Skip to content

TechMedia

Header Image
Category

CRITICAL

104 Posts

Featured

Posted byWpmaster
[vm2] vm2 vulnerable to sandbox escape
Posted byWpmaster
[go.etcd.io/etcd/v3] Etcd-io Improper Authentication vulnerability
Posted byWpmaster
[github.com/sjqzhang/go-fastdfs] sjqzhang go-fastdfs vulnerable to path traversal
Posted byWpmaster
[knplabs/knp-snappy] PHAR deserialization allowing remote code execution

[io.quarkus:quarkus-vertx-http-deployment] Code injection in quarkus dev ui config editor

  • Posted inCRITICAL
  • Posted byWpmaster
  • 11/23/202201/07/2023

A vulnerability was found in quarkus. This security flaw happens in Dev UI Config Editor which is vulnerable to drive-by localhost attacks leading to remote code execution.
References

https://nvd.nist.gov/vuln/detail/CVE-2022-4116
https://access.redha…

[apache-airflow] OS Command Injection in Apache Airflow

  • Posted inCRITICAL
  • Posted byWpmaster
  • 11/22/202211/30/2022

Improper Neutralization of Special Elements used in an OS Command (‘OS Command Injection’) vulnerability in Apache Airflow Pig Provider, Apache Airflow allows an attacker to control commands executed in the task execution context, without write access …

[dolibarr/dolibarr] Dolibarr vulnerable to privilege escalation

  • Posted inCRITICAL
  • Posted byWpmaster
  • 11/18/202211/22/2022

Dolibarr Open Source ERP & CRM for Business before v14.0.1 allows attackers to escalate privileges via a crafted API.
References

https://nvd.nist.gov/vuln/detail/CVE-2022-43138
https://www.exploit-db.com/exploits/50248
https://github.com/Dolibarr/…

[soap:soap] Apache SOAP contains unauthenticated RPCRouterServlet

  • Posted inCRITICAL
  • Posted byWpmaster
  • 11/15/202202/01/2023

** UNSUPPORTED WHEN ASSIGNED ** In the default configuration of Apache SOAP, an RPCRouterServlet is available without authentication. This gives an attacker the possibility to invoke methods on the classpath that meet certain criteria. Depending on wha…

[ckb] ckb: Transaction header_deps validation issue (network forking)

  • Posted inCRITICAL
  • Posted byWpmaster
  • 11/03/202211/03/2022

Impact
fn HeaderChecker#check_valid skipped main chain checking after this PR: https://github.com/nervosnetwork/ckb/pull/1646/files#diff-c4e017b67c1b3005ca0c446a9b0879571aa36a858b1f7ddd1b9328a884e3214bR171-R176
It will cause network forking if one tran…

[openssl-src] X.509 Email Address 4-byte Buffer Overflow

  • Posted inCRITICAL
  • Posted byWpmaster
  • 11/02/202211/08/2022

A buffer overrun can be triggered in X.509 certificate verification, specifically in name constraint checking. Note that this occurs
after certificate chain signature verification and requires either a CA to have signed the malicious certificate or for…

[feathers-sequelize] feathers-sequelize contains improper input validation leading to SQL injection

  • Posted inCRITICAL
  • Posted byWpmaster
  • 10/26/202204/01/2023

Due to improper input validation in the Feathers js library, it is possible to perform a SQL injection attack on the back-end database, in case the feathers-sequelize package is used.
References

https://nvd.nist.gov/vuln/detail/CVE-2022-2422
https://c…

[feathers-sequelize] Feather-Sequelize cleanQuery method vulnerable to Prototype Pollution

  • Posted inCRITICAL
  • Posted byWpmaster
  • 10/26/202204/01/2023

Feather-Sequelize cleanQuery method uses insecure recursive logic to filter unsupported keys from the query object. This results in a Remote Code Execution (RCE) with privileges of application.
References

https://nvd.nist.gov/vuln/detail/CVE-2022-2982…

[pdfkit] PDFKit vulnerable to Command Injection

  • Posted inCRITICAL
  • Posted byWpmaster
  • 09/10/202211/15/2022

The package pdfkit is vulnerable to Command Injection where the URL is not properly sanitized.
Note: This issue was patched in 0.8.7.2, but the patch was discovered to be ineffective. The updated patch version is 0.8.7.2
References

https://nvd.nist.go…

[org.jenkins-ci.main:jenkins-core] Multiple vulnerabilities allow bypassing path filtering of agent-to-controller access control in Jenkins

  • Posted inCRITICAL
  • Posted byWpmaster
  • 05/25/202212/17/2022

The agent-to-controller security subsystem limits which files on the Jenkins controller can be accessed by agent processes.
Multiple vulnerabilities in the file path filtering implementation of Jenkins 2.318 and earlier, LTS 2.303.2 and earlier allow a…

Posts navigation

Previous Posts 1 … 6 7 8 9 10 11 Next Posts
TechMedia
WordPress theme by componentz

Archives

2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30
Hit enter to search or ESC to close