CVE-2024-7073

A server-side request forgery (SSRF) vulnerability exists in multiple WSO2 products due to improper input validation in SOAP admin services. This flaw allows unauthenticated attackers to manipulate se ...

Continue Reading
CVE-2024-7074

An arbitrary file upload vulnerability exists in multiple WSO2 products due to improper validation of user input in SOAP admin services. A malicious actor with administrative privileges can upload an ...

Continue Reading
RHEL 9 : php (RHSA-2025:7431)

The remote Redhat Enterprise Linux 9 host has packages installed that are affected by multiple vulnerabilities as referenced in the RHSA-2025:7431 advisory. PHP is an HTML-embedded scripting language ...

Continue Reading
RHEL 9 : php:8.2 (RHSA-2025:7432)

The remote Redhat Enterprise Linux 9 host has packages installed that are affected by multiple vulnerabilities as referenced in the RHSA-2025:7432 advisory. PHP is an HTML-embedded scripting language ...

Continue Reading
Oracle Linux 9 : php (ELSA-2025-7431)

The remote Oracle Linux 9 host has packages installed that are affected by multiple vulnerabilities as referenced in the ELSA-2025-7431 advisory. - Fix libxml streams use wrong content-type header whe ...

Continue Reading
Oracle Linux 9 : php:8.2 (ELSA-2025-7432)

The remote Oracle Linux 9 host has packages installed that are affected by multiple vulnerabilities as referenced in the ELSA-2025-7432 advisory. php [8.2.28-1] - rebase to 8.2.28 [8.2.25-1] - re ...

Continue Reading
Oracle Linux 9 : php:8.3 (ELSA-2025-7418)

The remote Oracle Linux 9 host has packages installed that are affected by multiple vulnerabilities as referenced in the ELSA-2025-7418 advisory. php [8.3.19-1] - rebase to 8.3.19 [8.3.15-1] - re ...

Continue Reading
CVE-2024-7074 Authenticated Arbitrary File Upload in Multiple WSO2 Products via SOAP Admin Service Leading to Remote Code Execution

An arbitrary file upload vulnerability exists in multiple WSO2 products due to improper validation of user input in SOAP admin services. A malicious actor with administrative privileges can upload an ...

Continue Reading

Back to Main

Subscribe for the latest news: