A remote command execution (RCE) vulnerability in the web interface component of Furukawa 423-41W/AC before v1.1.4 and LD421-21W before v1.3.3 allows unauthenticated attackers to send arbitrary commands to the device via unspecified vectors.
Daily Archives: July 17, 2023
CVE-2022-30858
An issue was discovered in ngiflib 0.4. There is SEGV in SDL_LoadAnimatedGif when use SDLaffgif. poc : ./SDLaffgif CA_file2_0
kitty-0.26.5-6.el9
FEDORA-EPEL-2023-eaff7ffae1
Packages in this update:
kitty-0.26.5-6.el9
Update description:
fixes CVE-2008-2383
kitty-0.26.5-6.fc37
FEDORA-2023-3746647cc3
Packages in this update:
kitty-0.26.5-6.fc37
Update description:
fixes CVE-2008-2383
kitty-0.29.1-1.fc38
FEDORA-2023-a004ecb3f8
Packages in this update:
kitty-0.29.1-1.fc38
Update description:
version 0.29.1
fixes CVE-2008-2383
CVE-2021-37386
Furukawa 423-41W/AC before v1.1.4 and LD421-21W before v1.3.3 were discovered to contain an HTML injection vulnerability via the serial number update function.
CVE-2022-38062
Cross-Site Request Forgery (CSRF) vulnerability in Metagauss Download Theme plugin <=Â 1.0.9 versions.
CVE-2022-36424
Cross-Site Request Forgery (CSRF) vulnerability in Nikola Loncar Easy Appointments plugin <=Â 3.11.9 versions.
BreachForums Admin Pleads Guilty to Hacking Charges
The guilty plea also covered a separate count of possession of child pornography
Ukraine’s CERT-UA Exposes Gamaredon’s Rapid Data Theft Methods
The group utilize malware like GAMMASTEEL to rapidly exfiltrate files within 30-50 minutes