Posts
198
Following
Hidden
Followers
56
AttackerKB bot (Unofficial)
New assessment for topic: CVE-2024-37404

Topic description: "Improper Input Validation in the admin portal of Ivanti Connect Secure before 22.7R2.1 and 9.1R18.9, or Ivanti Policy Secure before 22.7R1.1 allows a remote authenticated attacker to achieve remote code execution. ..."

"Ivanti Connect Secure versions prior to 22.7R2.1 and 22.7R2.2, and Ivanti Policy Secure versions prior to 22.7R1 are vulnerable to [CRLF injection](https://owasp.org/www-community/vulnerabilities/CRLF_Injection), which leads to remote code execution with the privileges of the user `root` ..."

Link: https://attackerkb.com/assessments/34ea5769-e0d6-4c65-bfc3-510c679ef515
0
1
1
New assessment for topic: CVE-2024-47575

Topic description: "A missing authentication for critical function vulnerability in Fortinet's FortiManager fgfmd daemon may allow a remote unauthenticated attacker to execute arbitrary code or commands via specially crafted requests. ..."

"The flaw lies in the FortiGate to FortiManager Protocol (FGFM), which is designed for deployment scenarios where NAT traversal is needed ..."

Link: https://attackerkb.com/assessments/89ecce82-7a39-4376-82e1-8f5bfaad47f6
0
1
0
New assessment for topic: CVE-2022-3405

Topic description: "Code execution and sensitive information disclosure due to excessive privileges assigned to Acronis Agent ..."

"[metadata only] ..."

Link: https://attackerkb.com/assessments/d1b91dad-cf7b-440a-bcec-69d9332d95ff
0
0
0
New assessment for topic: CVE-2022-30995

Topic description: "Sensitive information disclosure due to improper authentication ..."

"[metadata only] ..."

Link: https://attackerkb.com/assessments/5b2f7148-394b-4035-8e70-f9d3d6eb0737
0
0
0
New assessment for topic: CVE-2024-41874

Topic description: "ColdFusion versions 2023.9, 2021.15 and earlier are affected by a Deserialization of Untrusted Data vulnerability that could result in arbitrary code execution in the context of the current user ..."

"[CVE-2024-41874](https://helpx.adobe.com/security/products/coldfusion/apsb24-71.html) is described as a critical unauthenticated remote code execution vulnerability affecting Adobe ColdFusion ..."

Link: https://attackerkb.com/assessments/2093f32c-29b0-4a2f-b0a3-b38bb9e950c9
0
0
0
New assessment for topic: CVE-2024-36401

Topic description: "GeoServer is an open source server that allows users to share and edit geospatial data ..."

"[metadata only] ..."

Link: https://attackerkb.com/assessments/1621d3f4-5531-4bc9-a499-285f6e252c7b
0
0
0
New assessment for topic: CVE-2024-45519

Topic description: "** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem ..."

"This is one of a [list of vulnerabilities](https://wiki.zimbra.com/wiki/Zimbra_Security_Advisories) disclosed in Synacor's Zimbra Collaboration Suite recently — this particular issue lies in Zimbra's postjournal service and evidently allows for unauthenticated command execution ..."

Link: https://attackerkb.com/assessments/cdb2647d-620f-4987-aad5-477c0b0ac1ad
0
0
0
New assessment for topic: CVE-2023-25950

Topic description: "HTTP request/response smuggling vulnerability in HAProxy version 2.7.0, and 2.6.1 to 2.6.7 allows a remote attacker to alter a legitimate user's request ..."

"HAProxy's HTTP/3 implementation fails to block a **malformed HTTP header field name**, and **when deployed in front of a server that incorrectly process this malformed header**, it may be used to conduct an HTTP request/response smuggling attack ..."

Link: https://attackerkb.com/assessments/410b285d-5724-4300-bcc4-603cc4c726ac
0
1
0
New assessment for topic: CVE-2024-47176

Topic description: "CUPS is a standards-based, open-source printing system, and `cups-browsed` contains network printing functionality including, but not limited to, auto-discovering print services and shared printers ..."

"On September 26, 2024, technical details of a four-vulnerability exploit chain affecting the Common UNIX Printing System (CUPS) [were disclosed](https://www.evilsocket.net/2024/09/26/Attacking-UNIX-systems-via-CUPS-Part-I/) ..."

