Tag: Mozi botnet
Form Tools 3.0.20 – Vulnerabilities – GitHub Pages
Related:
Nuishop 2.3 sql injection [CVE-2020-20675] – Cloud WAF
Related:
Vulnerability Details : CVE-2020-18476
Related:
Vulnerability Details : CVE-2021-38168
Related:
Cisco RV340, RV340W, RV345, and RV345P Dual WAN Gigabit VPN Routers Web Management Vulnerabilities
Multiple vulnerabilities in the web-based management interface of the Cisco Small Business RV340, RV340W, RV345, and RV345P Dual WAN Gigabit VPN Routers could allow an attacker to do the following:
- Execute arbitrary code
- Cause a denial of service (DoS) condition
- Execute arbitrary commands
For more information about these vulnerabilities, see the Details section of this advisory.
Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities.
This advisory is available at the following link:
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-rv340-cmdinj-rcedos-pY8J3qfy
Security Impact Rating: Critical
CVE: CVE-2021-1609,CVE-2021-1610
Related:
Patching Woes: CVEs Most Frequently Exploited Listed
Related:
Patching Woes: Most Frequently Exploited CVEs Listed
Related:
New post from (Oracle Database Server 10.1.0.5 sql injection [CVE-2007-2113] [D… – Bug Bounty …
Related:
Citrix advisory on Microsoft Windows Print Spooler Vulnerabilities (CVE-2021-34527 & CVE-2021-1675)
Note: that the security updates released on and after July 6, 2021 contain protections for CVE-2021-1675 and the additional remote code execution exploit in the Windows Print Spooler service known as “PrintNightmare”, documented in CVE-2021-34527.