ZDI-24-1089: (0Day) Microsoft Office Visio DXF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Microsoft Office Visio. User interaction is required to exploit this vulnerability in...
ZDI-24-1088: (0Day) Microsoft 3D Viewer GLB File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Microsoft 3D Viewer. User interaction is required to exploit this vulnerability in...
ZDI-24-1100: SMARTBEAR SoapUI unpackageAll Directory Traversal Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on affected installations of SMARTBEAR SoapUI. User interaction is required to exploit this vulnerability in that...
ZDI-24-1101: Apple macOS Metal Framework KTX Image Parsing Out-Of-Bounds Read Information Disclosure Vulnerability
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Apple macOS. Interaction with the Metal framework is required to exploit this...
CyberDanube Security Research 20240805-0 | Multiple Vulnerabilities in JetPort Series
Posted by Thomas Weber via Fulldisclosure on Aug 05 CyberDanube Security Research 20240805-0 ------------------------------------------------------------------------------- title| Multiple Vulnerabilities in JetPort Series product| Korenix JetPort Series vulnerable...
CVE-2024-40101 exploit: Reflected Cross-Site Scripting (XSS) on Microweber
Posted by masquerad3r on Aug 05 Hello team, Please find the attached POC for CVE-2024-40101 for publication. Regards, Prerak Mittal # Exploit Title: Microweber <=v2.0.15...
GLSA 202408-02: Mozilla Firefox: Multiple Vulnerabilities
Post Content Read More
GLSA 202408-01: containerd: Multiple Vulnerabilities
Post Content Read More
DSA-5738-1 openjdk-17 – security update
Several vulnerabilities have been discovered in the OpenJDK Java runtime, which may result in denial of service, information disclosure or bypass of Java sandbox restrictions....
DSA-5739-1 wpa – security update
Rory McNamara reported a local privilege escalation in wpasupplicant: A user able to escalate to the netdev group can load arbitrary shared object files in...