Concrete CMS vulnerable to Session Fixation

Concrete CMS (formerly concrete5) below 8.5.10 and between 9.0.0 and 9.1.2 does not issue a new session ID upon successful OAuth authentication. Remediate by updating to Concrete CMS 9.1.3+ or 8.5.10+ ...

Continue Reading

CVSS3 - MEDIUM

Dolibarr vulnerable to privilege escalation

Dolibarr Open Source ERP & CRM for Business before v14.0.1 allows attackers to escalate privileges via a crafted API.Read More ...

Continue Reading

CVSS3 - CRITICAL

Security Bulletin: IBM DataPower Gateway potentially vulnerable to HTTP request smuggling

## Summary These flaws have the potential to affect the API Gateway Sservice. IBM has addressed the CVEs ## Vulnerability Details ** CVEID: **[CVE-2022-32213]() ** DESCRIPTION: **Node.js is vulnerable ...

Continue Reading

CVSS3 - CRITICAL

Concrete CMS vulnerable to Session Fixation

Concrete CMS (formerly concrete5) below 8.5.10 and between 9.0.0 and 9.1.2 does not issue a new session ID upon successful OAuth authentication. Remediate by updating to Concrete CMS 9.1.3+ or 8.5.10+ ...

Continue Reading

CVSS3 - MEDIUM

CVE-2022-3589

An API Endpoint used by Miele's "AppWash" MobileApp in all versions was vulnerable to an authorization bypass. A low privileged, remote attacker would have been able to gain read and partial write acc ...

Continue Reading

CVSS3 - HIGH

CVE-2022-3589

An API Endpoint used by Miele's "AppWash" MobileApp in all versions was vulnerable to an authorization bypass. A low privileged, remote attacker would have been able to gain read and partial write acc ...

Continue Reading

CVSS3 - HIGH

Apache SOAP authentication error vulnerability

Apache SOAP is used as a client-side library by the Apache Foundation to invoke SOAP services available elsewhere, and as a server-side tool to implement SOAP-accessible services. an authentication er ...

Continue Reading

CVSS3 - CRITICAL

Atlassian Releases Patches for Critical Flaws Affecting Crowd and Bitbucket Products

[ ![Atlassian](https://thehackernews.com/new-images/img/b/R29vZ2xl/AVvXsEgXWvoG3Wa2O4iFP8_YIndzkCWMmuv9PIBNhyHdxMESLUy5-NEOPklfY8GfEfsAjbezb2jW6-Cs1Z45TmiwQAGS2DdMEJQ3dKjOpoQCvPLHSXD_nsfTUIWxYqab5F2I2 ...

Continue Reading

CVSS3 - CRITICAL

Back to Main

Subscribe for the latest news: