Skip to content

トピトピニュース

Header Image
Category

CRITICAL

187 Posts

Featured

Posted byGitHub
[github.com/crewjam/saml] crewjam/saml vulnerable to signature bypass via multiple Assertion elements due to improper authentication
Posted byGitHub
[org.jeecgframework.boot:jeecg-boot-common] Jeecg-boot vulnerable to SQL Injection
Posted byGitHub
[electron] Heap buffer overflow in GPU
Posted byGitHub
[wger] wger vulnerable to brute force attempts

[org.xwiki.platform:xwiki-platform-attachment-ui] Improper Neutralization of Directives in Dynamically Evaluated Code (‘Eval Injection’) in AttachmentSelector.xml

  • Posted inCRITICAL
  • Posted byGitHub
  • 11/22/202211/22/2022

Impact
Any user with the right to edit his personal page can follow one of the scenario below:
Scenario 1:

Log in as a simple user with just edit rights on the user profile
Go to the user’s profile
Upload an attachment in the attachment tab at the bot…

[tailscale/tailscale.com/cmd] Tailscale Windows daemon is vulnerable to RCE via CSRF

  • Posted inCRITICAL
  • Posted byGitHub
  • 11/22/2022

A vulnerability identified in the Tailscale Windows client allows a malicious website to reconfigure the Tailscale daemon tailscaled, which can then be used to remotely execute code.
Affected platforms: Windows
Patched Tailscale client versions: v1.32….

[dolibarr/dolibarr] Dolibarr vulnerable to privilege escalation

  • Posted inCRITICAL
  • Posted byGitHub
  • 11/18/202211/22/2022

Dolibarr Open Source ERP & CRM for Business before v14.0.1 allows attackers to escalate privileges via a crafted API.
References

https://nvd.nist.gov/vuln/detail/CVE-2022-43138
https://www.exploit-db.com/exploits/50248
https://github.com/Dolibarr/…

[org.apache.sshd:sshd-common] Unsafe deserialization in Apache MINA SSHD

  • Posted inCRITICAL
  • Posted byGitHub
  • 11/16/202211/22/2022

Class org.apache.sshd.server.keyprovider.SimpleGeneratorHostKeyProvider in Apache MINA SSHD <= 2.9.1 uses Java deserialization to load a serialized java.security.PrivateKey. The class is one of several implementations that an implementor using Apach…

[rdiffweb] rdiffweb vulnerable to Insufficient Session Expiration

  • Posted inCRITICAL
  • Posted byGitHub
  • 11/15/202211/19/2022

Insufficient Session Expiration in GitHub repository ikus060/rdiffweb prior to 2.5.0.
References

https://nvd.nist.gov/vuln/detail/CVE-2022-3362
https://github.com/ikus060/rdiffweb/commit/6efb995bc32c8a8e9ad755eb813dec991dffb2b8
https://huntr.dev/bount…

[org.apache.jena:jena-sdb] Apache Jena vulnerable to Deserialization of Untrusted Data

  • Posted inCRITICAL
  • Posted byGitHub
  • 11/15/202211/18/2022

** UNSUPPORTED WHEN ASSIGNED ** Apache Jena SDB 3.17.0 and earlier is vulnerable to a JDBC Deserialisation attack if the attacker is able to control the JDBC URL used or cause the underlying database server to return malicious data. The mySQL JDBC driv…

[soap:soap] Apache SOAP contains unauthenticated RPCRouterServlet

  • Posted inCRITICAL
  • Posted byGitHub
  • 11/15/202211/19/2022

** UNSUPPORTED WHEN ASSIGNED ** In the default configuration of Apache SOAP, an RPCRouterServlet is available without authentication. This gives an attacker the possibility to invoke methods on the classpath that meet certain criteria. Depending on wha…

[ezsystems/ezpublish-kernel] eZ Platform users with the Company admin role can assign any role to any user

  • Posted inCRITICAL
  • Posted byGitHub
  • 11/11/202211/11/2022

Critical severity. Users with the Company admin role (introduced by the company account feature in v4) can assign any role to any user. This also applies to any other user that has the role / assign policy. Any subtree limitation in place does not have…

[ezsystems/ezplatform-kernel] eZ Platform users with the Company admin role can assign any role to any user

  • Posted inCRITICAL
  • Posted byGitHub
  • 11/11/202211/11/2022

Critical severity. Users with the Company admin role (introduced by the company account feature in v4) can assign any role to any user. This also applies to any other user that has the role / assign policy. Any subtree limitation in place does not have…

[ezsystems/repository-forms] eZ Platform users with the Company admin role can assign any role to any user

  • Posted inCRITICAL
  • Posted byGitHub
  • 11/11/2022

Critical severity. Users with the Company admin role (introduced by the company account feature in v4) can assign any role to any user. This also applies to any other user that has the role / assign policy. Any subtree limitation in place does not have…

Posts navigation

Previous Posts 1 2 3 4 … 19 Next Posts
トピトピニュース
WordPress theme by componentz

Archives

2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30
Hit enter to search or ESC to close