Aggregator
Funksec
9 months 1 week ago
cohenido
Funksec
9 months 1 week ago
cohenido
CVE-2011-4802 | Dolibarr up to 3.1.0 rowid sql injection (EDB-36333 / BID-50777)
9 months 1 week ago
A vulnerability was found in Dolibarr up to 3.1.0. It has been rated as critical. This issue affects some unknown processing. The manipulation of the argument rowid leads to sql injection.
The identification of this vulnerability is CVE-2011-4802. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
Millionaire Airbnb Phishing Ring Busted Up by Police
9 months 1 week ago
Scammers set up call centers in luxury rentals to run bank help-desk fraud, as well as large-scale phishing campaigns, across at least 10 European countries, according to law enforcement.
Becky Bracken, Senior Editor, Dark Reading
CVE-2013-2643 | Sophos Web Appliance 3.7.8.1 end-user-/errdoc.php msg cross site scripting (ID 118969 / EDB-24932)
9 months 1 week ago
A vulnerability, which was classified as problematic, has been found in Sophos Web Appliance 3.7.8.1. This issue affects some unknown processing of the file end-user-/errdoc.php. The manipulation of the argument msg with the input PHNjcmlwdD5hbGVydCgneHNzJyk7PC9zY3JpcHQ%2bCg%3d%3d leads to cross site scripting.
The identification of this vulnerability is CVE-2013-2643. The attack may be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-47021 | Linux Kernel up to 5.11.20/5.12.3 mt7915 mt7915_unregister_device memory leak (81483309ce86/d754c80ae82a/e9d32af478cf)
9 months 1 week ago
A vulnerability classified as critical has been found in Linux Kernel up to 5.11.20/5.12.3. Affected is the function mt7915_unregister_device of the component mt7915. The manipulation leads to memory leak.
This vulnerability is traded as CVE-2021-47021. The attack can only be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-47022 | Linux Kernel up to 5.10.36/5.11.20/5.12.3 mt7615 mt7615_unregister_device memory leak
9 months 1 week ago
A vulnerability classified as critical was found in Linux Kernel up to 5.10.36/5.11.20/5.12.3. Affected by this vulnerability is the function mt7615_unregister_device of the component mt7615. The manipulation leads to memory leak.
This vulnerability is known as CVE-2021-47022. The attack can only be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-47050 | Linux Kernel up to 5.10.36/5.11.20/5.12.3 renesas-rpc-if platform_get_resource_byname null pointer dereference
9 months 1 week ago
A vulnerability was found in Linux Kernel up to 5.10.36/5.11.20/5.12.3. It has been rated as critical. Affected by this issue is the function platform_get_resource_byname of the component renesas-rpc-if. The manipulation leads to null pointer dereference.
This vulnerability is handled as CVE-2021-47050. Access to the local network is required for this attack to succeed. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-47051 | Linux Kernel up to 5.4.118/5.10.36/5.11.20/5.12.3 fsl-lpspi lpspi_prepare_xfer_hardware memory leak
9 months 1 week ago
A vulnerability classified as critical has been found in Linux Kernel up to 5.4.118/5.10.36/5.11.20/5.12.3. This affects the function lpspi_prepare_xfer_hardware of the component fsl-lpspi. The manipulation leads to memory leak.
This vulnerability is uniquely identified as CVE-2021-47051. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-47052 | Linux Kernel up to 5.10.36/5.11.20/5.12.3 sa2ul memory leak
9 months 1 week ago
A vulnerability classified as critical was found in Linux Kernel up to 5.10.36/5.11.20/5.12.3. This vulnerability affects unknown code of the component sa2ul. The manipulation leads to memory leak.
This vulnerability was named CVE-2021-47052. The attack can only be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-47053 | Linux Kernel up to 5.10.36/5.11.20/5.12.3 sun8i-ss memory leak
9 months 1 week ago
A vulnerability, which was classified as critical, has been found in Linux Kernel up to 5.10.36/5.11.20/5.12.3. This issue affects some unknown processing of the component sun8i-ss. The manipulation leads to memory leak.
