ZDI-22-1441: Siemens Solid Edge Viewer DWG File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Siemens Solid Edge Viewer. User interaction is required to exploit this vulnerability...
ZDI-22-1442: Oracle VirtualBox COM RPC Interface Improper Access Control Local Privilege Escalation Vulnerability
This vulnerability allows local attackers to escalate privileges on affected installations of Oracle VirtualBox. An attacker must first obtain the ability to execute low-privileged code...
ZDI-22-1443: Oracle Access Management CustomReadServlet Directory Traversal Information Disclosure Vulnerability
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Oracle Access Management. Authentication is not required to exploit this vulnerability. Read...
ZDI-22-1444: Oracle VirtualBox VRDP Double Free Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Oracle VirtualBox. Authentication is not required to exploit this vulnerability. Read More
moby-engine-20.10.20-1.fc37
FEDORA-2022-2c33bba286 Packages in this update: moby-engine-20.10.20-1.fc37 Update description: Update to 20.10.20. Mitigates CVE-2022-39253 Read More
moby-engine-20.10.20-1.fc36
FEDORA-2022-12790ca71a Packages in this update: moby-engine-20.10.20-1.fc36 Update description: Update to 20.10.20. Mitigates CVE-2022-39253 Read More
Multiple Vulnerabilities in Mozilla Firefox and Firefox ESR Could Allow for Arbitrary Code Execution
Multiple vulnerabilities have been discovered in Mozilla Firefox and Firefox ESR, the most severe of which could allow for arbitrary code execution. Mozilla Firefox is...
Backdoor.Win32.Redkod.d / Weak Hardcoded Credentials
Posted by malvuln on Oct 20 Discovery / credits: Malvuln (John Page aka hyp3rlinx) (c) 2022 Original source: https://malvuln.com/advisory/bb309bdd071d5733efefe940a89fcbe8.txt Contact: malvuln13 () gmail com Media:...
RRX IOB LP v1.0 – DNS Cache Snooping Vulnerability
Posted by info () vulnerability-lab com on Oct 20 Document Title: =============== RRX IOB LP v1.0 - DNS Cache Snooping Vulnerability References (Source): ==================== https://www.vulnerability-lab.com/get_content.php?id=2261...
MapTool v1.11.5 – Cross Site Scripting Vulnerabilities
Posted by info () vulnerability-lab com on Oct 20 Document Title: =============== MapTool v1.11.5 - Cross Site Scripting Vulnerabilities References (Source): ==================== https://www.vulnerability-lab.com/get_content.php?id=2319 Release Date:...