Our researchers identified threat actors exploiting misconfigured Docker servers to spread the Gafgyt malware. This threat traditionally targets IoT devices; this new tactic signals a change in its behavior.
Our researchers identified threat actors exploiting misconfigured Docker servers to spread the Gafgyt malware. This threat traditionally targets IoT devices; this new tactic signals a change in its behavior.
A vulnerability classified as problematic has been found in Adobe InDesign Desktop up to 18.5.2/19.3. This affects an unknown part. The manipulation leads to out-of-bounds read.
This vulnerability is uniquely identified as CVE-2024-39396. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as critical was found in Adobe InDesign Desktop up to 18.5.2/19.3. This vulnerability affects unknown code. The manipulation leads to heap-based buffer overflow.
This vulnerability was named CVE-2024-39392. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as problematic, was found in Adobe Experience Manager up to 6.5.20. Affected is an unknown function of the component URL Handler. The manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2024-49524. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as problematic, has been found in Adobe Experience Manager up to 6.5.20. Affected by this issue is some unknown functionality of the component Form Field Handler. The manipulation leads to cross site scripting.
This vulnerability is handled as CVE-2024-49523. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as critical has been found in SEMCMS 4.8. Affected is an unknown function of the file SEMCMS_SeoAndTag.php. The manipulation of the argument ldgid leads to sql injection.
This vulnerability is traded as CVE-2024-52725. It is possible to launch the attack remotely. There is no exploit available.
A vulnerability has been found in Sanil Shakya Sticky Social Icons Plugin up to 1.2.1 on WordPress and classified as problematic. This vulnerability affects unknown code. The manipulation leads to cross site scripting.
This vulnerability was named CVE-2024-52491. The attack can be initiated remotely. There is no exploit available.
A vulnerability classified as problematic was found in Matt Varone & Tim Berneman Dynamic To Top Plugin 3.5.2 on WordPress. This vulnerability affects unknown code. The manipulation leads to cross site scripting.
This vulnerability was named CVE-2024-52494. The attack can be initiated remotely. There is no exploit available.