Böngésszen szolgáltatóknak szóló tartalmaink között.
2024. Aug. 7.
Riasztás
NA - CVE-2024-41239 - A Stored Cross Site Scripting (XSS)...
A Stored Cross Site Scripting (XSS) vulnerability was found in "/smsa/add_class_submit.php" in Kashipara Responsive School Management System v1.0, which allows remote attackers to execute arbitrary...
NA - CVE-2024-41912 - A vulnerability was discovered in the firmware...
A vulnerability was discovered in the firmware builds up to 10.10.2.2 in Poly Clariti Manager devices. The firmware flaw does not properly implement access controls.
NA - CVE-2024-6890 - Password reset tokens are generated using an...
Password reset tokens are generated using an insecure source of randomness. Attackers who know the username of the Journyx installation user can bruteforce the password reset and change the...
Attackers Use Multiple Techniques to Bypass Reputation-Based Security
Protections like Windows Smart App Control are useful but susceptible to attacks that allow threat actors initial access to an environment without triggering any alerts.