Command Injection

tomcat6 is vulnerable to command injection. Apache Tomcat could allow a remote attacker to bypass security restrictions, caused by improper error handling in WebSocket connection. By sending a special ...

Continue Reading

CVSS3 - HIGH

CVSS2 - HIGH

Mirai Variant MooBot Botnet Exploiting D-Link Router Vulnerabilities

[![Mirai Variant MooBot Botnet](https://thehackernews.com/new-images/img/b/R29vZ2xl/AVvXsEgjk6n4GqLeSCvA825EeY_eF7vYI55fvQ9jECCbHjI-lllr5ZYjGMM857eW8oID7BaYRz0bxDPhexKL4a6t6Hr1Yc8BaH87HdzASMiuPq-SR6Lw ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

IBM Spectrum Protect: Multiple Vulnerabilities

### Background TSM provides the client and the API for IBM Spectrum Protect (formerly known as Tivoli Storage Manager), a backup and archival client/server solution targetting large tape libraries. ## ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

Security Bulletin: IBM Planning Analytics Workspace is affected by multiple vulnerabilities (CVE-2022-22968, CVE-2022-24785, CVE-2017-18214, CVE-2016-4055, CVE-2018-1000613, CVE-2020-15522, CVE-2018-1000180, CVE-2020-26939, CVE-2022-22314)

## Summary IBM Planning Analytics Workspace is affected by multiple vulnerabilities. Spring is used in IBM Planning Analytics Workspace in Server-Side Rest APIs as an indirect dependency by MongoDB th ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

(RHSA-2022:6351) Important: OpenShift Virtualization 4.10.5 Images security and bug fix update

OpenShift Virtualization is Red Hat's virtualization solution designed for Red Hat OpenShift Container Platform. This advisory contains the following OpenShift Virtualization 4.10.5 images: RHEL-8-CNV ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - MEDIUM

Multiple MySQL vulnerabilities CVE-2020-26237, CVE-2021-22119, CVE-2022-1292, CVE-2022-21455, CVE-2022-21509

* [CVE-2020-26237]() Highlight.js is a syntax highlighter written in JavaScript. Highlight.js versions before 9.18.2 and 10.1.2 are vulnerable to Prototype Pollution. A malicious HTML code block can b ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

OS Command Injection

hadoop-common is vulnerable to OS command injection. The vulnerability exists due to lack of sanitization of input file name by FileUtil.unTar(File, File) API before being passed to the shell, allowin ...

Continue Reading

CVSS3 - CRITICAL

Exploit for Path Traversal in Secureauth Impacket

Impacket ======== [![Latest Version](https://img.shields.io/pyp...Read More ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

Back to Main

Subscribe for the latest news: