A vulnerability exists within Microsoft's SQL Server Reporting Services which can allow an attacker to craft an HTTP POST request with a serialized object to achieve remote code execution. The vulnerability is due to the fact that the serialized blob is not signed by the server.
6a7a492f2dc70d4a79f4f4220d5e1a617458fbab09046134c7b6d7f120a2b5aa
Chrome suffers from a site isolation bypass in BlobURLStoreImpl::Register.
83742192bfebec5fac11ec3839dfe22f0b0f8001efd65e7bb7eb1d0f27c376e7
Gentoo Linux Security Advisory 202003-2 - Multiple vulnerabilities have been found in Mozilla Firefox, the worst of which may allow execution of arbitrary code. Versions less than 68.6.0 are affected.
4a3a64b36591f6d0a1c27da9abbfe2f11b8739c200ebb1844cc7866106d27e08
Gentoo Linux Security Advisory 202003-1 - A vulnerability within serialization might allow remote attackers to execute arbitrary code. Versions less than or equal to 2.4.5 are affected.
33c538571f2ce57d177a1e8b9e96e1c96771776dedd2a89e56e50e88e2fbd8e2
Red Hat Security Advisory 2020-0813-01 - Red Hat JBoss Enterprise Application Platform 7 is a platform for Java applications based on the WildFly application runtime. This asynchronous patch is a security update for the Undertow package in Red Hat JBoss Enterprise Application Platform 7.2 for Red Hat Enterprise Linux 6, 7, and 8. A file read vulnerability has been addressed.
69664da56adb189a856829f8c95892ce70bbdd91f67e285be7cc70c23644bf1e
Red Hat Security Advisory 2020-0804-01 - This release of Red Hat JBoss Enterprise Application Platform 7.2.7 serves as a replacement for Red Hat JBoss Enterprise Application Platform 7.2.6, and includes bug fixes and enhancements. Issues addressed include an out-of-bounds read and HTTP response smuggling.
38f8c8af4ba50c7e0be81c9c2e85755146bedbb15f38c6a4b654caf2975f6a05
Ubuntu Security Notice 4299-1 - Multiple security issues were discovered in Firefox. If a user were tricked in to opening a specially crafted website, an attacker could potentially exploit these to cause a denial of service, spoof the URL or other browser chrome, obtain sensitive information, bypass Content Security Policy protections, or execute arbitrary code. Various other issues were also addressed.
c9548579e92878dc15ae18f4f30497be227fdb843c5b78b9bfb1684b48b215b8
Horde Groupware Webmail Edition version 5.2.22 suffers from a PHP file inclusion vulnerability.
e09fc78ac1978bc60f8c74272465dc377212ec4df18d43494b7595391c130b02
Horde Groupware Webmail Edition version 5.2.22 suffers from a PHAR loading vulnerability.
62ec2c9073799c623bbe9b4c78815ab902ee4f55051f070f8a35acd4c921b964
WatchGuard Fireware AD Helper component version 5.8.5.10317 suffers from a credential disclosure vulnerability.
cfbee51273ef73367944d82ca084be4b103d6aab09abcbf6dc6c01479d58b251
AtMail WebMail versions 4.61 and below suffer from an open redirection vulnerability.
e98f3482bcb28b5fc85e0687acfe6be3488d7802675e80b7a8ca0b8b8e57628d
Red Hat Security Advisory 2020-0812-01 - Red Hat JBoss Enterprise Application Platform 7 is a platform for Java applications based on the WildFly application runtime. This asynchronous patch is a security update for the Undertow package in Red Hat JBoss Enterprise Application Platform 7.2.
0e9903b6c1f06d4e0d1011261637f4450e7707e75c5ff20ed30be115e92c9194
Red Hat Security Advisory 2020-0790-01 - The kernel packages contain the Linux kernel, the core of any Linux operating system. Issues addressed include a buffer overflow vulnerability.
3b95ae52485573b0d58def464e6cb57669ff966d5368774e8b6ffa8748f5ae2b
WordPress Appointment Booking Calendar plugin version 1.3.34 suffers from a CSV injection vulnerability.
8901cadcbcfe9a8feae646bdae78309de9f0a6e07e4f3616b6d12c1fe85412ba
Red Hat Security Advisory 2020-0805-01 - This release of Red Hat JBoss Enterprise Application Platform 7.2.7 serves as a replacement for Red Hat JBoss Enterprise Application Platform 7.2.6, and includes bug fixes and enhancements. Issues addressed include an out-of-bounds read and HTTP response smuggling.
413da814d98d1956bc538ff7b729936c0bbde62fdc992b8e1a3c16b77847a3e0
Red Hat Security Advisory 2020-0806-01 - This release of Red Hat JBoss Enterprise Application Platform 7.2.7 serves as a replacement for Red Hat JBoss Enterprise Application Platform 7.2.6, and includes bug fixes and enhancements. Issues addressed include HTTP response smuggling.
6d80cde473c1888acc3a5a6d12d190e079a6f4830559f4cf1e8dd913037abea1
Red Hat Security Advisory 2020-0811-01 - This release of Red Hat JBoss Enterprise Application Platform 7.2.7 serves as a replacement for Red Hat JBoss Enterprise Application Platform 7.2.6, and includes bug fixes and enhancements. Issues addressed include an out-of-bounds read.
364306a4d24df896f45dc0d649d91e393c57d4ed0cb42ac9fc83fb92fed5e29b
HRSALE version 1.1.8 suffers from a cross site request forgery vulnerability.
3c0e1006da6ed424473ddc466553ea4ec9ccc9221ceca5d41ec112c9350231f2
ASUS AAHM version 1.00.22 suffers from an asHmComSvc unquoted service path vulnerability.
7061a92b5d851ade994bca58f7bebc8788b9504cb2b12282bffdd7251c45a92c