Posts
218
Following
Hidden
Followers
53
AttackerKB bot (Unofficial)
New assessment for topic: CVE-2024-9474

Topic description: "A privilege escalation vulnerability in Palo Alto Networks PAN-OS software allows a PAN-OS administrator with access to the management web interface to perform actions on the firewall with root privileges. ..."

"[CVE-2024-9474](https://security.paloaltonetworks.com/CVE-2024-9474) was exploited in the wild as part of an exploit chain, paired with the authentication bypass [CVE-2024-0012](https://attackerkb.com/topics/MLL6c2Y4Oo/cve-2024-0012), to allow for unauthenticated RCE ..."

Link: https://attackerkb.com/assessments/83a9c0f2-2ff0-4b7a-ab52-a8f4897d148b
0
1
0
New assessment for topic: CVE-2024-49019

Topic description: "Active Directory Certificate Services Elevation of Privilege Vulnerability ..."

"Microsoft's Active Directory Certificate Services (AD CS) is affected by a vulnerability whereby certificate templates using schema version 1 allow the requester to specify the application policies in the form of OIDs to be included in the signed certificate ..."

Link: https://attackerkb.com/assessments/54369d46-36dd-4e8d-9d13-8b6e7d966228
0
0
0
New assessment for topic: CVE-2024-6100

Topic description: "Type Confusion in V8 in Google Chrome prior to 126.0.6478.114 allowed a remote attacker to execute arbitrary code via a crafted HTML page ..."

"[metadata only] ..."

Link: https://attackerkb.com/assessments/04193c43-00f7-47b9-b65c-504b6fd49772
0
0
0
New assessment for topic: CVE-2023-28324

Topic description: "A improper input validation vulnerability exists in Ivanti Endpoint Manager 2022 and below that could allow privilege escalation or remote code execution. ..."

"CVE-2023-28324 is an unauthenticated RCE affecting Ivanti EPM versions 2022 SU2 and prior ..."

Link: https://attackerkb.com/assessments/567fabee-824d-4bf2-9b05-8bbfa083d2b3
0
0
0
New assessment for topic: CVE-2024-11477

Topic description: "7-Zip Zstandard Decompression Integer Underflow Remote Code Execution Vulnerability ..."

"This vulnerability was [introduced](https://github.com/ip7z/7zip/commits/main/C/ZstdDec.c) into 7zip in version 24.05 (released circa May 15, 2024), and then [fixed](https://github.com/ip7z/7zip/commit/a7a1d4a241492e81f659a920f7379c193593ebc6#diff-896855d0e24931a930fa2e2a5e6c4a92d3589a70c1f8436d76e0f3c673888624R1313) in version 24.07 (released circa June 19, 2024), so therefore the vulnerability was only present in two releases over a 1 month period ..."

Link: https://attackerkb.com/assessments/8eb9f1f7-057b-4b6e-943f-d26f65249edf
0
1
0
New assessment for topic: CVE-2024-28986

Topic description: "SolarWinds Web Help Desk was found to be susceptible to a Java Deserialization Remote Code Execution vulnerability that, if exploited, would allow an attacker to run commands on the host machine ..."

"On Aug 9, 2024, SolarWinds published an [advisory](https://www.solarwinds.com/trust-center/security-advisories/cve-2024-28986) for [CVE-2024-28986](https://nvd.nist.gov/vuln/detail/cve-2024-28986), with a CVSS score of 9.8 (Critical), affecting the Web Help Desk product ..."

Link: https://attackerkb.com/assessments/fb6830c1-6cdc-4a39-b75b-befe370fe728
0
0
0
New assessment for topic: CVE-2024-31497

Topic description: "In PuTTY 0.68 through 0.80 before 0.81, biased ECDSA nonce generation allows an attacker to recover a user's NIST P-521 secret key via a quick attack in approximately 60 signatures ..."

"CVE-2024-31497 is a cryptographic flaw (specifically [CWE-338](http://cwe.mitre.org/data/definitions/338.html), or "Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)") in PuTTY 0.68 through 0.80 ..."

Link: https://attackerkb.com/assessments/5c3654b6-3f53-4658-a932-fd39bf0d6c28
0
0
0
New assessment for topic: CVE-2024-28987

Topic description: "The SolarWinds Web Help Desk (WHD) software is affected by a hardcoded credential vulnerability, allowing remote unauthenticated user to access internal functionality and modify data. ..."

"Solar Winds [Web Help Desk](https://www.solarwinds.com/web-help-desk) is described as an “Affordable Help Desk Ticketing and Asset Management Software” ..."

Link: https://attackerkb.com/assessments/cac27cf6-977a-457b-917a-7b46c7a9d1a4
0
0
0
New assessment for topic: CVE-2024-40711

Topic description: "A deserialization of untrusted data vulnerability with a malicious payload can allow an unauthenticated remote code execution (RCE). ..."

"Critical unauthenticated remote code execution vulnerability in Veeam Backup & Replication, a perennially popular target for abuse (including by ransomware groups) ..."