Link: https://attackerkb.com/assessments/0db25c11-bd76-45d3-9338-4341b3da0e75
0
0
0
New assessment for topic: CVE-2024-45195

Topic description: "Direct Request ('Forced Browsing') vulnerability in Apache OFBiz. ..."

"[Apache OFBiz](https://ofbiz.apache.org/) is an open-source web-based enterprise resource planning and customer relationship management suite ..."

Link: https://attackerkb.com/assessments/33abbf06-f2b3-4792-9a9c-bca92ea20fd9
0
0
0
New assessment for topic: CVE-2024-7029

Topic description: "Commands can be injected over the network and executed without authentication. ..."

"**TL;DR:** Unpatched command injection vulnerability in an end-of-life IP camera, being exploited to drop a Mirai botnet malware variant ..."

Link: https://attackerkb.com/assessments/b1fb9ef3-b8b1-4bab-9942-179341ec4cbc
0
0
0
New assessment for topic: CVE-2023-45249

Topic description: "Remote command execution due to use of default passwords ..."

"On 24 July, Acronis published the security advisory [SEC-6452: Remote command execution due to use of default passwords](https://security-advisory.acronis.com/advisories/SEC-6452) where default passwords are exploited to gain admin access to the Acronis Cyber Infrastructure ..."

Link: https://attackerkb.com/assessments/11c1c3e7-7035-4201-85d8-100b3c567e5b
0
0
0
New assessment for topic: CVE-2023-42115

Topic description: "Exim AUTH Out-Of-Bounds Write Remote Code Execution Vulnerability ..."

" - Vulnerability Type: Service-specific security vulnerability ..."

Link: https://attackerkb.com/assessments/16ed4828-fca4-450f-a37e-882f1c766c8d
0
0
0
New assessment for topic: CVE-2024-44000

Topic description: "** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem ..."

"CVE-2024-44000 is an unauthenticated account takeover vulnerability in LiteSpeed Cache, a Wordpress plugin that currently has around 6 million active installations ..."

Link: https://attackerkb.com/assessments/5558a403-7673-4b3c-913b-f2ae6ddcc5fd
0
0
0
New assessment for topic: CVE-2024-40766

Topic description: "An improper access control vulnerability has been identified in the SonicWall SonicOS management access, potentially leading to unauthorized resource access and in specific conditions, causing the firewall to crash ..."

"Many reports have been made of the Akira and/or Fog ransomware group abusing this vulnerability ..."

Link: https://attackerkb.com/assessments/bf26a127-61bc-4142-a2c4-ade9dd595c66
0
0
0
New assessment for topic: CVE-2024-21060

Topic description: "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Data Dictionary) ..."

"[metadata only] ..."

Link: https://attackerkb.com/assessments/ee7b24cb-1d62-4f3b-b7b7-a785510a1d19
0
0
0
New assessment for topic: CVE-2021-33044

Topic description: "The identity authentication bypass vulnerability found in some Dahua products during the login process ..."

"On September 5th 2024, CISA released a security bulletin highlighting the cyber-attacks from a Russian actor ..."

Link: https://attackerkb.com/assessments/3171642d-f89e-41bd-9ebe-75c267602634
0
0
0
New assessment for topic: CVE-2021-33045

Topic description: "The identity authentication bypass vulnerability found in some Dahua products during the login process ..."

"On September 5th 2024, CISA released a security bulletin highlighting the cyber-attacks from a Russian actor ..."

Link: https://attackerkb.com/assessments/b363ab32-d16a-4ed2-b720-67a9ac625ef9
0
0
0
New assessment for topic: CVE-2022-26134

Topic description: "In affected versions of Confluence Server and Data Center, an OGNL injection vulnerability exists that would allow an unauthenticated attacker to execute arbitrary code on a Confluence Server or Data Center instance ..."

"On September 5th 2024, CISA released a security bulletin highlighting the cyber-attacks from a Russian actor ..."

Link: https://attackerkb.com/assessments/c466c1e4-b5eb-43b5-bd9c-3b86b8c2663e
0
0
0
New assessment for topic: CVE-2021-26138

Topic description: "The Atlassian Questions For Confluence app for Confluence Server and Data Center creates a Confluence user account in the confluence-users group with the username disabledsystemuser and a hardcoded password ..."

"On September 5th 2024, CISA released a security bulletin highlighting the cyber-attacks from a Russian actor ..."

Link: https://attackerkb.com/assessments/4bb352f3-5c69-4acc-a27f-7ce2b03fb199
0
0
0
Show older