The identification of this vulnerability is CVE-2021-47053. The attack can only be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-52477 | Linux Kernel up to 6.5.7 USB drivers/usb/core/hub.c usb_get_bos_descriptor null pointer dereference (Nessus ID 210815)
9 months 1 week ago
A vulnerability classified as problematic has been found in Linux Kernel up to 6.5.7. This affects the function usb_get_bos_descriptor of the file drivers/usb/core/hub.c of the component USB. The manipulation leads to null pointer dereference.
This vulnerability is uniquely identified as CVE-2023-52477. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-52475 | Linux Kernel up to 6.5.7 powermate usb_kill_urb use after free (Nessus ID 210815)
9 months 1 week ago
A vulnerability was found in Linux Kernel up to 6.5.7. It has been classified as problematic. This affects the function usb_kill_urb of the component powermate. The manipulation leads to use after free.
This vulnerability is uniquely identified as CVE-2023-52475. The attack can only be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-47079 | Linux Kernel up to 5.12.6 on x86 ideapad-laptop dytc_cql_command null pointer dereference (beab753fe3b4/ff67dbd554b2)
9 months 1 week ago
A vulnerability classified as critical was found in Linux Kernel up to 5.12.6 on x86. Affected by this vulnerability is the function dytc_cql_command of the component ideapad-laptop. The manipulation leads to null pointer dereference.
This vulnerability is known as CVE-2021-47079. Access to the local network is required for this attack to succeed. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-47049 | Linux Kernel up to 5.10.36/5.11.20/5.12.3 vmbus __vmbus_open use after free (Nessus ID 210654)
9 months 1 week ago
A vulnerability was found in Linux Kernel up to 5.10.36/5.11.20/5.12.3. It has been classified as problematic. This affects the function __vmbus_open of the component vmbus. The manipulation leads to use after free.
This vulnerability is uniquely identified as CVE-2021-47049. Access to the local network is required for this attack to succeed. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-47002 | Linux Kernel up to 5.11.21/5.12.4 SUNRPC svc_rqst_free null pointer dereference (1e10f58f1c9a/c664aaec9aee/b9f83ffaa0c0)
9 months 1 week ago
A vulnerability was found in Linux Kernel up to 5.11.21/5.12.4. It has been rated as critical. This issue affects the function svc_rqst_free of the component SUNRPC. The manipulation leads to null pointer dereference.
The identification of this vulnerability is CVE-2021-47002. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-47003 | Linux Kernel up to 5.10.37/5.11.21/5.12.4 dmaengine idxd_cmd_exec null pointer dereference
9 months 1 week ago
A vulnerability, which was classified as critical, has been found in Linux Kernel up to 5.10.37/5.11.21/5.12.4. Affected by this issue is the function idxd_cmd_exec of the component dmaengine. The manipulation leads to null pointer dereference.
This vulnerability is handled as CVE-2021-47003. Access to the local network is required for this attack to succeed. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-47008 | Linux Kernel up to 5.11.21/5.12.4 SVM sev_vcpu_deliver_sipi_vector null pointer dereference (fb9e14f4f821/fd722a57fe0b/a3ba26ecfb56)
9 months 1 week ago
A vulnerability was found in Linux Kernel up to 5.11.21/5.12.4 and classified as critical. This issue affects the function sev_vcpu_deliver_sipi_vector of the component SVM. The manipulation leads to null pointer dereference.
The identification of this vulnerability is CVE-2021-47008. The attack can only be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-47005 | Linux Kernel up to 5.10.37/5.11.21/5.12.4 PCI get_features null pointer dereference
9 months 1 week ago
A vulnerability was found in Linux Kernel up to 5.10.37/5.11.21/5.12.4. It has been declared as critical. Affected by this vulnerability is the function get_features of the component PCI. The manipulation leads to null pointer dereference.
This vulnerability is known as CVE-2021-47005. The attack needs to be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com