CVE-2018-1163

This vulnerability allows remote attackers to bypass authentication on vulnerable installations of Quest NetVault Backup 11.2.0.13. The specific flaw exists within JSON RPC Request handling. By settin ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

CVE-2018-1000093

CryptoNote version version 0.8.9 and possibly later contain a local RPC server which does not require authentication, as a result the walletd and the simplewallet RPC daemons will process any commands ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

Dell EMC Avamar and Integrated Data Protection Appliance Installation Manager – Invalid Access Control

Post ContentRead More ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - MEDIUM

Quest NetVault Backup NVBUBackup Count Method SQL Injection (CVE-2017-17652)

An SQL injection vulnerability exists in the Server Process Manager Service of Quest NetVault Backup. The vulnerability is due to improper validation of user-supplied input on JSON-RPC requests invoki ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

Quest NetVault Backup NVBUEventHistory Get Method SQL Injection (CVE-2017-17412)

An SQL injection vulnerability exists in the Server Process Manager Service of Quest NetVault Backup. The vulnerability is due to improper validation of user-supplied input on JSON-RPC requests invoki ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

CVE-2018-15490

An issue was discovered in ExpressVPN on Windows. The Xvpnd.exe process (which runs as a service with SYSTEM privileges) listens on TCP port 2015, which is used as an RPC interface for communication w ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

Quest NetVault Backup Server 11.4.5 – Process Manager Service SQL Injection Remote Code Execution

Quest NetVault Backup Server 11.4.5 - Process Manager Service SQL Injection Remote Code ExecutionRead More ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

Security update for ansible (moderate)

An update that fixes 6 vulnerabilities is now available. Description: This update for ansible fixes the following issues: Security vulnerabilities fixed: - CVE-2018-16876: Respect no_log on r ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

Back to Main

Subscribe for the latest news: