ZDI-22-1021: VMware ESXi TCP/IP Memory Corruption Remote Code Execution Vulnerability

Read Time:7 Second

This vulnerability allows remote attackers to execute arbitrary code on affected installations of VMware ESXi. Authentication is not required to exploit this vulnerability.

Read More

CVE-2020-16093

Read Time:12 Second

In LemonLDAP::NG (aka lemonldap-ng) through 2.0.8, validity of the X.509 certificate is not checked by default when connecting to remote LDAP backends, because the default configuration of the Net::LDAPS module for Perl is used.

Read More

mariadb-10.3-3520220716094844.f27b74a8

Read Time:16 Second

FEDORA-MODULAR-2022-0cd0202272

Packages in this update:

mariadb-10.3-3520220716094844.f27b74a8

Update description:

MariaDB 10.3.35 & Galera 25.3.35

Important notice:

This is the last planned update for this module stream in Fedora.
Fedora 35 will be the last Fedora release in which this module stream will be available.

Read More

mariadb-10.4-3520220717092835.f27b74a8

Read Time:16 Second

FEDORA-MODULAR-2022-c58e1ae21e

Packages in this update:

mariadb-10.4-3520220717092835.f27b74a8

Update description:

MariaDB 10.4.25 & Galera 26.4.11

Important notice:

This is the last planned update for this module stream in Fedora.
Fedora 35 will be the last Fedora release in which this module stream will be available.

Read More

CVE-2015-10003

Read Time:18 Second

A vulnerability, which was classified as problematic, was found in FileZilla Server up to 0.9.50. This affects an unknown part of the component PORT Handler. The manipulation leads to unintended intermediary. It is possible to initiate the attack remotely. Upgrading to version 0.9.51 is able to address this issue. It is recommended to upgrade the affected component.

Read More

CVE-2017-20136 (classifieds_script)

Read Time:19 Second

A vulnerability classified as critical has been found in Itech Classifieds Script 7.27. Affected is an unknown function of the file /subpage.php. The manipulation of the argument scat with the input =51′ AND 4941=4941 AND ‘hoCP’=’hoCP leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.

Read More

CVE-2017-20135

Read Time:17 Second

A vulnerability classified as critical was found in Itech Dating Script 3.26. Affected by this vulnerability is an unknown functionality of the file /see_more_details.php. The manipulation of the argument id leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.

Read More