Category: CVSS3 - CRITICAL
Exploit for SQL Injection in Logrocket-Oauth2-Example Project Logrocket-Oauth2-Example

# CVE-2022-38488 logrocket-oauth2-example through 2020-05-27 al...Read More ...

Continue Reading
Exploit for Improper Authentication in Apache Soap

# CVE-2022-45378 ** UNSUPPPORTED WHEN ASSIGNED **In the default...Read More ...

Continue Reading
CVE-2022-46364

A SSRF vulnerability was found in Apache CXF. This issue occurs when parsing the href attribute of XOP:Include in MTOM requests, allowing an attacker to perform SSRF style attacks on webservices that ...

Continue Reading
CVE-2022-41040 and CVE-2022-41082 – zero-days in MS Exchange

![](https://media.kasperskycontenthub.com/wp-content/uploads/sites/43/2022/12/19160500/abstract_black_matrix-990x400.jpg) ## Summary At the end of September, GTSC reported an attack on critical infras ...

Continue Reading
CVE-2022-41040 and CVE-2022-41082 – zero-days in MS Exchange

![](https://media.kasperskycontenthub.com/wp-content/uploads/sites/43/2022/12/19160500/abstract_black_matrix-990x400.jpg) ## Summary At the end of September, GTSC reported an attack on critical infras ...

Continue Reading
Metasploit Weekly Wrap-Up

## A sack full of cheer from the Hacking Elves of Metasploit ![Metasploit Weekly Wrap-Up](https://blog.rapid7.com/content/images/2022/12/metasploit-ascii-1-2.png) It is clear that the Metasploit elves ...

Continue Reading
Security Bulletin: IBM DataPower Gateway vulnerable to HTTP request smuggling (CVE-2022-35256)

## Summary This issue may affect the management interface for the API Connect Gateway Service. IBM has addressed the CVE. ## Vulnerability Details ** CVEID: **[CVE-2022-35256]() ** DESCRIPTION: **Node ...

Continue Reading
CISA Alert: Veeam Backup and Replication Vulnerabilities Being Exploited in Attacks

[![Veeam Backup and Replication](data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAQAAAC1HAwCAAAAC0lEQVR42mP8Xw8AAoMBgDTD2qgAAAAASUVORK5CYII=)]() The U.S. Cybersecurity and Infrastructure Securi ...

Continue Reading
[SECURITY] [DLA 3243-1] php7.3 security update

- ------------------------------------------------------------------------- Debian LTS Advisory DLA-3243-1 [email protected] https://www.debian.org/lts/security/ ...

Continue Reading
[SECURITY] [DLA 3243-1] php7.3 security update

- ------------------------------------------------------------------------- Debian LTS Advisory DLA-3243-1 [email protected] https://www.debian.org/lts/security/ ...

Continue Reading
Load more