PHP vulnerabilities

Releases Ubuntu 20.04 LTS Ubuntu 18.04 ESM Ubuntu 16.04 ESM Packages php7.0 - HTML-embedded scripting language interpreter php7.2 - HTML-embedded scripting language interpreter php7.4 - HTML-embedd ...

Continue Reading
SUSE SLES15 Security Update : SUSE Manager Server 4.3 (SUSE-SU-2024:0485-1)

The remote SUSE Linux SLES15 host has packages installed that are affected by multiple vulnerabilities as referenced in the SUSE-SU-2024:0485-1 advisory. jose4j before v0.9.3 allows attackers to set ...

Continue Reading
CVE-2023-52425

libexpat through 2.5.0 allows a denial of service (resource consumption) because many full reparsings are required in the case of a large token for which multiple buffer fills are needed. Bugs https:/ ...

Continue Reading
CVE-2023-52426

libexpat through 2.5.0 allows recursive XML Entity Expansion if XML_DTD is undefined at compile time. Bugs https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1063240 Notes Author| Note ---|--- sbeatti ...

Continue Reading
Nextcloud: xmlrpc.php &wp-cron.php files are enabled, and will used for (DDOS),(DOS) and broutforce users attack.

Hi Hackerones Team, After previewing my target scopes and restrictions, I detremined to choese myscope " https://nextcloud.com " and started my testing phases. 1->> - ...

Continue Reading
Code injection

Typecho v1.2.1 was discovered to be vulnerable to an XML Quadratic Blowup attack via the component...Read More ...

Continue Reading
Cross site request forgery (csrf)

Cross-Site Request Forgery (CSRF) vulnerability in Bill Minozzi Disable Json API, Login Lockdown, XMLRPC, Pingback, Stop User Enumeration Anti Hacker Scan.This issue affects Disable Json API, Login Lo ...

Continue Reading
BIT-wordpress-multisite-2020-28036

wp-includes/class-wp-xmlrpc-server.php in WordPress before 5.5.2 allows attackers to gain privileges by using XML-RPC to comment on a...Read More ...

Continue Reading

Back to Main

Subscribe for the latest news: