ZDI-24-1096: (0Day) Microsoft Office Visio EMF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Microsoft Office Visio. User interaction is required to exploit this vulnerability in...
ZDI-24-1097: (0Day) Microsoft GitHub Dev-Containers Improper Privilege Management Privilege Escalation Vulnerability
This vulnerability allows remote attackers to escalate privileges on Microsoft GitHub. Authentication is required to exploit this vulnerability. The ZDI has assigned a CVSS rating...
ZDI-24-1098: (0Day) Microsoft Windows Error Reporting Service Missing Authorization Arbitrary Process Termination Vulnerability
This vulnerability allows local attackers to create a denial-of-service condition on affected installations of Microsoft Windows. An attacker must first obtain the ability to execute...
ZDI-24-1099: Apache OFBiz resolveURI Authentication Bypass Vulnerability
This vulnerability allows remote attackers to bypass authentication on affected installations of Apache OFBiz. Authentication is not required to exploit this vulnerability. The ZDI has...
CyberDanube Security Research 20240805-0 | Multiple Vulnerabilities in JetPort Series
Posted by Thomas Weber via Fulldisclosure on Aug 05 CyberDanube Security Research 20240805-0 ------------------------------------------------------------------------------- title| Multiple Vulnerabilities in JetPort Series product| Korenix JetPort Series vulnerable...
CVE-2024-40101 exploit: Reflected Cross-Site Scripting (XSS) on Microweber
Posted by masquerad3r on Aug 05 Hello team, Please find the attached POC for CVE-2024-40101 for publication. Regards, Prerak Mittal # Exploit Title: Microweber <=v2.0.15...
DSA-5739-1 wpa – security update
Rory McNamara reported a local privilege escalation in wpasupplicant: A user able to escalate to the netdev group can load arbitrary shared object files in...
DSA-5738-1 openjdk-17 – security update
Several vulnerabilities have been discovered in the OpenJDK Java runtime, which may result in denial of service, information disclosure or bypass of Java sandbox restrictions....
GLSA 202408-01: containerd: Multiple Vulnerabilities
Post Content Read More
GLSA 202408-02: Mozilla Firefox: Multiple Vulnerabilities
Post Content Read More