Skip to content

トピトピニュース

Header Image
Category

HIGH

381 Posts

Featured

Posted byGitHub
[phpxmlrpc/phpxmlrpc] code injection in phpxmlrpc/phpxmlrpc
Posted byGitHub
[ghost] ghost vulnerable to unauthorized newsletter modification via improper access controls
Posted byGitHub
[microweber/microweber] Account Takeover Through Password Reset Poisoning
Posted byGitHub
[apache-airflow] OS Command Injection in Apache Airflow

[org.xwiki.platform:xwiki-platform-oldcore] XWiki Platform Old Core vulnerable to Authentication Bypass Using the Login Action

  • Posted inHIGH
  • Posted byGitHub
  • 09/17/202209/17/2022

Impact
All rights checks that would normally prevent a user from viewing a document on a wiki can be bypassed using the login action and directly specified templates. This exposes title, content and comments of any document and properties of objects (c…

[org.xwiki.platform:xwiki-platform-web-templates] XWiki Platform Web Templates vulnerable to Unauthorized User Registration Through the Distribution Wizard

  • Posted inHIGH
  • Posted byGitHub
  • 09/17/2022

Impact
By passing a template of the distribution wizard to the xpart template, user accounts can be created even when user registration is disabled. This also circumvents any email verification. Before versions 14.2 and 13.10.4, this can also be exploi…

[org.xwiki.platform:xwiki-platform-web] XWiki Platform Web Parent POM vulnerable to XSS in the attachment history

  • Posted inHIGH
  • Posted byGitHub
  • 09/17/202209/17/2022

Impact
It’s possible to store a JavaScript which will be executed by anyone viewing the history of an attachment containing javascript in its name.
For example, attachment a file with name ><img src=1 onerror=alert(1)>.jpg will execute the ale…

[rdiffweb] rdiffweb CSRF vulnerability in profile’s SSH keys can lead to unauthorized access

  • Posted inHIGH
  • Posted byGitHub
  • 09/16/202209/20/2022

rdiffweb prior to 2.4.3 is vulnerable to Cross-Site Request Forgery (CSRF). While adding SSH public keys to the profile, the server accepts the GET request, which results in adding an SSH public key to the profile and leads to unauthorized access to th…

[steal] steal vulnerable to Regular Expression Denial of Service via source and sourceWithComments

  • Posted inHIGH
  • Posted byGitHub
  • 09/16/202209/22/2022

A Regular Expression Denial of Service (ReDoS) flaw was found in stealjs steal via the source and sourceWithComments variable in main.js.
References

https://nvd.nist.gov/vuln/detail/CVE-2022-37262
https://github.com/stealjs/steal/issues/1531
https://g…

[org.eclipse.milo:sdk-server] Eclipse Milo vulnerable to Resource Exhaustion (Denial of Service)

  • Posted inHIGH
  • Posted byGitHub
  • 09/15/2022

Impact
Denial of Service
Details
OPC UA specification describes a concept named Subscriptions. Subscriptions monitor a set of Monitored Items for Notifications and return them to the Client in response to Publish requests. The server notifies the clien…

[github.com/gravitl/netmaker] Netmaker before 0.15.1 vulnerable to Insufficient Granularity of Access Control

  • Posted inHIGH
  • Posted byGitHub
  • 09/15/202209/15/2022

Impact
Improper Authorization functions leads to non-privileged users running privileged API calls. If you have added users to your Netmaker platform who whould not have admin privileges, they could use their auth token to run admin-level functions via…

[github.com/matrix-org/dendrite] Dendrite signature checks not applied to some retrieved missing events

  • Posted inHIGH
  • Posted byGitHub
  • 09/15/202209/15/2022

Impact
Events retrieved from a remote homeserver using /get_missing_events did not have their signatures verified correctly. This could potentially allow a remote homeserver to provide invalid/modified events to Dendrite via this endpoint.
Note that th…

[matrix-appservice-irc] Parsing issue in matrix-org/node-irc leading to room takeovers

  • Posted inHIGH
  • Posted byGitHub
  • 09/15/202209/16/2022

Impact
Attackers can specify a specific string of characters, which would confuse the bridge into combining an attacker-owned channel and an existing channel, allowing them to grant themselves permissions in the channel.
Patched
The vulnerability has b…

[Microsoft.AspNetCore.App.Runtime.linux-arm64] .NET Denial of Service Vulnerability

  • Posted inHIGH
  • Posted byGitHub
  • 09/15/202210/11/2022

Microsoft is releasing this security advisory to provide information about a vulnerability in .NET Core 3.1 and .NET 6.0. This advisory also provides guidance on what developers can do to update their applications to remove this vulnerability.
A denial…

Posts navigation

Previous Posts 1 … 17 18 19 20 21 … 39 Next Posts
トピトピニュース
WordPress theme by componentz

Archives

2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30
Hit enter to search or ESC to close