Security Bulletin: InfoSphere Guardium Data Redaction Java API Documentation Frame Injection Vulnerability (CVE-2013-1571)

## Abstract Java API Documentation contains a frame injection vulnerability. ## Content **VULNERABILITY DETAILS: ** **CVEID: **CVE-2013-1571 **DESCRIPTION: **HTML documentation generated by the Ja ...

Continue Reading

CVSS2 - MEDIUM

Security Bulletin: IBM InfoSphere Streams Java API Documentation Frame Injection Vulnerability (CVE-2013-1571)

## Abstract Java API Documentation contains a frame injection vulnerability. InfoSphere Streams ships javadoc files in it's install tree. If these files are made accessible from the internet this vuln ...

Continue Reading

CVSS2 - MEDIUM

[SECURITY] [DSA 5243-1] lighttpd security update

- ------------------------------------------------------------------------- Debian Security Advisory DSA-5243-1 [email protected] https://www.debian.org/security/ ...

Continue Reading

CVSS3 - HIGH

Information Disclosure

Rancher is vulnerable to information disclosure. Confidential information such as passwords and API keys are stored in kubernetes objects using plaintext which allows an attacker with read permission ...

Continue Reading

CVSS3 - MEDIUM

Information Disclosure

soap is vulnerable to information disclosure. The vulnerability exists due to the lack of restrictions in the XML external entity reference of the library, allowing an attacker to read arbitrary files ...

Continue Reading

CVSS3 - HIGH

lighttpd – security update

Several vulnerabilities were discovered in lighttpd, a fast webserver with minimal memory footprint. * [CVE-2022-37797](https://security-tracker.debian.org/tracker/CVE-2022-37797) An invalid HTTP requ ...

Continue Reading

CVSS3 - HIGH

CVE-2022-22526

In Carlo Gavazzi UWP3.0 in multiple versions and CPY Car Park Server in Version 2.8.3 a missing authentication allows for full access via API.Read More ...

Continue Reading

CVSS3 - CRITICAL

CVE-2022-28811

In Carlo Gavazzi UWP3.0 in multiple versions and CPY Car Park Server in Version 2.8.3 a remote, unauthenticated attacker could utilize an improper input validation on an API-submitted parameter to exe ...

Continue Reading

CVSS3 - CRITICAL

Back to Main

Subscribe for the latest news: