Tag
#webkit
The issue was addressed with improved bounds checks. This issue is fixed in iOS 16.2 and iPadOS 16.2, macOS Ventura 13.1, tvOS 16.2. Connecting to a malicious NFS server may lead to arbitrary code execution with kernel privileges.
SOUND4 IMPACT/FIRST/PULSE/Eco versions 2.x and below suffers from an insufficient session expiration vulnerability.
Without many details, Apple patches a vulnerability that has been exploited in the wild to execute code.
Apple on Tuesday rolled out security updates to iOS, iPadOS, macOS, tvOS, and Safari web browser to address a new zero-day vulnerability that could result in the execution of malicious code. Tracked as CVE-2022-42856, the issue has been described by the tech giant as a type confusion issue in the WebKit browser engine that could be triggered when processing specially crafted content, leading to
The approve parameter from the AeroCMS-v0.0.1 CMS system is vulnerable to SQL injection attacks.
AeroCMS v0.0.1 is vulnerable to Cross Site Request Forgery (CSRF).
AeroCMS v0.0.1 is vulnerable to SQL Injection via the delete parameter.
Tenda W20E V16.01.0.6(3392) is vulnerable to Command injection via cmd_get_ping_output.
Tenda W20E V16.01.0.6(3392) is vulnerable to Buffer Overflow.
Senayan Library Management System version 9.0.0 suffers from a cross site scripting vulnerability.