Autore: Angelo Barbosa

CVE-2023-49587 | SAP Solution Manager 720 command injection

A vulnerability classified as critical has been found in SAP Solution Manager 720. This affects an unknown part. The manipulation leads to command injection. This vulnerability is uniquely identified as CVE-2023-49587. It is possible to initiate the attack remotely. There is no exploit available. It is recommended to apply a patch to fix this...

Per saperne di più

CVE-2020-12613 | BeyondTrust Privilege Management up to 5.6 on Windows Security Token dropped privileges

A vulnerability was found in BeyondTrust Privilege Management up to 5.6 on Windows. It has been rated as critical. Affected by this issue is some unknown functionality of the component Security Token Handler. The manipulation leads to improper check for dropped privileges. This vulnerability is handled as CVE-2020-12613. The attack needs to be done within the local network. There is no exploit available. It is recommended to upgrade the affected...

Per saperne di più

CVE-2023-49805 | louislam uptime-kuma up to 1.23.8 environment missing origin validation in websockets (GHSA-mj22-23ff-2hrr)

A vulnerability was found in louislam uptime-kuma up to 1.23.8. It has been declared as problematic. Affected by this vulnerability is an unknown functionality. The manipulation of the argument environment leads to missing origin validation in websockets. This vulnerability is known as CVE-2023-49805. The attack can be launched remotely. There is no exploit available. It is recommended to upgrade the affected...

Per saperne di più