Security
Headlines
HeadlinesLatestCVEs

Tag

#windows

CVE-2023-37598: GitHub - sahiloj/CVE-2023-37598: CSRF vulnerability in issabel-pbx v.4.0.0-6 to delete any new virtual fax of users

A Cross Site Request Forgery (CSRF) vulnerability in issabel-pbx v.4.0.0-6 allows a remote attacker to cause a denial of service via the delete new virtual fax function.

CVE
#csrf#vulnerability#windows#dos#git#php#auth
CVE-2022-42045: GitHub - ReCryptLLC/CVE-2022-42045

Certain Zemana products are vulnerable to Arbitrary code injection. This affects Watchdog Anti-Malware 4.1.422 and Zemana AntiMalware 3.2.28.

QR codes are relevant again for everyone from diners to threat actors

QR codes have always served as a way for bad actors to spread malware or even your friendly neighborhood prankster to share Rick Astley’s most famous music video.

Uncovering weaknesses in Apple macOS and VMWare vCenter: 12 vulnerabilities in RPC implementation

Uncovered issues fall into use-after-free, buffer-overflow, information leak and denial of service vulnerability classes. Some of these could be combined to achieve remote code execution or privilege escalation.

BloodBank 1.0 Insecure Direct Object Reference

BloodBank version 1.0 suffers from an insecure direct object reference vulnerability.

Bloly 1.3 Add Administrator

Bloly version 1.3 suffers from an add administrator vulnerability.

BKMobile CMS 1.5.0 SQL Injection

BKMobile CMS version 1.5.0 suffers from a remote blind SQL injection vulnerability.

Blogator Script 0.93 Insecure Settings

Blogator Script version 0.93 appears to leave default credentials installed after installation.

Blackboard 2.0.2 Database Disclosure

Blackboard version 2.0.2 suffers from a database disclosure vulnerability.

Malwarebytes stops 100% of Advanced Threats in latest AV-Test assessment

Categories: Business The test evaluates products against the latest techniques used by data stealers and ransomware. (Read more...) The post Malwarebytes stops 100% of Advanced Threats in latest AV-Test assessment appeared first on Malwarebytes Labs.