Posts tagged Vulnerability Disclosure

Threat Research
Multiple Vulnerabilities in Wowza Streaming Engine (Fixed)
Ryan Emmons

Exposure Management
CVE-2024-45195: Apache OFBiz Unauthenticated Remote Code Execution (Fixed)
Ryan Emmons

Exposure Management
CVE-2024-6922: Automation Anywhere Automation 360 Server-Side Request Forgery
Ryan Emmons

Vulnerabilities and Exploits
CVE-2024-4978: Backdoored Justice AV Solutions Viewer Software Used in Apparent Supply Chain Attack
Rapid7

Threat Research
CVE-2024-27198 and CVE-2024-27199: JetBrains TeamCity Multiple Authentication Bypass Vulnerabilities (FIXED)
Rapid7

Vulnerabilities and Exploits
CVE-2023-47218: QNAP QTS and QuTS Hero Unauthenticated Command Injection (FIXED)
Stephen Fewer

Vulnerabilities and Exploits
CVE-2023-5950 Rapid7 Velociraptor Reflected XSS
Dr. Mike Cohen
![Multiple Vulnerabilities in South River Technologies Titan MFT and Titan SFTP [FIXED]](/_next/image/?url=https%3A%2F%2Fimages.contentstack.io%2Fv3%2Fassets%2Fblte4f029e766e6b253%2Fblt1de2821d1eac3ffb%2F683ddc6570aa95f50bfe2f13%2Fvuln-disclosure-banner.jpeg&w=1920&q=75)
Vulnerabilities and Exploits
Multiple Vulnerabilities in South River Technologies Titan MFT and Titan SFTP [FIXED]
Ron Bowes

Vulnerabilities and Exploits
CVE-2023-4528: Java Deserialization Vulnerability in JSCAPE MFT (Fixed)
Ron Bowes

Exposure Management
CVE-2023-35082 - MobileIron Core Unauthenticated API Access Vulnerability
Stephen Fewer
![CVE-2023-38205: Adobe ColdFusion Access Control Bypass [FIXED]](/_next/image/?url=https%3A%2F%2Fimages.contentstack.io%2Fv3%2Fassets%2Fblte4f029e766e6b253%2Fbltaf44fc34b9d7f20b%2F683ddd3a65b8eafef0cc8b78%2FGettyImages-1185282377.jpg&w=1920&q=75)
Exposure Management
CVE-2023-38205: Adobe ColdFusion Access Control Bypass [FIXED]
Stephen Fewer

Exposure Management
CVE-2023-29298: Adobe ColdFusion Access Control Bypass
Stephen Fewer
![Multiple Vulnerabilities in Fortra Globalscape EFT Administration Server [FIXED]](/_next/image/?url=https%3A%2F%2Fimages.contentstack.io%2Fv3%2Fassets%2Fblte4f029e766e6b253%2Fblt1de2821d1eac3ffb%2F683ddc6570aa95f50bfe2f13%2Fvuln-disclosure-banner.jpeg&w=1920&q=75)
Exposure Management
Multiple Vulnerabilities in Fortra Globalscape EFT Administration Server [FIXED]
Ron Bowes

Vulnerabilities and Exploits
Raptor Technologies Volunteer Management Client-Side Security Controls (FIXED)
Rapid7

Vulnerabilities and Exploits
Multiple Vulnerabilities in Rocket Software UniRPC server (Fixed)
Ron Bowes

Vulnerabilities and Exploits
CVE-2023-0391: MGT-COMMERCE CloudPanel Shared Certificate Vulnerability and Weak Installation Procedures
Tod Beardsley

Vulnerabilities and Exploits
Microsoft Defender for Cloud Management Port Exposure Confusion
Tod Beardsley

Vulnerabilities and Exploits
Multiple DMS XSS (CVE-2022-47412 through CVE-20222-47419)
Tod Beardsley

Vulnerabilities and Exploits
CVE-2023-22374: F5 BIG-IP Format String Vulnerability
Ron Bowes

Vulnerabilities and Exploits
Refreshing Rapid7's Coordinated Vulnerability Disclosure Policy
Tod Beardsley

Vulnerabilities and Exploits
Cengage LTI Session Management Leakage
Tod Beardsley