Author: Angelo Barbosa

CVE-2023-48715 | Enalean Tuleap Community Edition/Tuleap Enterprise Edition cross site scripting

A vulnerability, which was classified as problematic, was found in Enalean Tuleap Community Edition and Tuleap Enterprise Edition. This affects an unknown part. The manipulation leads to cross site scripting. This vulnerability is uniquely identified as CVE-2023-48715. It is possible to initiate the attack remotely. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2023-6624 | Import and Export Users and Customers Plugin up to 1.24.3 on WordPress Shortcode cross site scripting

A vulnerability, which was classified as problematic, has been found in Import and Export Users and Customers Plugin up to 1.24.3 on WordPress. Affected by this issue is some unknown functionality of the component Shortcode Handler. The manipulation leads to cross site scripting. This vulnerability is handled as CVE-2023-6624. The attack may be launched remotely. There is no exploit...

Read More

CVE-2023-6538 | Hitachi Vantara System Management Unit prior 14.8.7825.01 SMU Configuration Backup improper authorization

A vulnerability classified as critical has been found in Hitachi Vantara System Management Unit. Affected is an unknown function of the component SMU Configuration Backup Handler. The manipulation leads to improper authorization. This vulnerability is traded as CVE-2023-6538. It is possible to launch the attack remotely. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2023-6679 | Linux Kernel DPLL Subsystem dpll_netlink.c dpll_pin_parent_pin_set null pointer dereference

A vulnerability was found in Linux Kernel. It has been rated as problematic. This issue affects the function dpll_pin_parent_pin_set of the file drivers/dpll/dpll_netlink.c of the component DPLL Subsystem. The manipulation leads to null pointer dereference. The identification of this vulnerability is CVE-2023-6679. The attack needs to be initiated within the local network. There is no exploit available. It is recommended to apply a patch to fix this...

Read More