ...

Continue Reading
Security Bulletin: Security vulnerabilities have been identified in IBM WebSphere Application Server used by IBM InfoSphere Master Data Management Server 11.6

## Summary IBM WebSphere Application Server 9.0 traditional is vulnerable to a privilege escalation vulnerability when using token-based authentication in an admin request over the SOAP connector. X-F ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

PHP 8.2.x < 8.2.7 Information Disclosure

According to its self-reported version number, the version of PHP installed on the remote host is 8.0.x prior to 8.0.29, 8.1.x prior to 8.1.20, or 8.2.x prior to 8.2.7. It is, therefore, affected by a ...

Continue Reading
PHP 8.0.x < 8.0.29 Information Disclosure

According to its self-reported version number, the version of PHP installed on the remote host is 8.0.x prior to 8.0.29, 8.1.x prior to 8.1.20, or 8.2.x prior to 8.2.7. It is, therefore, affected by a ...

Continue Reading
PHP 8.1.x < 8.1.20 Information Disclosure

According to its self-reported version number, the version of PHP installed on the remote host is 8.0.x prior to 8.0.29, 8.1.x prior to 8.1.20, or 8.2.x prior to 8.2.7. It is, therefore, affected by a ...

Continue Reading
CVE-2023-35998

A missing authorization check in multiple SOAP endpoints of the Insider Threat Management Server enables an attacker on an adjacent network to read and write unauthorized objects. Successful exploitat ...

Continue Reading

Back to Main

Subscribe for the latest news: