Aggregator
Submit #742633: Zentao PMS <=21.7.6-85642 SSRF [Accepted]
17 hours 23 minutes ago
Submit #742633 / VDB-344264
ez-lbz
EDR killer tool uses signed kernel driver from forensic software
17 hours 24 minutes ago
Hackers are abusing a legitimate but long-revoked EnCase kernel driver in an EDR killer that can detect 59 security tools in attempts to deactivate them. [...]
Bill Toulas
CVE-2023-39542 | Foxit Reader 12.1.3.15356 Javascript saveAs API file inclusion (TALOS-2023-1832)
17 hours 28 minutes ago
A vulnerability was found in Foxit Reader 12.1.3.15356 and classified as critical. This affects an unknown function of the component Javascript saveAs API. Executing a manipulation can lead to file inclusion.
This vulnerability is handled as CVE-2023-39542. The attack can be executed remotely. There is not any exploit available.
It is suggested to upgrade the affected component.
vuldb.com
CVE-2023-40194 | Foxit Reader 12.1.3.15356 Javascript exportDataObject API file inclusion (TALOS-2023-1833)
17 hours 28 minutes ago
A vulnerability categorized as critical has been discovered in Foxit Reader 12.1.3.15356. Affected by this issue is some unknown functionality of the component Javascript exportDataObject API. Such manipulation leads to file inclusion.
This vulnerability is referenced as CVE-2023-40194. It is possible to launch the attack remotely. No exploit is available.
It is advisable to upgrade the affected component.
vuldb.com
CVE-2023-35985 | Foxit Reader 12.1.3.15356 Javascript exportDataObject API file inclusion (TALOS-2023-1834)
17 hours 28 minutes ago
A vulnerability was found in Foxit Reader 12.1.3.15356. It has been declared as critical. Affected is an unknown function of the component Javascript exportDataObject API. The manipulation results in file inclusion.
This vulnerability was named CVE-2023-35985. The attack may be performed from remote. There is no available exploit.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-32616 | Foxit Reader 12.1.3.15356 3D Annotation use after free (TALOS-2023-1837)
17 hours 29 minutes ago
A vulnerability was found in Foxit Reader 12.1.3.15356. It has been classified as critical. This impacts an unknown function of the component 3D Annotation Handler. The manipulation leads to use after free.
This vulnerability is uniquely identified as CVE-2023-32616. The attack is possible to be carried out remotely. No exploit exists.
Upgrading the affected component is recommended.
vuldb.com
CVE-2021-27033 | Autodesk Design Review PDF File double free
17 hours 30 minutes ago
A vulnerability, which was classified as critical, has been found in Autodesk Design Review. The impacted element is an unknown function of the component PDF File Handler. This manipulation causes double free.
This vulnerability is tracked as CVE-2021-27033. The attack is possible to be carried out remotely. No exploit exists.
It is advisable to upgrade the affected component.
vuldb.com
CVE-2021-27039 | Autodesk 2011/2012/2013/2017/2018 TIFF File buffer overflow
17 hours 30 minutes ago
A vulnerability labeled as critical has been found in Autodesk 2011/2012/2013/2017/2018. This affects an unknown part of the component TIFF File Handler. Such manipulation leads to buffer overflow.
This vulnerability is uniquely identified as CVE-2021-27039. The attack can be launched remotely. No exploit exists.
The affected component should be upgraded.
vuldb.com
CVE-2021-27034 | Autodesk 2011/2012/2013/2017/2018 PICT File heap-based overflow
17 hours 31 minutes ago
A vulnerability, which was classified as critical, was found in Autodesk 2011/2012/2013/2017/2018. This affects an unknown function of the component PICT File Handler. Such manipulation leads to heap-based buffer overflow.
This vulnerability is listed as CVE-2021-27034. The attack may be performed from remote. There is no available exploit.
