Category: CVSS3 - CRITICAL
CVE-2023-35367

Windows Routing and Remote Access Service (RRAS) Remote Code Execution VulnerabilityRead More ...

Continue Reading
CVE-2023-33150

Microsoft Office Security Feature Bypass VulnerabilityRead More ...

Continue Reading
CVE-2023-37287

SmartBPM.NET has a vulnerability of using hard-coded authentication key. An unauthenticated remote attacker can exploit this vulnerability to access system with regular user privilege to read applicat ...

Continue Reading
CVE-2023-37286

SmartSoft SmartBPM.NET has a vulnerability of using hard-coded machine key. An unauthenticated remote attacker can use the machine key to send serialized payload to the server to execute arbitrary cod ...

Continue Reading
Exploit for SQL Injection in Progress Moveit Cloud

# CVE-2023-34362 POC for CVE-2023-34362 affecting MOVEit Transfe...Read More ...

Continue Reading
fusiondirectory – security update

A potential Cross Site Scripting (XSS) vulnerablity ([CVE-2022-36180](https://security-tracker.debian.org/tracker/CVE-2022-36180)) and session handling vulnerability ([CVE-2022-36179](https://security ...

Continue Reading
Secrets, Secrets Are No Fun. Secrets, Secrets (Stored in Plain Text Files) Hurt Someone

[![](data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAQAAAC1HAwCAAAAC0lEQVR42mP8Xw8AAoMBgDTD2qgAAAAASUVORK5CYII=)]() Secrets are meant to be hidden or, at the very least, only known to a specif ...

Continue Reading
Silentbob Campaign: Cloud-Native Environments Under Attack

[![Silentbob Campaign](data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAQAAAC1HAwCAAAAC0lEQVR42mP8Xw8AAoMBgDTD2qgAAAAASUVORK5CYII=)]() Cybersecurity researchers have unearthed an attack infrast ...

Continue Reading
Security Bulletin: Watson CP4D Data Stores is vulnerable to SAP NetWeaver AS for JAVA security bypass vulnerability ( CVE-2023-30744)

## Summary Potential SAP NetWeaver AS for JAVA security bypass vulnerability ( CVE-2023-30744) has been identified that may affect Watson CP4D Data Stores. Refer to details for additional information. ...

Continue Reading
Patch me if you can: Cyberattack Series

Many organizations utilize third-party apps for identity security solutions to automate and unburden overtaxed IT admins from tedious tasks that employees can perform via self-service without IT assis ...

Continue Reading
Load more