Cross-Site Scripting (XSS) vulnerability in MicroStrategy Web SDK 10.11 and earlier, allows remote unauthenticated attackers to execute arbitrary code via the key parameter to the getESRIExtraConfig task.
Monthly Archives: May 2022
CVE-2020-22984
Cross-Site Scripting (XSS) vulnerability in MicroStrategy Web SDK 10.11 and earlier, allows remote unauthenticated attackers to execute arbitrary code via key parameter to the getGoogleExtraConfig task.
How to Get Up and Running with CIS WorkBench
Communities are at the heart of what CIS is all about. That’s what led us to create CIS WorkBench. Read on to learn how this collaborative hub works.
Introducing CIS WorkBench
Communities are at the heart of what CIS is all about. That’s what led us to create CIS WorkBench. Read on to learn how this collaborative hub works.
Surveillance by Driverless Car
This will only get more prevalent: “The SFPD claims it has already obtained evidence from autonomous vehicle cameras.”
yubihsm-connector-3.0.2-2.el8
FEDORA-EPEL-2022-a951f07499
Packages in this update:
yubihsm-connector-3.0.2-2.el8
Update description:
Rebuild for CVE-2022-24675 (#2084697)
CVE-2021-0189
Use of out-of-range pointer offset in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable aescalation of privilege via local access.
CVE-2021-0188
Return of pointer value outside of expected range in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable aescalation of privilege via local access.
CVE-2021-0159
Improper input validation in the BIOS authenticated code module for some Intel(R) Processors may allow a privileged user to potentially enable aescalation of privilege via local access.
CVE-2021-0155
Unchecked return value in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable information disclosure via local access.