You should upgrade the affected component.
vuldb.com
CVE-2021-27038 | Autodesk 2011/2012/2013/2017/2018 PDF File type confusion
17 hours 31 minutes ago
A vulnerability identified as critical has been detected in Autodesk 2011/2012/2013/2017/2018. This issue affects some unknown processing of the component PDF File Handler. Performing a manipulation results in type confusion.
This vulnerability is known as CVE-2021-27038. Remote exploitation of the attack is possible. No exploit is available.
You should upgrade the affected component.
vuldb.com
CVE-2021-27037 | Autodesk 2011/2012/2013/2017/2018 File double free
17 hours 31 minutes ago
A vulnerability identified as critical has been detected in Autodesk 2011/2012/2013/2017/2018. Affected by this issue is some unknown functionality of the component File Handler. This manipulation causes double free.
This vulnerability is handled as CVE-2021-27037. The attack can be initiated remotely. There is not any exploit available.
You should upgrade the affected component.
vuldb.com
CVE-2021-27036 | Autodesk 2011/2012/2013/2017/2018 File buffer overflow
17 hours 31 minutes ago
A vulnerability has been found in Autodesk 2011/2012/2013/2017/2018 and classified as critical. This impacts an unknown function of the component File Handler. Performing a manipulation results in buffer overflow.
This vulnerability is cataloged as CVE-2021-27036. It is possible to initiate the attack remotely. There is no exploit available.
The affected component should be upgraded.
vuldb.com
CVE-2021-27035 | Autodesk 2011/2012/2013/2017/2018 File buffer overflow
17 hours 31 minutes ago
A vulnerability categorized as critical has been discovered in Autodesk 2011/2012/2013/2017/2018. Affected by this vulnerability is an unknown functionality of the component File Handler. The manipulation results in buffer overflow.
This vulnerability is known as CVE-2021-27035. It is possible to launch the attack remotely. No exploit is available.
It is advisable to upgrade the affected component.
vuldb.com
CVE-2022-33889 | Autodesk Design Review/AutoCAD GIF heap-based overflow
17 hours 32 minutes ago
A vulnerability was found in Autodesk Design Review and AutoCAD. It has been rated as critical. This affects an unknown function of the component GIF Handler. The manipulation leads to heap-based buffer overflow.
This vulnerability is traded as CVE-2022-33889. It is possible to initiate the attack remotely. There is no exploit available.
Upgrading the affected component is advised.
vuldb.com
China-Linked Amaranth-Dragon Exploits WinRAR Flaw in Espionage Campaigns
17 hours 32 minutes ago
Threat actors affiliated with China have been attributed to a fresh set of cyber espionage campaigns targeting government and law enforcement agencies across Southeast Asia throughout 2025.
Check Point Research is tracking the previously undocumented activity cluster under the moniker Amaranth-Dragon, which it said shares links to the APT 41 ecosystem. Targeted countries include Cambodia,
The Hacker News
CVE-2020-3941 | VMware Tools up to 11 on Windows race condition
17 hours 33 minutes ago
A vulnerability, which was classified as critical, was found in VMware Tools up to 11 on Windows. Affected is an unknown function. Such manipulation leads to race condition.
This vulnerability is referenced as CVE-2020-3941. It is possible to launch the attack remotely. No exploit is available.
You should upgrade the affected component.
vuldb.com
CVE-2012-5639 | LibreOffice/OpenOffice up to 4.1.14 Embedded Content input validation
17 hours 33 minutes ago
A vulnerability was found in LibreOffice and OpenOffice up to 4.1.14. It has been rated as critical. Affected is an unknown function of the component Embedded Content Handler. This manipulation causes improper input validation.
This vulnerability appears as CVE-2012-5639. The attack may be initiated remotely. There is no available exploit.
Upgrading the affected component is advised.
vuldb.com
Akira
17 hours 33 minutes ago
You must login to view this content
cohenido
Akira
17 hours 33 minutes ago
You must login to view this content
cohenido