CVE-2023-25830

There is a reflected XSS vulnerability in Esri Portal for ArcGIS versions 10.9.1, 10.8.1 and 10.7.1 which may allow a remote, unauthenticated attacker to create a crafted link which when clicked could ...

Continue Reading

CVSS3 - MEDIUM

Why Attackers Target the Government Industry

## **Key Takeaways:** * Government sites are full of information attackers want, so it’s crucial to defend them properly. * DDoS is an easy tool for attackers to use to disrupt government sit ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

ManageEngine ADAudit Plus Remote Code Execution

Post ContentRead More ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

CVE-2023-29106

A vulnerability has been identified in SIMATIC Cloud Connect 7 CC712 (All versions >= V2.0 = V2.0 Read More ...

Continue Reading

CVSS3 - MEDIUM

ManageEngine ADAudit Plus Remote Code Execution Exploit

This Metasploit module exploits security issues in ManageEngine ADAudit Plus versions prior to 7006 that allow authenticated users to execute arbitrary code by creating a custom alert profile and leve ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

CVE-2023-31485

GitLab::API::v4 through 0.26 does not verify TLS certificates when connecting to a GitLab server, enabling machine-in-the-middle attacks. #### Bugs * Read More ...

Continue Reading

CVSS3 - MEDIUM

(RHSA-2023:2161) Moderate: fence-agents security and bug fix update

The fence-agents packages provide a collection of scripts for handling remote power management for cluster devices. They allow failed or unreachable nodes to be forcibly restarted and removed from the ...

Continue Reading

CVSS3 - MEDIUM

ManageEngine ADAudit Plus Authenticated File Write RCE

This module exploits security issues in ManageEngine ADAudit Plus prior to 7006 that allow authenticated users to execute arbitrary code by creating a custom alert profile and leveraging its custom al ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

Back to Main

Subscribe for the latest news: