Category: CVSS3 - MEDIUM
CVE-2023-25780

It is identified a vulnerability of insufficient authentication in an important specific function of Status PowerBPM. A LAN attacker with normal user privilege can exploit this vulnerability to modify ...

Continue Reading
CVE-2022-4332

In Sprecher Automation SPRECON-E-C/P/T3 CPU in variant PU244x a vulnerable firmware verification has been identified. Through physical access and hardware manipulation, an attacker might be able to ...

Continue Reading
CVE-2023-2884

Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG), Use of Insufficiently Random Values vulnerability in CBOT Chatbot allows Signature Spoofing by Key Recreation.This issue affects Ch ...

Continue Reading
Cross-site Scripting (XSS)

concrete5/concrete5 is vulnerable to Cross-site Scripting (XSS). The vulnerability exists via the name parameter on API integrations due to lack of sanitization which allows an attacker to inject and ...

Continue Reading
Wordfence Intelligence Weekly WordPress Vulnerability Report (May 8, 2023 to May 14, 2023)

Last week, there were 139 vulnerabilities disclosed in 105 WordPress Plugins and 2 WordPress themes that have been added to the Wordfence Intelligence Vulnerability Database, and there were 47 Vulnera ...

Continue Reading
Oracle Linux 9 : fence-agents (ELSA-2023-2161)

The remote Oracle Linux 9 host has packages installed that are affected by a vulnerability as referenced in the ELSA-2023-2161 advisory. - OAuthLib is an implementation of the OAuth request-signing ...

Continue Reading
Security Bulletin: Open Source Dependency Vulnerability

## Summary IBM Edge Application Manager 4.5 has resolved the vulnerability. ## Vulnerability Details ** CVEID: **[CVE-2022-31030]() ** DESCRIPTION: **containerd is vulnerable to a denial of service, c ...

Continue Reading
skopeo security and bug fix update

[2:1.11.2-0.1] - update to the latest content of https://github.com/containers/skopeo/tree/release-1.11 (https://github.com/containers/skopeo/commit/3f98753) - Related: #2124478 [2:1.11.1-1] - updat ...

Continue Reading
pki-core security, bug fix, and enhancement update

jss [5.3.0-1] - Rebase to JSS 5.3.0 [5.3.0-0.3.beta2] - Rebase to JSS 5.3.0-beta2 - Bug 2017098 - pki pkcs12-cert-add command failing with 'Unable to validate PKCS #12 file: Digests do not match' exce ...

Continue Reading
CVE-2022-22508

Improper Input Validation vulnerability in multiple CODESYS V3 products allows an authenticated remote attacker to block consecutive logins of a specific type.Read More ...

Continue Reading
Load more