Aggregator
Medusa Blog
9 months ago
cohenido
Babuk
9 months ago
cohenido
Babuk
9 months ago
cohenido
CVE-2025-26696 | Mozilla Thunderbird up to 128.7/135 MIME Email Message ui discrepancy for security feature (Nessus ID 232679)
9 months ago
A vulnerability was found in Mozilla Thunderbird up to 128.7/135. It has been rated as problematic. This issue affects some unknown processing of the component MIME Email Message Handler. The manipulation leads to ui discrepancy for security feature.
The identification of this vulnerability is CVE-2025-26696. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-26695 | Mozilla Thunderbird up to 128.7/135 OpenPGP Key information disclosure (Nessus ID 232679)
9 months ago
A vulnerability was found in Mozilla Thunderbird up to 128.7/135. It has been declared as problematic. This vulnerability affects unknown code of the component OpenPGP Key Handler. The manipulation leads to information disclosure.
This vulnerability was named CVE-2025-26695. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CISA Warns of Juniper Junos OS Improper Isolation Vulnerability Exploited in Wild
9 months ago
CISA has issued a warning regarding a newly discovered vulnerability affecting Juniper Networks’ Junos OS. The vulnerability, identified as CVE-2025-21590, involves an improper isolation or compartmentalization issue within the operating system’s kernel. This flaw could allow a local attacker with high-level privileges to inject arbitrary code, potentially compromising the integrity of affected devices. The vulnerability […]
The post CISA Warns of Juniper Junos OS Improper Isolation Vulnerability Exploited in Wild appeared first on Cyber Security News.
Guru Baran
CISA, FBI Warn of Medusa Ransomware Impacting Critical Infrastructure
9 months ago
CISA and FBI warn of Medusa ransomware impacting over 300 victims across critical infrastructure sectors with double extortion tactics
Мир без границ между правдой и вымыслом: детекторы дипфейков провалили проверку
9 months ago
Почему старые методы защиты больше не работают?
CVE-2023-28771 | Zyxel USG/USG FLEX/VPN/ATP Error Message os command injection
9 months ago
A vulnerability was found in Zyxel USG, USG FLEX, VPN and ATP. It has been declared as very critical. This vulnerability affects unknown code of the component Error Message Handler. The manipulation leads to os command injection.
This vulnerability was named CVE-2023-28771. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2024-1174 | HP ThinPro up to 8.0 SP7 memory corruption
9 months ago
A vulnerability, which was classified as problematic, has been found in HP ThinPro up to 8.0 SP7. Affected by this issue is some unknown functionality. The manipulation leads to memory corruption.
This vulnerability is handled as CVE-2024-1174. The attack needs to be done within the local network. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-21584 | Pleasanter up to 1.3.49.0 URL cross site scripting
9 months ago
A vulnerability was found in Pleasanter up to 1.3.49.0. It has been rated as problematic. This issue affects some unknown processing of the component URL Handler. The manipulation leads to cross site scripting.
The identification of this vulnerability is CVE-2024-21584. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2023-42947 | Apple iOS/iPadOS App sandbox
9 months ago
A vulnerability classified as critical has been found in Apple iOS and iPadOS. This affects an unknown part of the component App Handler. The manipulation leads to sandbox issue.
This vulnerability is uniquely identified as CVE-2023-42947. Attacking locally is a requirement. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-42947 | Apple macOS App sandbox
9 months ago
A vulnerability classified as critical was found in Apple macOS. This vulnerability affects unknown code of the component App Handler. The manipulation leads to sandbox issue.
This vulnerability was named CVE-2023-42947. It is possible to launch the attack on the local host. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-42947 | Apple tvOS App sandbox
9 months ago
A vulnerability, which was classified as critical, has been found in Apple tvOS. This issue affects some unknown processing of the component App Handler. The manipulation leads to sandbox issue.
The identification of this vulnerability is CVE-2023-42947. The attack needs to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-42947 | Apple watchOS App sandbox
9 months ago
A vulnerability, which was classified as critical, was found in Apple watchOS. Affected is an unknown function of the component App Handler. The manipulation leads to sandbox issue.
This vulnerability is traded as CVE-2023-42947. An attack has to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-30416 | Huawei HarmonyOS/EMUI Driver Module use after free
9 months ago
A vulnerability was found in Huawei HarmonyOS and EMUI. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component Driver Module. The manipulation leads to use after free.
This vulnerability is known as CVE-2024-30416. Access to the local network is required for this attack. There is no exploit available.
vuldb.com
CVE-2023-52537 | Huawei HarmonyOS/EMUI HwIms Module denial of service
9 months ago
A vulnerability was found in Huawei HarmonyOS and EMUI and classified as problematic. Affected by this issue is some unknown functionality of the component HwIms Module. The manipulation leads to denial of service.
This vulnerability is handled as CVE-2023-52537. The attack needs to be initiated within the local network. There is no exploit available.
vuldb.com
CVE-2023-52538 | Huawei HarmonyOS/EMUI HwIms Module denial of service
9 months ago
A vulnerability was found in Huawei HarmonyOS and EMUI. It has been classified as problematic. This affects an unknown part of the component HwIms Module. The manipulation leads to denial of service.
This vulnerability is uniquely identified as CVE-2023-52538. Access to the local network is required for this attack. There is no exploit available.
vuldb.com
CVE-2023-21823 | Microsoft Windows up to Server 2022 Graphics integer overflow
9 months ago
A vulnerability classified as very critical was found in Microsoft Windows. Affected by this vulnerability is an unknown functionality of the component Graphics. The manipulation leads to integer overflow.
This vulnerability is known as CVE-2023-21823. The attack can be launched remotely. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com