Severity Medium Analysis Summary CVE-2021-20517 IBM WebSphere Application Server Network Deployment could allow a remote authenticated attacker to traverse directories. An attacker could send a specially-crafted […]
Severity Medium Analysis Summary CVE-2020-35513 A flaw incorrect umask during file or directory modification in the Linux kernel NFS (network file system) functionality was found in […]
Severity High Analysis Summary CVE-2021-29447 An XXE vulnerability exists in WordPress Core. The vulnerability is due to insufficient validation of XML data when parsing RIFF WAV […]
Severity High Analysis Summary TrickBot is a banking Trojan that targets sensitive information and acts as a dropper for other malware. Trickbot is usually spread via […]
Severity Medium Analysis Summary FormBook is an information-stealer malware that has been active since 2016. The info-stealer malware’s capabilities include stealing credentials, capturing screenshots of victim’s […]
Severity Medium Analysis Summary The NanoCore remote access Trojan (RAT) was first discovered in 2013 when it was being sold in underground forums. The malware has […]
Severity Medium Analysis Summary CVE-2021-32641 Node.js auth0-lock module is vulnerable to cross-site scripting, caused by improper validation of user-supplied input by the flashMessages and languageDictionary features. […]
Severity Medium Analysis Summary AZORult is a payment card and credential information stealer. It was sold on Russian underground forums as a means to collect sensitive […]
Severity High Analysis Summary Social Engineering is a cybersecurity umbrella term consisting of all types of attacks that use human interaction and social skills to obtain […]