Companies and organizations need to recognize the importance of investing in engineers who possess both the soft and hard skills required to secure open source software effectively.
A vulnerability has been found in Ubuntu lxd and classified as problematic. This vulnerability affects unknown code in the library /var/lib/lxd/unix.socket. The manipulation leads to improper access controls.
This vulnerability was named CVE-2015-8222. The attack needs to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in mDNSResponder up to 625.41.1. It has been declared as very critical. Affected by this vulnerability is the function rfc3110_import. The manipulation leads to memory corruption.
This vulnerability is known as CVE-2015-7987. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in mDNSResponder up to 625.41.1. It has been classified as very critical. Affected is the function GetValueForMACAddr. The manipulation leads to memory corruption.
This vulnerability is traded as CVE-2015-7987. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
Fortinet researchers discovered a new phishing campaign spreading a variant of the commercial malware Remcos RAT. Fortinet’s FortiGuard Labs recently uncovered a phishing campaign spreading a new variant of the Remcos RAT. Remcos is a commercial remote administration tool (RAT) that is sold online to allow buyers remote control over computers. Threat actors use Remcos […]
A vulnerability, which was classified as critical, was found in Aspburst myNewsletter 1.1.2. Affected is an unknown function of the file validatelogin.asp of the component Login. The manipulation of the argument UserName leads to sql injection.
This vulnerability is traded as CVE-2006-2887. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
A vulnerability was suspected in Linux Kernel up to 5.15.170/6.1.115/6.6.59/6.11.6. Further investigation has shown that this issues is a false-positive. Please review the sources mentioned and consider not using this entry at all.
A vulnerability classified as problematic was found in Red Hat Ansible. Affected by this vulnerability is an unknown functionality of the component hostvars Object Handler. The manipulation leads to information disclosure.
This vulnerability is known as CVE-2024-11079. The attack can only be done within the local network. There is no exploit available.
A vulnerability classified as critical has been found in Helix Core up to 2024.1. Affected is the function shutdown. The manipulation leads to resource consumption.
This vulnerability is traded as CVE-2024-10345. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Acronis Backup Plugin for cPanel & WHM up to 817 on Linux. It has been declared as critical. This vulnerability affects unknown code. The manipulation leads to symlink following.
This vulnerability was named CVE-2024-34015. An attack has to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Moodle up to 4.1.11/4.2.8/4.3.5/4.4.1. It has been classified as problematic. This affects an unknown part of the component Gradebook Report. The manipulation leads to information disclosure.
This vulnerability is uniquely identified as CVE-2024-43429. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.