Severity High Analysis Summary CVE-2020-7569 An unrestricted upload of a file with dangerous type vulnerability could allow an authenticated remote user to upload arbitrary files due […]
Severity Medium Analysis Summary CVE-2020-14504 The web interface of the 1734-AENTR communication module mishandles authentication for HTTP POST requests. A remote, unauthenticated attacker can send a […]
Severity High Analysis Summary CVE-2021-21353 Node.js pug and pug-code-gen could allow a remote attacker to execute arbitrary code on the system, caused by improper input validation […]
Severity Medium Analysis Summary CVE-2021-1410 Cisco Webex Meetings could allow a remote authenticated attacker to bypass security restrictions, caused by improper authorization enforcement for requests to […]
Severity Medium Analysis Summary CVE-2021-25252 Trend Micro Scan Engines are vulnerable to a denial of service, caused by a memory exhaustion flaw. By persuading a victim […]
Severity High Analysis Summary Google chrome has released another patch for the actively exploited bug and says it is being abused in the wild. The vulnerability […]
Severity High Analysis Summary CVE-2021-21978 Improper input validation and lack of authorization leading to arbitrary file upload in logupload web application. An unauthorized attacker with network […]
Severity High Analysis Summary Microsoft has released four emergency patches for Microsoft Exchange Server to address vulnerabilities that have been used in limited targeted attacks. Undisclosed vulnerabilities are being actively […]
Severity High Analysis Summary Active in-the-wild exploitation of multiple Microsoft Exchange vulnerabilities is seen, in an attempt to steal e-mail and compromise networks. In this campaign, […]