(RHSA-2022:6823) Important: Red Hat JBoss Enterprise Application Platform 7.4.7 Security update
Red Hat JBoss Enterprise Application Platform 7 is a platform for Java applications based on the WildFly application runtime. This release of Red Hat JBoss Enterprise Application Platform 7.4.7 serves ...
Continue Reading
October 06, 2022
CVE-2022-42241
Simple Cold Storage Management System v1.0 is vulnerable to SQL injection via /csms/classes/Master.php?f=delete_message.Read More ...
Continue Reading
October 06, 2022
CVE-2022-42242
Simple Cold Storage Management System v1.0 is vulnerable to SQL injection via /csms/classes/Master.php?f=delete_booking.Read More ...
Continue Reading
October 06, 2022
CVE-2022-42243
Simple Cold Storage Management System v1.0 is vulnerable to SQL injection via /csms/admin/storages/manage_storage.php?id=.Read More ...
Continue Reading
October 06, 2022
CVE-2022-42249
Simple Cold Storage Management System v1.0 is vulnerable to SQL injection via /csms/admin/storages/view_storage.php?id=.Read More ...
Continue Reading
October 06, 2022
CVE-2022-42250
Simple Cold Storage Management System v1.0 is vulnerable to SQL injection via /csms/admin/inquiries/view_details.php?id=.Read More ...
Continue Reading
October 06, 2022
Denial Of Service (DoS)
lighttpd is vulnerable to denial of service. The vulnerability exists due to a lack of initialization when an invalide HTTP request (websocket handshake) leading to a null pointer dereference allowing ...
Continue Reading
October 06, 2022
(RHSA-2022:6757) Important: Red Hat build of Eclipse Vert.x 4.3.3 security update
This release of Red Hat build of Eclipse Vert.x 4.3.3 GA includes security updates. For more information, see the release notes listed in the References section.
Security Fix(es):
* graphql-java: DoS ...
Continue Reading
October 05, 2022
Exploit for Command Injection in Atlassian Bitbucket
# Bitbucket Server CVE-2022-36804
## ????
```
Atlassian ?...Read More ...
Continue Reading
October 05, 2022
Microsoft Exchange vulnerable to server-side request forgery and remote code execution.
### Overview
Microsoft Exchange 2019 Cumulative Update 23 and earlier versions are vulnerable to a server-side request forgery (SSRF) attack and remote code execution. An authenticated attacker can us ...
Continue Reading
October 03, 2022