‘Nederland telt ruim tweehonderd kwetsbare rsync-servers, wereldwijd 17.000’

‘Nederland telt ruim tweehonderd kwetsbare rsync-servers, wereldwijd 17.000’ Nederland telt ruim tweehonderd servers die een kwetsbare versie van rsync draaien. Wereldwijd gaat het om ruim 17.000 installaties, zo stelt The Shadowserver Foundation op basis van eigen onderzoek. … Read more Published Date: Jan 17, 2025 (1 hour, 25 minutes ago) Vulnerabilities has been mentioned in this article. […]

CVE-2024-12476 – Adobe Web Designer XXE Injection

The following table lists the changes that have been made to the CVE-2024-12476 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 17, 2025 Action […]

CVE-2024-13378 – “Gravity Forms Stored Cross-Site Scripting Vulnerability”

CVE ID : CVE-2024-13378 Published : Jan. 17, 2025, 10:15 a.m. | 31 minutes ago Description : The Gravity Forms plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘style_settings’ parameter in versions 2.9.0.1 up to, and including, 2.9.1.3 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers […]

CVE-2024-13377 – “Gravity Forms Stored Cross-Site Scripting (XSS)”

CVE ID : CVE-2024-13377 Published : Jan. 17, 2025, 10:15 a.m. | 31 minutes ago Description : The Gravity Forms plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘alt’ parameter in all versions up to, and including, 2.9.1.3 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers […]

CVE-2024-12399 – “Rockwell Automations HMI Untrusted Transmission Integrity Vulnerability”

The following table lists the changes that have been made to the CVE-2024-12399 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 17, 2025 Action […]

Mercedes-Benz Head Unit security research report

Mercedes-Benz Head Unit security research report Introduction This report covers the research of the Mercedes-Benz Head Unit, which was made by our team. Mercedes-Benz’s latest Head Unit (infotainment system) is called Mercedes-Benz User Experience … Read more Published Date: Jan 17, 2025 (45 minutes ago) Vulnerabilities has been mentioned in this article.

CVE-2024-9042 impacts Kubernetes Windows Worker Nodes

CVE-2024-9042 impacts Kubernetes Windows Worker Nodes CVE-2024-9042 is a medium-severity security vulnerability discovered in Kubernetes Windows worker nodes. This vulnerability affects the Kubelet component and has significant implications for the secur … Read more Published Date: Jan 17, 2025 (45 minutes ago) Vulnerabilities has been mentioned in this article.

CVE-2024-12370 – WordPress Hotel Booking Unauthorized Data Modification Vuln

CVE ID : CVE-2024-12370 Published : Jan. 17, 2025, 9:15 a.m. | 27 minutes ago Description : The WP Hotel Booking plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check when adding rooms in all versions up to, and including, 2.1.5. This makes it possible for unauthenticated attackers to […]

CVE-2024-11425 – Apache Webserver Buffer Overflow Vulnerability

The following table lists the changes that have been made to the CVE-2024-11425 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 17, 2025 Action […]

CVE-2024-11139 – Autodesk AutoCAD Buffer Overflow Vulnerability

The following table lists the changes that have been made to the CVE-2024-11139 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 17, 2025 Action […]