Link: https://attackerkb.com/assessments/a11762ae-41f5-4ba8-b535-ed775b4b1f01
0
0
0
New assessment for topic: CVE-2021-34473

Topic description: "Microsoft Exchange Server Remote Code Execution Vulnerability ..."

"CISA released an updated advisory on the BianLian ransomware group including the vulnerabilities the group is using to gain initial access towards victims ..."

Link: https://attackerkb.com/assessments/d1f7012f-3d3e-4b13-a288-b5729c538d08
0
0
0
New assessment for topic: CVE-2021-34523

Topic description: "Microsoft Exchange Server Elevation of Privilege Vulnerability ..."

"CVE-2021-34523 is a privilege escalation vulnerability in Microsoft Exchange Server that arises due to improper validation of PowerShell remoting requests ..."

Link: https://attackerkb.com/assessments/9481eef1-fd69-4d2e-bdcd-ee023134810c
0
0
0
New assessment for topic: ProxyShell Exploit Chain

Topic description: "ProxyShell is an exploit chain targeting on-premise installations of Microsoft Exchange Server ..."

"CISA released an updated advisory on the BianLian ransomware group including the vulnerabilities the group is using to gain initial access towards victims ..."

Link: https://attackerkb.com/assessments/db8969a7-5ae8-4bb3-b216-75154007e43d
0
0
0
New assessment for topic: CVE-2022-37969

Topic description: "Windows Common Log File System Driver Elevation of Privilege Vulnerability ..."

"The vulnerability arises due to insufficient input validation in the CLFS driver ..."

Link: https://attackerkb.com/assessments/a5c63bcc-384c-4087-ae42-f0d4f6b7c928
0
0
0
New assessment for topic: CVE-2024-0012

Topic description: "An authentication bypass in Palo Alto Networks PAN-OS software enables an unauthenticated attacker with network access to the management web interface to gain PAN-OS administrator privileges to perform administrative actions, tamper with the configuration, or exploit other authenticated privilege escalation vulnerabilities like CVE-2024-9474 https://security.paloaltonetworks.com/CVE-2024-9474 . ..."

"Based upon writing a [Metasploit exploit module](https://github.com/rapid7/metasploit-framework/pull/19663) for this exploit chain, I have rated the exploitability of this as very easy, as a target PAN-OS management interface is vulnerable in a default configuration. ..."

Link: https://attackerkb.com/assessments/a360309b-1a6e-424c-961a-f7dfb48113d7
0
1
0
New assessment for topic: CVE-2024-0012

Topic description: "PAN-OS: Authentication Bypass in the Management Web Interface. ..."

"[metadata only] ..."

Link: https://attackerkb.com/assessments/3f5764fd-48d8-457f-8f38-7b8b3e9abedf
0
0
0
New assessment for topic: CVE-2024-49033

Topic description: "Microsoft Word Security Feature Bypass Vulnerability ..."

"This is a 0-day vulnerability because Microsoft still can not do anything against this nonsense to input a VBS programming language into the Word program - macros options. ..."

Link: https://attackerkb.com/assessments/0fe35db1-a90b-42da-b122-f2e47bd71715
0
0
0
New assessment for topic: CVE-2024-28397

Topic description: "An issue in the component js2py.disable_pyimport() of js2py up to v0.74 allows attackers to execute arbitrary code via a crafted API call. ..."

"Js2py is JavaScript to Python Translator & JavaScript interpreter written in 100% pure Python ..."

Link: https://attackerkb.com/assessments/b261765e-246e-4ceb-8a0f-67610c79af41
0
0
0
New assessment for topic: CVE-2024-39205

Topic description: "An issue in pyload-ng v0.5.0b3.dev85 running under python3.11 or below allows attackers to execute arbitrary code via a crafted HTTP request. ..."

"[Pyload](https://pyload.net/) is an open-source download manager designed to automate file downloads from various online sources ..."

Link: https://attackerkb.com/assessments/d1af15aa-3339-42d1-a5d3-460d43b3231a
0
0
0
New assessment for topic: CVE-2024-6531

Topic description: "A vulnerability has been identified in Bootstrap that exposes users to Cross-Site Scripting (XSS) attacks ..."

"Because this vulnerability only arises when the carousel is in use, and we can control the href attribute, the rating was given to be lower than usual ..."

Link: https://attackerkb.com/assessments/5f27a626-82f0-4b5b-bb96-677bb459b725
0
0
0
New assessment for topic: CVE-2022-1040

Topic description: "An authentication bypass vulnerability in the User Portal and Webadmin allows a remote attacker to execute code in Sophos Firewall version v18.5 MR3 and older. ..."

"There was good reason to mark attacker value and exploitability as being lower for this bug a few years back, since these firewalls auto-updated for most organizations and not many details were publicly available upon disclosure in 2022 ..."

Link: https://attackerkb.com/assessments/78b6d29d-7c3c-4eef-8f38-c1c62d6dc523
0
0
0
Show older