Skip to content

TechMedia

Header Image
Category

HIGH

385 Posts

Featured

Posted byWpmaster
[Microsoft.NetCore.App.Runtime.win-arm] .NET Remote Code Execution Vulnerability
Posted byWpmaster
[github.com/traefik/traefik/v2] Traefik HTTP header parsing could cause a denial of service
Posted byWpmaster
[github.com/answerdev/answer] Answer vulnerable to Exposure of Sensitive Information Through Metadata
Posted byWpmaster
[github.com/answerdev/answer] Answer vulnerable to Insertion of Sensitive Information Into Sent Data

[ua-parser-js] ReDoS Vulnerability in ua-parser-js version

  • Posted inHIGH
  • Posted byWpmaster
  • 01/25/202301/27/2023

Description:
A regular expression denial of service (ReDoS) vulnerability has been discovered in ua-parser-js.
Impact:
This vulnerability bypass the library’s MAX_LENGTH input limit prevention. By crafting a very-very-long user-agent string with specif…

[yiisoft/yii2-gii] Command injection in yiisoft/yii2-gii

  • Posted inHIGH
  • Posted byWpmaster
  • 01/21/202301/31/2023

Yii Yii2 Gii before 2.2.2 allows remote attackers to execute arbitrary code via the Generator.php messageCategory field. The attacker can embed arbitrary PHP code into the model file.
References

https://nvd.nist.gov/vuln/detail/CVE-2020-36655
https://…

[exiftool_vendored] ExifTool vulnerable to arbitrary code execution

  • Posted inHIGH
  • Posted byWpmaster
  • 01/21/202301/21/2023

Impact
Arbitrary code execution can occur when running exiftool against files with hostile metadata payloads
Patches
ExifTool has already been patched in version 12.24. exiftool_vendored.rb, which vendors ExifTool, includes this patch in v12.25.0.
Work…

[deno] Deno is vulnerable to race condition via interactive permission prompt spoofing

  • Posted inHIGH
  • Posted byWpmaster
  • 01/21/202301/26/2023

Impact
Multi-threaded programs were able to spoof interactive permission prompt by rewriting the prompt to suggest that program is waiting on user confirmation to unrelated action.
A malicious program could clear the terminal screen after permission p…

[github.com/nektos/act] act vulnerable to arbitrary file upload in artifact server

  • Posted inHIGH
  • Posted byWpmaster
  • 01/21/202301/24/2023

Impact
The artifact server that stores artifacts from Github Action runs does not sanitize path inputs. This allows an attacker to download and overwrite arbitrary files on the host from a Github Action. This issue may lead to privilege escalation.
Iss…

[www.velocidex.com/golang/velociraptor] Velociraptor vulnerable to Missing Authorization

  • Posted inHIGH
  • Posted byWpmaster
  • 01/19/202302/01/2023

Rapid7 Velociraptor allows users to be created with different privileges on the server. Administrators are generally allowed to run any command on the server including writing arbitrary files. However, lower privilege users are generally forbidden from…

[activerecord] SQL Injection Vulnerability via ActiveRecord comments

  • Posted inHIGH
  • Posted byWpmaster
  • 01/19/202301/19/2023

There is a possible vulnerability in ActiveRecord related to the sanitization of comments. This vulnerability has been assigned the CVE identifier CVE-2023-22794.
Versions Affected: >= 6.0.0 Not affected: < 6.0.0 Fixed Versions: 6.0.6.1, 6.1.7.1,…

[web-node-server] Path Traversal in web-node-server

  • Posted inHIGH
  • Posted byWpmaster
  • 01/18/202302/02/2023

A vulnerability has been found in youngerheart nodeserver and classified as critical. Affected by this vulnerability is an unknown functionality of the file nodeserver.js. The manipulation leads to path traversal. The name of the patch is c4c0f0138ab5a…

[mechanize] mechanize Regular Expression Denial of Service vulnerability

  • Posted inHIGH
  • Posted byWpmaster
  • 01/18/202301/21/2023

mechanize, a library for automatically interacting with HTTP web servers, contains a regular expression that is vulnerable to regular expression denial of service (ReDoS) prior to version 0.4.6. If a web server responds in a malicious way, then mechani…

[org.expressme:JOpenId] Observable timing discrepancy in JOpenId

  • Posted inHIGH
  • Posted byWpmaster
  • 01/18/202301/25/2023

A vulnerability, which was classified as problematic, was found in michaelliao jopenid. Affected is the function getAuthentication of the file JOpenId/src/org/expressme/openid/OpenIdManager.java. The manipulation leads to observable timing discrepancy….

Posts navigation

Previous Posts 1 … 4 5 6 7 8 … 39 Next Posts
TechMedia
WordPress theme by componentz

Archives

2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30
Hit enter to search or ESC to close