A 2024. 34. hetére vonatkozó hírválogatás, amely az NBSZ NKI által 2024.08.16. és 2024.08.22. között kezelt incidensek statisztikai adatait is tartalmazza.
Cisco Identity Services Engine REST API Blind SQL Injection Vulnerabilities
Multiple vulnerabilities in the REST API of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to conduct blind SQL injection attacks.
These vulnerabilities are due to insufficient validation of user-supplied...
NA - CVE-2024-7954 - The porte_plume plugin used by SPIP before...
The porte_plume plugin used by SPIP before 4.30-alpha2, 4.2.13, and 4.1.16 is vulnerable to an arbitrary code execution vulnerability. A remote and unauthenticated attacker can execute arbitrary...