This vulnerability allows remote attackers to execute arbitrary code on affected installations of VMware ESXi. Authentication is not required to exploit this vulnerability.
Monthly Archives: July 2022
CVE-2020-23563
IrfanView 4.54 allows a user-mode write access violation starting at FORMATS!ShowPlugInSaveOptions_W+0x0000000000002cba.
CVE-2020-23562
IrfanView 4.54 allows a user-mode write access violation starting at FORMATS!ShowPlugInSaveOptions_W+0x000000000000aefe.
CVE-2020-23561
IrfanView 4.54 allows a user-mode write access violation starting at FORMATS!ShowPlugInSaveOptions_W+0x0000000000005722.
CVE-2020-16093
In LemonLDAP::NG (aka lemonldap-ng) through 2.0.8, validity of the X.509 certificate is not checked by default when connecting to remote LDAP backends, because the default configuration of the Net::LDAPS module for Perl is used.
mariadb-10.3-3520220716094844.f27b74a8
FEDORA-MODULAR-2022-0cd0202272
Packages in this update:
mariadb-10.3-3520220716094844.f27b74a8
Update description:
MariaDB 10.3.35 & Galera 25.3.35
Important notice:
This is the last planned update for this module stream in Fedora.
Fedora 35 will be the last Fedora release in which this module stream will be available.
mariadb-10.4-3520220717092835.f27b74a8
FEDORA-MODULAR-2022-c58e1ae21e
Packages in this update:
mariadb-10.4-3520220717092835.f27b74a8
Update description:
MariaDB 10.4.25 & Galera 26.4.11
Important notice:
This is the last planned update for this module stream in Fedora.
Fedora 35 will be the last Fedora release in which this module stream will be available.
CVE-2015-10003
A vulnerability, which was classified as problematic, was found in FileZilla Server up to 0.9.50. This affects an unknown part of the component PORT Handler. The manipulation leads to unintended intermediary. It is possible to initiate the attack remotely. Upgrading to version 0.9.51 is able to address this issue. It is recommended to upgrade the affected component.
CVE-2017-20136 (classifieds_script)
A vulnerability classified as critical has been found in Itech Classifieds Script 7.27. Affected is an unknown function of the file /subpage.php. The manipulation of the argument scat with the input =51′ AND 4941=4941 AND ‘hoCP’=’hoCP leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
CVE-2017-20135
A vulnerability classified as critical was found in Itech Dating Script 3.26. Affected by this vulnerability is an unknown functionality of the file /see_more_details.php. The manipulation of the argument id leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.