Aggregator
IBM security advisory (AV24-538)
9 months 1 week ago
Canadian Centre for Cyber Security
CVE-2023-21855 | Oracle Sales for Handhelds up to 12.2.12 Pocket Outlook Sync(PocketPC)
9 months 1 week ago
A vulnerability was found in Oracle Sales for Handhelds up to 12.2.12 and classified as critical. This issue affects some unknown processing of the component Pocket Outlook Sync(PocketPC). The manipulation leads to an unknown weakness.
The identification of this vulnerability is CVE-2023-21855. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2023-3664 | FileOrganizer Plugin up to 1.0.2 on WordPress access control
9 months 1 week ago
A vulnerability, which was classified as problematic, was found in FileOrganizer Plugin up to 1.0.2 on WordPress. This affects an unknown part. The manipulation leads to improper access controls.
This vulnerability is uniquely identified as CVE-2023-3664. Access to the local network is required for this attack. There is no exploit available.
vuldb.com
CVE-2023-41444 | Binalyze up to 3.11.0 IREC.sys fun_1400084d0 Local Privilege Escalation
9 months 1 week ago
A vulnerability has been found in Binalyze up to 3.11.0 and classified as problematic. Affected by this vulnerability is the function fun_1400084d0 in the library IREC.sys. The manipulation leads to Local Privilege Escalation.
This vulnerability is known as CVE-2023-41444. An attack has to be approached locally. Furthermore, there is an exploit available.
vuldb.com
CVE-2023-43226 | DedeCMS up to 5.7.111 dede/baidunews.php unrestricted upload (Replaces VDB-240948)
9 months 1 week ago
A vulnerability was found in DedeCMS up to 5.7.111. It has been rated as problematic. Affected by this issue is some unknown functionality of the file dede/baidunews.php. The manipulation leads to unrestricted upload.
This vulnerability is handled as CVE-2023-43226. The attack can only be initiated within the local network. There is no exploit available.
vuldb.com
CVE-2024-0582 | Linux Kernel io_uring Subsystem use after free
9 months 1 week ago
A vulnerability, which was classified as critical, has been found in Linux Kernel. This issue affects some unknown processing of the component io_uring Subsystem. The manipulation leads to use after free.
The identification of this vulnerability is CVE-2024-0582. Access to the local network is required for this attack to succeed. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-5225 | berriai litellm api_key sql injection
9 months 1 week ago
A vulnerability classified as critical was found in berriai litellm. This vulnerability affects unknown code. The manipulation of the argument api_key leads to sql injection.
This vulnerability was named CVE-2024-5225. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-6658 | Progress LoadMaster up to 7.2.60.0 os command injection
9 months 1 week ago
A vulnerability has been found in Progress LoadMaster up to 7.2.60.0 and classified as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to os command injection.
This vulnerability is known as CVE-2024-6658. The attack can only be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-27795 | Apple macOS up to 14.7 Camera Extension permission
9 months 1 week ago
A vulnerability, which was classified as critical, has been found in Apple macOS. Affected by this issue is some unknown functionality of the component Camera Extension Handler. The manipulation leads to permission issues.
This vulnerability is handled as CVE-2024-27795. Local access is required to approach this attack. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-23237 | Apple macOS up to 14.7 denial of service
9 months 1 week ago
A vulnerability was found in Apple macOS. It has been declared as critical. This vulnerability affects unknown code. The manipulation leads to denial of service.
This vulnerability was named CVE-2024-23237. An attack has to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-27860 | Apple macOS up to 14.7 memory corruption
9 months 1 week ago
A vulnerability, which was classified as problematic, was found in Apple macOS. This affects an unknown part. The manipulation leads to memory corruption.
This vulnerability is uniquely identified as CVE-2024-27860. Attacking locally is a requirement. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-27861 | Apple macOS up to 14.7 memory corruption
9 months 1 week ago
A vulnerability has been found in Apple macOS and classified as problematic. This vulnerability affects unknown code. The manipulation leads to memory corruption.
This vulnerability was named CVE-2024-27861. It is possible to launch the attack on the local host. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-27858 | Apple macOS up to 14.7 permission
9 months 1 week ago
A vulnerability was found in Apple macOS. It has been rated as critical. This issue affects some unknown processing. The manipulation leads to permission issues.
The identification of this vulnerability is CVE-2024-27858. Local access is required to approach this attack. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-40826 | Apple macOS Print View temp file
9 months 1 week ago
A vulnerability has been found in Apple macOS and classified as problematic. This vulnerability affects unknown code of the component Print View. The manipulation leads to insecure temporary file.
This vulnerability was named CVE-2024-40826. The attack needs to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-40826 | Apple iOS/iPadOS Print View temp file
9 months 1 week ago
A vulnerability was found in Apple iOS and iPadOS and classified as problematic. This issue affects some unknown processing of the component Print View. The manipulation leads to insecure temporary file.
The identification of this vulnerability is CVE-2024-40826. An attack has to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-40830 | Apple iOS/iPadOS up to 17.7 information disclosure
9 months 1 week ago
A vulnerability was found in Apple iOS and iPadOS and classified as problematic. This issue affects some unknown processing. The manipulation leads to information disclosure.
The identification of this vulnerability is CVE-2024-40830. Attacking locally is a requirement. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Kaspersky Rolls Back for US Customers, Makes Way for UltraAV
9 months 1 week ago
Some users complain they had no idea the switch would be automatic on their devices, vowing to uninstall the unwanted antivirus software.
Kristina Beek, Associate Editor, Dark Reading
CVE-2022-21586 | Oracle Banking Trade Finance 14.5 Infrastructure
9 months 1 week ago
A vulnerability classified as critical was found in Oracle Banking Trade Finance 14.5. This vulnerability affects unknown code of the component Infrastructure. The manipulation leads to an unknown weakness.
This vulnerability was named CVE-2022-21586. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-39412 | Oracle Access Manager 12.2.1.4.0 Admin Console information disclosure
9 months 1 week ago
A vulnerability, which was classified as critical, has been found in Oracle Access Manager 12.2.1.4.0. Affected by this issue is some unknown functionality of the component Admin Console. The manipulation leads to information disclosure.
This vulnerability is handled as CVE-2022-39412. The attack may be launched remotely. There is no exploit available.
vuldb.com