A vulnerability was found in CLI 1.0.0 on Amazon AWS OpenSearch. It has been declared as critical. This vulnerability affects an unknown functionality of the component Configuration File Handler. Applying the patch 69dc712d0d0d05dc2bc2bd0d733c73e3641b633a is able to eliminate this problem. The bugfix is ready for download at github.com.
CLI 1.0.0 on Amazon AWS OpenSearch Configuration File permission
- Virtual Patching
- December 12, 2021
- 5:14 pm
CVE-2022-32405 : SOURCECODESTER PRISON MANAGEMENT SYSTEM 1.0 VIEW_PRISON.PHP ID SQL INJECTION
Description Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the ‘id’ parameter at /pms/admin/prisons/view_prison.php:4 References
CVE-2022-20651 : CISCO ADAPTIVE SECURITY DEVICE MANAGER LOG FILE
Description A vulnerability in the logging component of Cisco Adaptive Security Device Manager (ASDM) could allow an authenticated, local attacker
CVE-2022-32549 : APACHE SLING COMMONS LOG/SLING API NEUTRALIZATION FOR LOGS
Description Apache Sling Commons Log