Skip to content

TechMedia

Header Image
Archive

Month: May 2022

376 Posts

Featured

Posted byWpmaster
ウクライナ戦争に見るワイパー攻撃の実態とデジタル情報操作
Posted byWpmaster
「エースコンバット」と「トップガン マーヴェリック」が夢のコラボ!マーヴェリックスキンの「F-14A Tomcat」や「F/A-18E Super Hornet」が登場!
Posted byWpmaster
高橋幸宏、ソロ活動50周年記念!『T.E.N.T Years Vinyl Box』収録ライブ音源の詳細発表!
Posted byWpmaster
[camaleon_cms] Camaleon CMS Stored Cross-site Scripting vulnerability

[smalruby] smalruby and smalruby-editor vulnerable to OS Command Injection

  • Posted inCRITICAL
  • Posted byWpmaster
  • 05/13/202201/27/2023

smalruby-editor prior to 0.4.1 and smalruby prior to 0.1.11 allows remote attackers to execute arbitrary OS commands via unspecified vectors.
References

https://nvd.nist.gov/vuln/detail/CVE-2017-2096
http://jvn.jp/en/jp/JVN50197114/index.html
http://s…

[org.jenkins-ci.plugins:groovy] Jenkins Groovy Plugin sandbox bypass vulnerability

  • Posted inHIGH
  • Posted byWpmaster
  • 05/13/202212/07/2022

A sandbox bypass vulnerability exists in Jenkins Groovy Plugin 2.0 and earlier in src/main/java/hudson/plugins/groovy/StringScriptSource.java that allows attackers with Overall/Read permission to provide a Groovy script to an HTTP endpoint that can res…

[org.jenkins-ci.plugins:groovy] Jenkins Groovy Plugin sandbox bypass vulnerability

  • Posted inHIGH
  • Posted byWpmaster
  • 05/13/202212/07/2022

A sandbox bypass vulnerability exists in Jenkins Groovy Plugin 2.1 and earlier in pom.xml, src/main/java/hudson/plugins/groovy/StringScriptSource.java that allows attackers with Overall/Read permission to execute arbitrary code on the Jenkins master JV…

[mixlib-archive] mixlib-archive Path Traversal vulnerability

  • Posted inHIGH
  • Posted byWpmaster
  • 05/13/202201/27/2023

Chef Software’s mixlib-archive versions 0.3.0 and older are vulnerable to a directory traversal attack allowing attackers to overwrite arbitrary files by using .. in tar archive entries
References

https://nvd.nist.gov/vuln/detail/CVE-2017-1000026
http…

[fluentd] Fluentd Escape Sequence Injection Vulnerability

  • Posted inCRITICAL
  • Posted byWpmaster
  • 05/13/202201/25/2023

Escape sequence injection vulnerability in Fluentd versions 0.12.29 through 0.12.40 may allow an attacker to change the terminal UI or execute arbitrary commands on the device via unspecified vectors.
References

https://nvd.nist.gov/vuln/detail/CVE-20…

[camaleon_cms] Camaleon CMS vulnerable to Stored Cross-site Scripting

  • Posted inMODERATE
  • Posted byWpmaster
  • 05/13/202201/25/2023

In the 2.4 version of Camaleon CMS, Stored XSS has been discovered. The profile image in the User settings section can be run in the update / upload area via /admin/media/upload?actions=false.
References

https://nvd.nist.gov/vuln/detail/CVE-2018-18260…

[org.jgroups:jgroups] Improper Input Validation in JGroups

  • Posted inCRITICAL
  • Posted byWpmaster
  • 05/13/202212/14/2022

JGroups before 4.0 does not require the proper headers for the ENCRYPT and AUTH protocols from nodes joining the cluster, which allows remote attackers to bypass security restrictions and send and receive messages within the cluster via unspecified vec…

ゲーミングPC200台!大型LEDを完備した国内最大級の教育eスポーツ施設が誕生!オープンキャンパスのほか、高校eスポーツ部活動支援事業も!

  • Posted inUncategorized
  • Posted byWpmaster
  • 05/12/2022

ゲーミングPC200台と大型LEDを完備。752.7m2を誇る教育機関として国内最大クラスのeスポー…

ハーレー新型ナイトスターの詳細や特徴と試乗レビュー

  • Posted inUncategorized
  • Posted byWpmaster
  • 05/12/2022

いよいよ発売されました、新型ナイトスターですが、第一印象がめちゃくちゃかっこいいですよね! 特にパッ…

Google I/O 2022 Keynote: Android開発者まとめ

  • Posted inAndroid
  • Posted byWpmaster
  • 05/12/2022

2022年5月12日(現地時刻)Google I/O 2022 Keynote およびDeveloper KeynoteよりAndroid関連のトピックをお届けします。今年のGoogle I/Oも基本的にはオンラインイベ […]

The post Google I/O 2022 Keynote: Android開発者まとめ first appeared on TechBooster.

Posts navigation

Previous Posts 1 … 35 36 37 38 Next Posts
TechMedia
WordPress theme by componentz

Archives

2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30
Hit enter to search or ESC to close