Server-Side Request Forgery (SSRF) vulnerability in API checker of Pandora FMS. Application does not have a check on the URL scheme used while retrieving API URL. Rather than validating the http/https ...
Continue ReadingAugust 27, 2023
There exists an vulnerability causing an abort() to be called in gRPC. The following headers cause gRPC's C++ implementation to abort() when called via http2: te: x (x != trailers) :scheme: x (x ! ...
Continue ReadingAugust 27, 2023
Updates of ['grpc'] packages of Photon OS have been released.Read More ...
Continue ReadingAugust 27, 2023
Updates of ['linux-rt', 'python3', 'linux-aws', 'linux', 'linux-secure'] packages of Photon OS have been released.Read More ...
Continue ReadingAugust 26, 2023
## Power[shell]Point ![Metasploit Weekly Wrap-Up](https://blog.rapid7.com/content/images/2023/08/metasploit-ascii-1-2-1.png) This weekâs new features and improvements start with two new exploit m ...
Continue ReadingAugust 26, 2023
ArcGIS Enterprise Server versions 11.0 and below have an information disclosure vulnerability where a remote, unauthorized attacker may submit a crafted query that may result in a low severity informa ...
Continue ReadingAugust 25, 2023
e-Excellence U-Office Force generates an error message in webiste service. An unauthenticated remote attacker can obtain partial sensitive system information from error message by sending a crafted co ...
Continue ReadingAugust 25, 2023
e-Excellence U-Office Force has a path traversal vulnerability within its file uploading and downloading functions. An unauthenticated remote attacker can exploit this vulnerability to read arbitrary ...
Continue ReadingAugust 25, 2023
Back to Main