[SYSS-2024-039] DiCal-RED – Path Traversal
Posted by Sebastian Hamann via Fulldisclosure on Aug 22 Advisory ID: SYSS-2024-039 Product: DiCal-RED Manufacturer: Swissphone Wireless AG Affected Version(s): Unknown Tested Version(s): 4009 Vulnerability...
[SYSS-2024-038] DiCal-RED – Use of Password Hash Instead of Password for Authentication
Posted by Sebastian Hamann via Fulldisclosure on Aug 22 Advisory ID: SYSS-2024-038 Product: DiCal-RED Manufacturer: Swissphone Wireless AG Affected Version(s): Unknown Tested Version(s): 4009 Vulnerability...
[SYSS-2024-037] DiCal-RED – Use of Password Hash With Insufficient Computational Effort
Posted by Sebastian Hamann via Fulldisclosure on Aug 22 Advisory ID: SYSS-2024-037 Product: DiCal-RED Manufacturer: Swissphone Wireless AG Affected Version(s): Unknown Tested Version(s): 4009 Vulnerability...
[SYSS-2024-035] DiCal-RED – Missing Authentication for Critical Function
Posted by Sebastian Hamann via Fulldisclosure on Aug 22 Advisory ID: SYSS-2024-035 Product: DiCal-RED Manufacturer: Swissphone Wireless AG Affected Version(s): Unknown Tested Version(s): 4009 Vulnerability...
[SYSS-2024-036] DiCal-RED – Missing Authentication for Critical Function
Posted by Sebastian Hamann via Fulldisclosure on Aug 22 Advisory ID: SYSS-2024-036 Product: DiCal-RED Manufacturer: Swissphone Wireless AG Affected Version(s): Unknown Tested Version(s): 4009 Vulnerability...
Re: Improper Authentication (CWE-287) CVE-2024-33897
Posted by Jeffrey Walton on Aug 22 I believe the problem lies elsewhere. The root cause is an architectural or design problem. Ewon Cosy+ should...
` Piano `
Posted by Teri Olson on Aug 22 Hello, I'm giving out my late husband's Yamaha Baby Grand Piano for free to any passionate instrument lover....
USN-6980-1: ImageMagick vulnerabilities
It was discovered that ImageMagick incorrectly handled certain malformed image files. If a user or automated system using ImageMagick were tricked into opening a specially...
USN-6978-1: XStream vulnerabilities
It was discovered that XStream incorrectly handled parsing of certain crafted XML documents. A remote attacker could possibly use this issue to read arbitrary files....
USN-6972-2: Linux kernel (AWS) vulnerabilities
Yuxuan Hu discovered that the Bluetooth RFCOMM protocol driver in the Linux Kernel contained a race condition, leading to a NULL pointer dereference. An attacker...