Skip to content

TechMedia

Header Image
Archive

Month: May 2022

376 Posts

Featured

Posted byWpmaster
ウクライナ戦争に見るワイパー攻撃の実態とデジタル情報操作
Posted byWpmaster
「エースコンバット」と「トップガン マーヴェリック」が夢のコラボ!マーヴェリックスキンの「F-14A Tomcat」や「F/A-18E Super Hornet」が登場!
Posted byWpmaster
高橋幸宏、ソロ活動50周年記念!『T.E.N.T Years Vinyl Box』収録ライブ音源の詳細発表!
Posted byWpmaster
[camaleon_cms] Camaleon CMS Stored Cross-site Scripting vulnerability

[werkzeug] Pallets Werkzeug vulnerable to Path Traversal

  • Posted inHIGH
  • Posted byWpmaster
  • 05/25/202202/02/2023

In Pallets Werkzeug before 0.15.5, SharedDataMiddleware mishandles drive names (such as C:) in Windows pathnames.
References

https://nvd.nist.gov/vuln/detail/CVE-2019-14322
https://palletsprojects.com/blog/werkzeug-0-15-5-released/
http://packetstorms…

[org.jenkins-ci.plugins:depgraph-view] Jenkins Dependency Graph Viewer Plugin contains Cross-site Scripting

  • Posted inMODERATE
  • Posted byWpmaster
  • 05/25/202202/02/2023

A stored cross site scripting vulnerability in Jenkins Dependency Graph Viewer Plugin 0.13 and earlier allowed attackers able to configure jobs in Jenkins to inject arbitrary HTML and JavaScript in the plugin-provided web pages in Jenkins.
References

…

[io.jenkins.plugins:embeddable-build-status-plugin] Jenkins Embeddable Build Status Plugin contains Cross-site Scripting

  • Posted inMODERATE
  • Posted byWpmaster
  • 05/25/202202/01/2023

A reflected cross site scripting vulnerability in Jenkins Embeddable Build Status Plugin 2.0.1 and earlier allowed attackers inject arbitrary HTML and JavaScript into the response of this plugin.
References

https://nvd.nist.gov/vuln/detail/CVE-2019-10…

[io.jenkins.docker:docker-plugin] Jenkins Docker Plugin contains Cross-Site Request Forgery

  • Posted inHIGH
  • Posted byWpmaster
  • 05/25/202202/01/2023

A cross-site request forgery vulnerability in Jenkins Docker Plugin 1.1.6 and earlier in DockerAPI.DescriptorImpl#doTestConnection allowed users with Overall/Read access to connect to an attacker-specified URL using attacker-specified credentials IDs o…

[fat_free_crm] Fat Free CRM Cross-site Scripting vulnerability

  • Posted inMODERATE
  • Posted byWpmaster
  • 05/25/202201/24/2023

HTML Injection has been discovered in the v0.19.0 version of the Fat Free CRM product via an authenticated request to the /comments URI.
References

https://nvd.nist.gov/vuln/detail/CVE-2019-10226
http://packetstormsecurity.com/files/152263/Fat-Free-CR…

最速着用レビュー「UNIQLO and MARNI」2022年春夏コレクション

  • Posted inUncategorized
  • Posted byWpmaster
  • 05/19/2022

「ユニクロ(UNIQLO)」とイタリアンブランド「マルニ(MARNI)」の初コラボレーションコレクシ…

新SD 9.0規格仕様を公開 –セミエンベデッドメモリとしてSDメモリカードの新用途へ

  • Posted inUncategorized
  • Posted byWpmaster
  • 05/19/2022

新たなセキュリティ機能で対応ホスト機器のブート、セキュアなデータ管理と「保守修理規則」対応 カリフォ…

EPOSの人気ヘッドセット「H6PRO」にサウンドカードとセットのかなりお得な限定モデルが登場!

  • Posted inUncategorized
  • Posted byWpmaster
  • 05/18/2022

デンマーク コペンハーゲン発のプレミアムゲーミングオーディオブランド「EPOS」配信用のマイクやフル…

JBLのゲーミングヘッドセットから低遅延2.4GHzワイヤレス接続の新モデル「JBL Quantum 350 Wireless」発表!

  • Posted inUncategorized
  • Posted byWpmaster
  • 05/18/2022

ゲームをプレイする際に音は非常に重要な要素の1つです。しかしオーディオの世界は青天井で、突き詰めてい…

[DotNetCasClient] Jasig Java CAS Client, .NET CAS Client, and phpCAS contain URL parameter injection vulnerability

  • Posted inCRITICAL
  • Posted byWpmaster
  • 05/18/202201/10/2023

A URL parameter injection vulnerability was found in the back-channel ticket validation step of the CAS protocol in Jasig Java CAS Client before 3.3.2, .NET CAS Client before 1.0.2, and phpCAS before 1.3.3 that allow remote attackers to inject arbitrar…

Posts navigation

Previous Posts 1 … 27 28 29 30 31 … 38 Next Posts
TechMedia
WordPress theme by componentz

Archives

2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30
Hit enter to search or ESC to close