Exploit for Missing Authentication for Critical Function in Veeam Backup & Replication

# CVE-2023-27532 POC for CVE-2023-27532 affecting Veeam Backup a...Read More ...

Continue Reading

CVSS3 - HIGH

Wordfence Intelligence Weekly WordPress Vulnerability Report (Mar 13, 2023 to Mar 19, 2023)

Last week, there were 92 vulnerabilities disclosed in 76 WordPress Plugins and 7 WordPress themes that have been added to the Wordfence Intelligence Vulnerability Database, and there were 34 Vulnerabi ...

Continue Reading

CVSS3 - MEDIUM

CVE-2022-4224

In multiple products of CODESYS v3 in multiple versions a remote low privileged user could utilize this vulnerability to read and modify system files and OS resources or DoS the device.Read More ...

Continue Reading

CVSS3 - HIGH

CVE-2018-25048

The CODESYS runtime system in multiple versions allows an remote low privileged attacker to use a path traversal vulnerability to access and modify all system files as well as DoS the device.Read More ...

Continue Reading

CVSS3 - HIGH

CVE-2022-22512

Hard-coded credentials in Web-UI of multiple VARTA Storage products in multiple versions allows an unauthorized attacker to gain administrative access to the Web-UI via network.Read More ...

Continue Reading

CVSS3 - CRITICAL

Amazon Linux AMI : lighttpd (ALAS-2023-1705)

The version of lighttpd installed on the remote host is prior to 1.4.53-1.37. It is, therefore, affected by a vulnerability as referenced in the ALAS-2023-1705 advisory. - In lighttpd 1.4.65, mod_ws ...

Continue Reading

CVSS3 - HIGH

(RHSA-2023:1428) Important: Migration Toolkit for Containers (MTC) 1.7.8 security and bug fix update

The Migration Toolkit for Containers (MTC) enables you to migrate Kubernetes resources, persistent volume data, and internal container images between OpenShift Container Platform clusters, using the M ...

Continue Reading

CVSS3 - CRITICAL

Important: lighttpd

**Issue Overview:** In lighttpd 1.4.65, mod_wstunnel does not initialize a handler function pointer if an invalid HTTP request (websocket handshake) is received. It leads to null pointer dereference w ...

Continue Reading

CVSS3 - HIGH

Back to Main

Subscribe for the latest news: