GetSimple CMS 3.3.4 – Information Disclosure
>> ARCHIVE: 2021-06
GetSimple CMS 3.3.4 – Information Disclosure
Apache Airflow 1.10.10 – ‘Example Dag’ Remote Code Execution
Multiple Korenix products are affected by unauthenticated device administration, backdoor accounts, cross site request forgery, unauthenticated tftp actions, and command injection vulnerabilities. Products affected include JetNet 5428G-20SFP, JetNet 5810G, JetNet…
Trojan.Win32.Scar.dulk malware suffers from an insecure permissions vulnerability.
Backdoor.Win32.NerTe.772 malware suffers from bypass and code execution vulnerabilities.
Backdoor.Win32.NerTe.772 malware suffers from a code execution vulnerability.
Backdoor.Win32.Netbus.12 malware suffers from an information leakage vulnerability.
Backdoor.Win32.NetControl2.293 malware suffers from a code execution vulnerability.
Backdoor.Win32.Whirlpool.a malware suffers from a buffer overflow vulnerability.
PHP version 8.1.0-dev unauthenticated remote command execution proof of concept exploit that leverages the backdoor.