Category: CVSS3 - HIGH
(RHSA-2022:6823) Important: Red Hat JBoss Enterprise Application Platform 7.4.7 Security update

Red Hat JBoss Enterprise Application Platform 7 is a platform for Java applications based on the WildFly application runtime. This release of Red Hat JBoss Enterprise Application Platform 7.4.7 serves ...

Continue Reading
CVE-2022-42241

Simple Cold Storage Management System v1.0 is vulnerable to SQL injection via /csms/classes/Master.php?f=delete_message.Read More ...

Continue Reading
CVE-2022-42242

Simple Cold Storage Management System v1.0 is vulnerable to SQL injection via /csms/classes/Master.php?f=delete_booking.Read More ...

Continue Reading
CVE-2022-42243

Simple Cold Storage Management System v1.0 is vulnerable to SQL injection via /csms/admin/storages/manage_storage.php?id=.Read More ...

Continue Reading
CVE-2022-42249

Simple Cold Storage Management System v1.0 is vulnerable to SQL injection via /csms/admin/storages/view_storage.php?id=.Read More ...

Continue Reading
CVE-2022-42250

Simple Cold Storage Management System v1.0 is vulnerable to SQL injection via /csms/admin/inquiries/view_details.php?id=.Read More ...

Continue Reading
Denial Of Service (DoS)

lighttpd is vulnerable to denial of service. The vulnerability exists due to a lack of initialization when an invalide HTTP request (websocket handshake) leading to a null pointer dereference allowing ...

Continue Reading
(RHSA-2022:6757) Important: Red Hat build of Eclipse Vert.x 4.3.3 security update

This release of Red Hat build of Eclipse Vert.x 4.3.3 GA includes security updates. For more information, see the release notes listed in the References section. Security Fix(es): * graphql-java: DoS ...

Continue Reading
Exploit for Command Injection in Atlassian Bitbucket

# Bitbucket Server CVE-2022-36804 ## ???? ``` Atlassian ?...Read More ...

Continue Reading
Microsoft Exchange vulnerable to server-side request forgery and remote code execution.

### Overview Microsoft Exchange 2019 Cumulative Update 23 and earlier versions are vulnerable to a server-side request forgery (SSRF) attack and remote code execution. An authenticated attacker can us ...

Continue Reading
Load more