[remote] Drupal < 7.58 – 'Drupalgeddon3' Authenticated Remote Code (Metasploit)

Drupal < 7.58 – 'Drupalgeddon3' Authenticated Remote Code (Metasploit)

[webapps] Nagios XI 5.2.[6-9], 5.3, 5.4 – Chained Remote Root

Nagios XI 5.2.[6-9], 5.3, 5.4 – Chained Remote Root

[webapps] WordPress Plugin Form Maker 1.12.20 – CSV Injection

WordPress Plugin Form Maker 1.12.20 – CSV Injection

[dos] macOS 10.13.2 – Double mach_port_deallocate in kextd due to Failure to Comply with MIG Ownership Rules

macOS 10.13.2 – Double mach_port_deallocate in kextd due to Failure to Comply with MIG Ownership Rules

[dos] Navicat < 12.0.27 – Oracle Connection Overflow

Navicat < 12.0.27 – Oracle Connection Overflow

[dos] macOS/iOS – ReportCrash mach port Replacement due to Failure to Respect MIG Ownership Rules

macOS/iOS – ReportCrash mach port Replacement due to Failure to Respect MIG Ownership Rules

TP-Link Technologies TL-WA850RE Wi-Fi Range Extender Unauthorized Remote Reboot

TP-Link Technologies TL-WA850RE Wi-Fi Range Extender suffers from an unauthorized remote reboot vulnerability.

Frog CMS 0.9.5 Cross Site Scripting

Frog CMS version 0.9.5 suffers from a persistent cross site scripting vulnerability.

Google Chrome V8 Arrow Function Scope Fixing Bug

Google Chrome V8 suffers from an arrow function scope fixing bug.

Shopy Point Of Sale 1.0 CSV Injection

Shopy Point of Sale version 1.0 suffers from a CSV injection vulnerability.