Apple Rushes to Patch Zero-Day Flaws Exploited for Pegasus Spyware on iPhones
Apple on Thursday released emergency security updates for iOS, iPadOS, macOS, and watchOS to address two zero-day flaws that have...
Apple on Thursday released emergency security updates for iOS, iPadOS, macOS, and watchOS to address two zero-day flaws that have...
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday warned that multiple nation-state actors are exploiting security flaws in...
NAME__________Simple Membership plugin for WordPress cross-site scriptingPlatforms Affected:WordPress Simple Membership plugin for WordPress 3.2.8 WordPress Simple Membership Plugin for WordPress...
NAME__________Cacti cross-site scriptingPlatforms Affected:Cacti Cacti 1.2.24Risk Level:6.1Exploitability:HighConsequences:Cross-Site Scripting DESCRIPTION__________Cacti is vulnerable to cross-site scripting, caused by improper validation of user-supplied...
NAME__________Apple watchOS information disclosurePlatforms Affected:Apple watchOS 9.4Risk Level:5.3Exploitability:UnprovenConsequences:Obtain Information DESCRIPTION__________Apple watchOS could allow a remote attacker to obtain sensitive information,...
NAME__________Samsung Android information disclosurePlatforms Affected:Samsung AndroidRisk Level:4Exploitability:UnprovenConsequences:Obtain Information DESCRIPTION__________Samsung Android could allow a local attacker to obtain sensitive information, caused...
NAME__________Cacti command executionPlatforms Affected:Cacti Cacti 1.2.24Risk Level:7.2Exploitability:UnprovenConsequences:Cross-Site Scripting DESCRIPTION__________Cacti could allow a remote authenticated attacker to execute arbitrary commands on...
NAME__________Cacti cross-site scriptingPlatforms Affected:Cacti Cacti 1.2.24Risk Level:6.1Exploitability:HighConsequences:Cross-Site Scripting DESCRIPTION__________Cacti is vulnerable to cross-site scripting, caused by improper validation of user-supplied...
NAME__________Jenkins Job Configuration History Plugin directory traversalPlatforms Affected:Jenkins Job Configuration History Plugin 1227.v7a_79fc4dc01fRisk Level:7.1Exploitability:UnprovenConsequences:Gain Access DESCRIPTION__________Jenkins Job Configuration History Plugin...
NAME__________Cacti open redirectPlatforms Affected:Cacti Cacti 1.2.24Risk Level:4.3Exploitability:UnprovenConsequences:Cross-Site Scripting DESCRIPTION__________Cacti could allow a remote attacker to conduct phishing attacks, caused by...
NAME__________Apple macOS Ventura information disclosurePlatforms Affected:Apple macOS Ventura 13.4Risk Level:3.3Exploitability:UnprovenConsequences:Obtain Information DESCRIPTION__________Apple macOS Ventura could allow a remote attacker to...
NAME__________Jenkins Assembla Auth Plugin security bypassPlatforms Affected:Jenkins Assembla Auth Plugin 1.14Risk Level:6.3Exploitability:UnprovenConsequences:Bypass Security DESCRIPTION__________Jenkins Assembla Auth Plugin could allow a...
NAME__________Jenkins Job Configuration History Plugin directory traversalPlatforms Affected:Jenkins Job Configuration History Plugin 1227.v7a_79fc4dc01fRisk Level:7.1Exploitability:UnprovenConsequences:Obtain Information DESCRIPTION__________Jenkins Job Configuration History Plugin...
NAME__________Jenkins AWS CodeCommit Trigger Plugin information disclosurePlatforms Affected:Jenkins AWS CodeCommit Trigger Plugin 3.0.12Risk Level:4.3Exploitability:UnprovenConsequences:Obtain Information DESCRIPTION__________Jenkins AWS CodeCommit Trigger Plugin...
NAME__________Jenkins Pipeline Maven Integration Plugin information disclosurePlatforms Affected:Jenkins Pipeline Maven Integration Plugin 1330.v18e473854496Risk Level:4.3Exploitability:UnprovenConsequences:Obtain Information DESCRIPTION__________Jenkins Pipeline Maven Integration Plugin...
NAME__________FreeBSD header injectionPlatforms Affected:FreeBSD FreeBSD 12.0 FreeBSD FreeBSD 13.0 FreeBSD FreeBSD 13.2 FreeBSD FreeBSD 12.4Risk Level:6.5Exploitability:UnprovenConsequences:Data Manipulation DESCRIPTION__________FreeBSD is vulnerable...
NAME__________Jenkins AWS CodeCommit Trigger Plugin HTML injectionPlatforms Affected:Jenkins AWS CodeCommit Trigger Plugin 3.0.12Risk Level:4.3Exploitability:UnprovenConsequences:Gain Access DESCRIPTION__________Jenkins AWS CodeCommit Trigger Plugin...
NAME__________direct Desktop App for macOS security bypassPlatforms Affected:L is B Corp direct Desktop App for macOS 2.6.0Risk Level:4.4Exploitability:UnprovenConsequences:Bypass Security DESCRIPTION__________direct...
NAME__________Tenda N300 Wireless N VDSL2 Modem Router information disclosurePlatforms Affected:Tenda N300 Wireless N VDSL2 Modem RouterRisk Level:6.5Exploitability:UnprovenConsequences:Obtain Information DESCRIPTION__________Tenda N300...
NAME__________User Submitted Posts plugin for WordPress cross-site scriptingPlatforms Affected:Jeff Starr User Submitted Posts plugin for WordPress 20230811Risk Level:6.4Exploitability:HighConsequences:Cross-Site Scripting DESCRIPTION__________User...
NAME__________Jenkins Frugal Testing Plugin security bypassPlatforms Affected:Jenkins Frugal Testing Plugin 1.1Risk Level:5.4Exploitability:UnprovenConsequences:Bypass Security DESCRIPTION__________Jenkins Frugal Testing Plugin could allow a...
NAME__________Jenkins Frugal Testing Plugin cross-site request forgeryPlatforms Affected:Jenkins Frugal Testing Plugin 1.1Risk Level:5.4Exploitability:UnprovenConsequences:Gain Access DESCRIPTION__________Jenkins Frugal Testing Plugin is vulnerable...
NAME__________Jenkins Azure AD Plugin information disclosurePlatforms Affected:Jenkins Azure AD Plugin 396.v86ce29279947Risk Level:3.7Exploitability:UnprovenConsequences:Obtain Information DESCRIPTION__________Jenkins Azure AD Plugin could allow a...
NAME__________Jenkins AWS CodeCommit Trigger Plugin cross-site request forgeryPlatforms Affected:Jenkins AWS CodeCommit Trigger Plugin 3.0.12Risk Level:5.4Exploitability:UnprovenConsequences:Gain Access DESCRIPTION__________Jenkins AWS CodeCommit Trigger...