Multiple Apache Tomcat vulnerabilities

Multiple Apache Tomcat vulnerabilities Security Advisory Security Advisory Description CVE-2013-1976 The (1) tomcat5, (2) tomcat6, and (3) tomcat7 init scripts, as used in the RPM distribution of ... More info: https://support.f5.com/csp/article/K20038622?utm_source=f5support&utm_medium=RSS

glibc vulnerability CVE-2020-1751

glibc vulnerability CVE-2020-1751 Security Advisory Security Advisory Description An out-of-bounds write vulnerability was found in glibc before 2.31 when handling signal trampolines on PowerPC. More info: https://support.f5.com/csp/article/K51317292?utm_source=f5support&utm_medium=RSS

glibc vulnerability CVE-2020-1751

glibc vulnerability CVE-2020-1751 Security Advisory Security Advisory Description An out-of-bounds write vulnerability was found in glibc before 2.31 when handling signal trampolines on PowerPC. More info: https://support.f5.com/csp/article/K51317292?utm_source=f5support&utm_medium=RSS

Node.js vulnerability CVE-2020-8174

Node.js vulnerability CVE-2020-8174 Security Advisory Security Advisory Description napi_get_value_string_*() allows various kinds of memory corruption in node < 10.21.0, 12.18.0, and < 14.4.0. ( ... More info: https://support.f5.com/csp/article/K19380843?utm_source=f5support&utm_medium=RSS

Node.js vulnerability CVE-2020-8174

Node.js vulnerability CVE-2020-8174 Security Advisory Security Advisory Description napi_get_value_string_*() allows various kinds of memory corruption in node < 10.21.0, 12.18.0, and < 14.4.0. ( ... More info: https://support.f5.com/csp/article/K19380843?utm_source=f5support&utm_medium=RSS

Linux kernel vulnerability CVE-2020-12657

Linux kernel vulnerability CVE-2020-12657 Security Advisory Security Advisory Description An issue was discovered in the Linux kernel before 5.6.5. There is a use-after-free in block/bfq-iosched.c ... More info: https://support.f5.com/csp/article/K96414292?utm_source=f5support&utm_medium=RSS

Critical Vulnerability Exposes over 700,000 Sites Using Divi, Extra, and Divi Builder

On July 23, 2020, our Threat Intelligence team discovered a vulnerability present in two themes by Elegant Themes, Divi and Extra, as well as Divi Builder, a WordPress plugin. Combined, these products are installed on an estimated 700,000 sites. This flaw gave authenticated attackers, with contributor-level or above capabilities, the ability to upload arbitrary files, […] More info: https://www.wordfence.com/blog/2020/08/critical-vulnerability-exposes-over-700000-sites-using-divi-extra-and-divi-builder/

WordPress Security Updates: July 2020

This monthly report is provided for the WordPress community at large from Pagely’s head of security, Robert Rowley. Rowley and the entire security team keep their finger on the pulse […] More info: https://pagely.com/blog/wordpress-security-updates-july-2020/

The Official Facebook Chat Plugin Created Vector for Social Engineering Attacks

On June 26, 2020, our Threat Intelligence team discovered a vulnerability in The Official Facebook Chat Plugin, a WordPress plugin installed on over 80,000 sites. This flaw made it possible for low-level authenticated attackers to connect their own Facebook Messenger account to any site running the vulnerable plugin and engage in chats with site visitors […] More info: https://www.wordfence.com/blog/2020/08/the-official-facebook-chat-plugin-created-vector-for-social-engineering-attacks/
Translate »