Fake Bitwarden password manager advertisements on Facebook are pushing a malicious Google Chrome extension that collects and steals sensitive user data from the browser. [...]
A vulnerability, which was classified as problematic, was found in Hoosoft Hoo Addons for Elementor Plugin up to 1.0.6 on WordPress. This affects an unknown part. The manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2024-51590. It is possible to initiate the attack remotely. There is no exploit available.
A vulnerability classified as problematic has been found in IBM Maximo Asset Management 7.6.1.3. This affects an unknown part of the component Web UI. The manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2024-45088. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Ivanti Endpoint Manager up to 2022 SU5/2024. It has been classified as critical. This affects an unknown part. The manipulation leads to sql injection.
This vulnerability is uniquely identified as CVE-2024-50323. Local access is required to approach this attack. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as critical, was found in Kashipara E-Learning Management System Project 1.0. Affected is an unknown function of the file /admin/edit_class.php. The manipulation of the argument class_name leads to sql injection.
This vulnerability is traded as CVE-2024-50832. It is possible to launch the attack remotely. There is no exploit available.
A vulnerability has been found in Kashipara E-Learning Management System Project 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /login.php. The manipulation of the argument username/password leads to sql injection.
This vulnerability is known as CVE-2024-50833. The attack can be launched remotely. There is no exploit available.
A vulnerability, which was classified as problematic, has been found in IBM WebSphere Application Server 8.5/9.0. This issue affects some unknown processing of the component Web UI. The manipulation leads to cross site scripting.
The identification of this vulnerability is CVE-2024-45087. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Cisco Catalyst SD-WAN Manager. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component File Transfer. The manipulation leads to execution with unnecessary privileges.
This vulnerability is known as CVE-2020-26074. It is possible to launch the attack on the local host. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Palo Alto Networks PAN-OS. It has been classified as critical. Affected is an unknown function of the component Management Web Interface. The manipulation leads to os command injection.
This vulnerability is traded as CVE-2024-9474. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Cisco UTD SNORT IPS Engine Software and classified as critical. This issue affects some unknown processing of the component Ethernet Frame Decoder. The manipulation leads to allocation of resources.
The identification of this vulnerability is CVE-2021-1285. Access to the local network is required for this attack. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability has been found in Cisco Unified Communications Manager and classified as problematic. This vulnerability affects unknown code of the component Web-based Management Interface. The manipulation leads to cross site scripting.
This vulnerability was named CVE-2020-3420. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as problematic, was found in Cisco Unified Computing System. This affects an unknown part. The manipulation leads to information exposure through discrepancy.
This vulnerability is uniquely identified as CVE-2020-26062. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as problematic, has been found in Cisco Catalyst SD-WAN Manager. Affected by this issue is some unknown functionality of the component Cluster Management Interface. The manipulation leads to exposure of sensitive system information to an unauthorized control sphere.
This vulnerability is handled as CVE-2021-1234. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as problematic has been found in Cisco Identity Services Engine Software. Affected is an unknown function of the component Admin Portal. The manipulation leads to information disclosure.
This vulnerability is traded as CVE-2020-3525. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Cisco Catalyst SD-WAN Manager. It has been rated as problematic. This issue affects some unknown processing of the component Application Data Endpoint. The manipulation leads to path traversal: '.../...//'.
The identification of this vulnerability is CVE-2020-26073. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Cisco Secure Email and Web Manager. It has been declared as problematic. This vulnerability affects unknown code of the component Web-based Management Interface. The manipulation leads to insertion of sensitive information into sent data.
This vulnerability was named CVE-2021-1425. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.