Author: Angelo Barbosa

CVE-2023-6598 | SpeedyCache Plugin up to 1.1.3 on WordPress Options Update authorization

A vulnerability was found in SpeedyCache Plugin up to 1.1.3 on WordPress. It has been rated as problematic. Affected by this issue is some unknown functionality of the component Options Update Handler. The manipulation leads to missing authorization. This vulnerability is handled as CVE-2023-6598. The attack may be launched remotely. There is no exploit...

Read More

CVE-2023-41314 | Apache Doris up to 2.0.3 API get_log_file improper authentication

A vulnerability was found in Apache Doris up to 2.0.3. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /api/snapshot and /api/get_log_file of the component API. The manipulation leads to improper authentication. This vulnerability is known as CVE-2023-41314. The attack can only be done within the local network. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2023-50965 | starnight MicroHttpServer up to 4398570 URI lib/middleware.c _ReadStaticFiles stack-based overflow

A vulnerability was found in starnight MicroHttpServer up to 4398570. It has been classified as critical. Affected is the function _ReadStaticFiles in the library lib/middleware.c of the component URI Handler. The manipulation leads to stack-based buffer overflow. This vulnerability is traded as CVE-2023-50965. It is possible to launch the attack remotely. There is no exploit...

Read More

CVE-2023-50784 | UnrealIRCd up to 6.1.3 Websocket buffer overflow

A vulnerability was found in UnrealIRCd up to 6.1.3 and classified as critical. This issue affects some unknown processing of the component Websocket Handler. The manipulation leads to buffer overflow. The identification of this vulnerability is CVE-2023-50784. The attack may be initiated remotely. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2023-6902 | codelyfe Stupid Simple CMS up to 1.2.4 /file-manager/upload.php file unrestricted upload

A vulnerability has been found in codelyfe Stupid Simple CMS up to 1.2.4 and classified as critical. This vulnerability affects unknown code of the file /file-manager/upload.php. The manipulation of the argument file leads to unrestricted upload. This vulnerability was named CVE-2023-6902. Access to the local network is required for this attack. Furthermore, there is an exploit...

Read More