Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2019-18996

Path settings in HMIStudio component of ABB PB610 Panel Builder 600 versions 2.8.0.424 and earlier accept DLLs outside of the program directory, potentially allowing an attacker with access to the local file system the execution of code in the application’s context.

CVE
#windows#pdf

%PDF-1.4 %���� 1 0 obj << /CreationDate (D:20191205141005+01’00’) /CreatorTool (PDF-XChange Standard \(8.0 build 331\) [GDI] [Windows 10 Enterprise x64 \(Build 17763\)]) /ModDate (D:20191205141011+01’00’) /Producer (PDF-XChange Standard \(8.0 build 331\) [GDI] [Windows 10 Enterprise x64 \(Build 17763\)]) >> endobj 2 0 obj << /Metadata 3 0 R /Pages 4 0 R /Type /Catalog >> endobj 3 0 obj << /Length 3087 /Subtype /XML /Type /Metadata >> stream application/pdf uuid:125fd9fc-43b8-441e-a8d1-4ab1642d2399 uuid:e459024e-644e-4e78-a94c-97236f2dfb41 2019-12-05T14:10:05+01:00 2019-12-05T14:10:11+01:00 PDF-XChange Standard (8.0 build 331) [GDI] [Windows 10 Enterprise x64 (Build 17763)] PDF-XChange Standard (8.0 build 331) [GDI] [Windows 10 Enterprise x64 (Build 17763)] endstream endobj 4 0 obj << /Count 6 /Kids [5 0 R 6 0 R 7 0 R 8 0 R 9 0 R 10 0 R] /Type /Pages >> endobj 5 0 obj << /Contents 11 0 R /MediaBox [0 0 595.2 841.92] /Parent 4 0 R /Resources << /Font << /F0 12 0 R /F1 13 0 R >> >> /Type /Page >> endobj 6 0 obj << /Contents 14 0 R /MediaBox [0 0 595.2 841.92] /Parent 4 0 R /Resources << /Font << /F0 12 0 R /F1 13 0 R /F2 15 0 R >> >> /Type /Page >> endobj 7 0 obj << /Contents 16 0 R /MediaBox [0 0 595.2 841.92] /Parent 4 0 R /Resources << /Font << /F0 12 0 R /F1 13 0 R >> >> /Type /Page >> endobj 8 0 obj << /Contents 17 0 R /MediaBox [0 0 595.2 841.92] /Parent 4 0 R /Resources << /Font << /F0 12 0 R /F1 13 0 R /F2 18 0 R >> >> /Type /Page >> endobj 9 0 obj << /Contents 19 0 R /MediaBox [0 0 595.2 841.92] /Parent 4 0 R /Resources << /Font << /F0 12 0 R /F1 13 0 R >> >> /Type /Page >> endobj 10 0 obj << /Contents 20 0 R /MediaBox [0 0 595.2 841.92] /Parent 4 0 R /Resources << /Font << /F0 12 0 R /F1 13 0 R >> >> /Type /Page >> endobj 11 0 obj << /Filter /FlateDecode /Length 3414 >> stream xڕY�v�6��WpI�Q�$�`v��<�L�(��33���R3�W�l{����[�-���j\(���t�I^�m2<&%� �[�"��m}Ҵ. �w ��ѿeisg�m�s��n�AY��b��x:o]X��b��7�<�0��e^����_@�ːТ�rkJ�fB6/ee�:^�5[V �L�9�b]^x@ I.�d��sFL-�����C�4`�r ���%?�)/v�r��V �,r�i�̂�$5�p!� ����e� ��]��u�,�C@{8 3��8�9F��������~YIND�� ����ߨ���bk�J fD�����0q\HP�o�5f>g���B�#��!�f<’?=4(��B�+GK�U����Z%�c4�=�l�0q�B�O=D��*�c��_��U^9S�&@ &���4�P�1Ԋ�R+��L�?��l�#�’ �Rk���L�>��f=����4g�Cn^�N��ӨUw6 �@��F��Y |�;�9�>��*%k���O�c�T�9��>�4���� ��F�ԡf JP3��ͻ�6�E��gl��tl�H����=siW�������9"�"��� ��9�E Q�lň0�yh�3�F�*M"$ �P�\�ƲK��d)�Bu=��Ž�b�O��L8^��#���\+Tk �p���xw�� |*��j�� ��y�ZT^z���j/�j�N�l� c�ő]m��@� �L��j�@��O;�Vk�N�y Od��;���eёYm�� b� ef�Π%�`�.�\&��-240�"�V+� �. ��Xd�R�B�������Pk���b6�];"7�*gg+;�^J�nBBB���81�9�v���^�{J�5f>g}t��+@�£���J�W ����W�d�|�%Wɠ`2RL�U�L��Fr��Ю��<� VB��Ю���b �0º��Z �,�6/@e�� �@�r��������4~j {����6�����1d6��*@ @��F�+�0���������#P� �rQ�����?�~@��#�$�4ጩ�0�^5��Ȱ����� + ��1��~:��d� �N�I�U���Сg@��W~N���ǂ�V^�� WL|+42�H��S��E�t4+H�K� ]- =�H���%�>3m�����@+��+!DZ�F9�F�� SL�|���t�1G��4��RUt�o&�����4^?#��֕ $� �#��Y�����r��`y� ��]�#��}OuA?�xx�U!U{��8�0_PT������u�l��&#�m���4�GU�%=�������4S�Lil�-���S4�rm�V���TYQ�O�Х#��ٲ���Һ:u<��翷_��~��7P��Ǜ�g� Z��{6���dچO|)WU��%�-�}#�}�� �o!k�(�K���i�-�.��Z�2~V��&�!m q˦6���15�jť�o-f�?�2�����{b��r�7�.�-�)Y���B�&� ��;��e����iU6Th4�_�>�@9�@C���e�t�MC3o�71�(9�dk��]lxEM�r�^�꫒��T���K������k���7�N�m��������u�Zyǚ�%I0��o��k���iQ -�&��l�m��/ᠷ��?c��%$ĵ����0���p ��ߝ�cV�i�v�����y���]��Ǿ;%�>���I~�q%�+T`��;D�q�!��on2C��eIP�_�ղ̌O���C�R�Efe�bUWQ�]�⢾f�_��EF W� �('iy�Qel�������abř���>����L��YSYS"Bm���ODE��`G�o7��v�|��!#5�n�Um:�3B{���߳Kd1ŤI7=?8�k�5{�p�J��:6r?�&�O�w������7L��$�8r"�~�ڳ��.�b�g��q��^��G�f�� �7iw�u�گ��z�U��y�f�:�.V�J��0x��$Fu�Óon,��휊 7T|_�W�K���D=�~��a��٧q8w�`���٢�p�?_��Е�B��ۑQ^�7���`�fL���kN1J4η|2Ld�-�N��|�0բ�� ��^K �8dV}���i��֠%��9h+��aXe�~��S�L�a����ߑ�4p�He’��Ð����#����5oi�f����F�zL��r����0��k�,�N�ؤ!T`y%�����͜�4�x2Nܧ, �k9�Ǣ=I$N; -

CVE: Latest News

CVE-2023-50976: Transactions API Authorization by oleiman · Pull Request #14969 · redpanda-data/redpanda