Aggregator
Russian Trolls Pose as Reputable Media to Sow US Election Chaos
8 months 3 weeks ago
Operation Overload pushes dressed up Russian state propaganda with the aim of flooding the US with election disinformation.
Becky Bracken, Senior Editor, Dark Reading
Windows 11 KB5044380 preview update lets you remap the Copilot key
8 months 3 weeks ago
Microsoft has released the optional KB5044380 Preview cumulative update for Windows 11 23H2 and 22H2, which brings seventeen changes, including a new Gamepad keyboard and the ability to remap the Copilot keyboard key. [...]
Lawrence Abrams
CVE-2024-25225 | Simple Admin Panel App 1.0 Add Category Category Name cross site scripting
8 months 3 weeks ago
A vulnerability was found in Simple Admin Panel App 1.0. It has been rated as problematic. Affected by this issue is the function Add Category. The manipulation of the argument Category Name leads to cross site scripting.
This vulnerability is handled as CVE-2024-25225. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-25226 | Simple Admin Panel App 1.0 Add Category Category Name cross site scripting
8 months 3 weeks ago
A vulnerability classified as problematic has been found in Simple Admin Panel App 1.0. This affects the function Add Category. The manipulation of the argument Category Name leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2024-25226. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-47667 | Linux Kernel up to 6.10.9 PCI SPRZ452D_July denial of service
8 months 3 weeks ago
A vulnerability classified as critical was found in Linux Kernel up to 6.10.9. This vulnerability affects the function SPRZ452D_July of the component PCI. The manipulation leads to denial of service.
This vulnerability was named CVE-2024-47667. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-46871 | Linux Kernel up to 6.1.108/6.6.49/6.10.8 AMD Display array index
8 months 3 weeks ago
A vulnerability, which was classified as critical, was found in Linux Kernel up to 6.1.108/6.6.49/6.10.8. Affected is an unknown function of the component AMD Display. The manipulation leads to improper validation of array index.
This vulnerability is traded as CVE-2024-46871. Access to the local network is required for this attack. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-47659 | Linux Kernel up to 6.10.8 IPv4 improper authorization
8 months 3 weeks ago
A vulnerability has been found in Linux Kernel up to 6.10.8 and classified as critical. Affected by this vulnerability is an unknown functionality of the component IPv4. The manipulation leads to improper authorization.
This vulnerability is known as CVE-2024-47659. Access to the local network is required for this attack to succeed. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-47662 | Linux Kernel up to 6.10.8 AMD Display information disclosure (eba4b2a38ccd/466423c6dd8a)
8 months 3 weeks ago
A vulnerability was found in Linux Kernel up to 6.10.8. It has been declared as problematic. This vulnerability affects unknown code of the component AMD Display. The manipulation leads to information disclosure.
This vulnerability was named CVE-2024-47662. The attack can only be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-47663 | Linux Kernel up to 6.10.9 ad9834_write_frequency divide by zero
8 months 3 weeks ago
A vulnerability classified as critical has been found in Linux Kernel up to 6.10.9. Affected is the function ad9834_write_frequency. The manipulation leads to divide by zero.
This vulnerability is traded as CVE-2024-47663. The attack needs to be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Microsoft SharePoint Vuln Is Under Active Exploit
8 months 3 weeks ago
The risk of exploitation is heightened, thanks to a proof-of-concept that's been made publicly available.
Dark Reading Staff
CVE-2021-21071 | Adobe Animate up to 21.0.3 memory corruption (Nessus ID 209433)
8 months 3 weeks ago
A vulnerability has been found in Adobe Animate up to 21.0.3 and classified as critical. This vulnerability affects unknown code. The manipulation leads to memory corruption.
This vulnerability was named CVE-2021-21071. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-21076 | Adobe Animate up to 21.0.3 out-of-bounds (Nessus ID 209433)
8 months 3 weeks ago
A vulnerability classified as problematic has been found in Adobe Animate up to 21.0.3. This affects an unknown part. The manipulation leads to out-of-bounds read.
This vulnerability is uniquely identified as CVE-2021-21076. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-21077 | Adobe Animate up to 21.0.3 heap-based overflow (Nessus ID 209433)
8 months 3 weeks ago
A vulnerability classified as critical was found in Adobe Animate up to 21.0.3. This vulnerability affects unknown code. The manipulation leads to heap-based buffer overflow.
This vulnerability was named CVE-2021-21077. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2016-7866 | Adobe Animate up to 15.2.1.95 memory corruption (APSB16-38 / EDB-40915)
8 months 3 weeks ago
A vulnerability, which was classified as critical, has been found in Adobe Animate up to 15.2.1.95. This issue affects some unknown processing. The manipulation leads to memory corruption.
The identification of this vulnerability is CVE-2016-7866. The attack may be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-21075 | Adobe Animate up to 21.0.3 out-of-bounds (Nessus ID 209433)
8 months 3 weeks ago
A vulnerability was found in Adobe Animate up to 21.0.3. It has been rated as problematic. Affected by this issue is some unknown functionality. The manipulation leads to out-of-bounds read.
This vulnerability is handled as CVE-2021-21075. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-49502 | FFmpeg 6.1-3-g466799d4f5 libavfilter/bwdifdsp.c ff_bwdif_filter_intra_c buffer overflow (ID 10688 / Nessus ID 209442)
8 months 3 weeks ago
A vulnerability was found in FFmpeg 6.1-3-g466799d4f5 and classified as critical. Affected by this issue is the function ff_bwdif_filter_intra_c of the file libavfilter/bwdifdsp.c. The manipulation leads to buffer overflow.
This vulnerability is handled as CVE-2023-49502. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2020-16156 | CPAN 2.28 signature verification (Nessus ID 209443)
8 months 3 weeks ago
A vulnerability has been found in CPAN 2.28 and classified as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to improper verification of cryptographic signature.
This vulnerability is known as CVE-2020-16156. The attack can only be done within the local network. There is no exploit available.
vuldb.com
CVE-2020-16156 | Oracle Communications Unified Assurance up to 5.5.9/6.0.1 Core signature verification (Nessus ID 209443)
8 months 3 weeks ago
A vulnerability, which was classified as critical, has been found in Oracle Communications Unified Assurance up to 5.5.9/6.0.1. This issue affects some unknown processing of the component Core. The manipulation leads to improper verification of cryptographic signature.
The identification of this vulnerability is CVE-2020-16156. It is possible to launch the attack on the local host. There is no exploit available.
vuldb.com
CVE-2023-31484 | CPAN.pm up to 2.34 TLS Certificate certificate validation (Nessus ID 209443)
8 months 3 weeks ago
A vulnerability classified as critical has been found in CPAN.pm up to 2.34. This affects an unknown part of the component TLS Certificate Handler. The manipulation leads to improper certificate validation.
This vulnerability is uniquely identified as CVE-2023-31484. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com