Security Bulletin: Potential Security Vulnerabilities fixed in IBM WebSphere Application Server 8.5.5
## Abstract
Cross reference list for security vulnernabilities fixed in IBM WebSphere Appplication Server Fix Pack 8.5.5
## Content
**VULNERABILITY DETAILS: **
**CVE ID: ****_CVE-2013-0482 (PM76582)_* ...
Continue Reading
September 29, 2022
[SECURITY] [DSA 5243-1] lighttpd security update
- -------------------------------------------------------------------------
Debian Security Advisory DSA-5243-1 [email protected]
https://www.debian.org/security/ ...
Continue Reading
September 28, 2022
Information Disclosure
soap is vulnerable to information disclosure. The vulnerability exists due to the lack of restrictions in the XML external entity reference of the library, allowing an attacker to read arbitrary files ...
Continue Reading
September 28, 2022
lighttpd – security update
Several vulnerabilities were discovered in lighttpd, a fast webserver
with minimal memory footprint.
* [CVE-2022-37797](https://security-tracker.debian.org/tracker/CVE-2022-37797)
An invalid HTTP requ ...
Continue Reading
September 28, 2022
CVE-2022-22523
An improper authentication vulnerability exists in the Carlo Gavazzi UWP3.0 in multiple versions and CPY Car Park Server in Version 2.8.3 Web-App which allows an authentication bypass to the context o ...
Continue Reading
September 28, 2022
CVE-2022-22525
In Carlo Gavazzi UWP3.0 in multiple versions and CPY Car Park Server in Version 2.8.3 an remote attacker with admin rights could execute arbitrary commands due to missing input sanitization in the bac ...
Continue Reading
September 28, 2022
CVE-2022-28813
In Carlo Gavazzi UWP3.0 in multiple versions and CPY Car Park Server in Version 2.8.3 a remote, unauthenticated attacker could make use of an SQL-injection to gain access to a volatile temporary datab ...
Continue Reading
September 28, 2022
CVE-2022-28816
In Carlo Gavazzi UWP3.0 in multiple versions and CPY Car Park Server in Version 2.8.3 the Sentilo Proxy is prone to reflected XSS which only affects the Sentilo service.Read More ...
Continue Reading
September 28, 2022
CVE-2022-32166
In ovs versions v0.90.0 through v2.5.0 are vulnerable to heap buffer over-read in flow.c. An unsafe comparison of “minimasks” function could lead access to an unmapped region of memory. This vulnera ...
Continue Reading
September 28, 2022
Hackers Using PowerPoint Mouseover Trick to Infect System with Malware
[![PowerPoint Mouseover Trick](https://thehackernews.com/new-images/img/b/R29vZ2xl/AVvXsEgRdLCnYaPXc_hVvRWhZ1nKYDtBRo6rwk1xGSO3wDrqcJ04igkpjKQyuyHKgmgeHL6GS7XLJjB6WCffBWb-ntXiCGFrcggxS3t1sQxo2LiuX7WI9 ...
Continue Reading
September 28, 2022