CVE-2022-31676 : VMWARE TOOLS 10.X.Y/11.X.Y/12.0.0 ACCESS CONTROL

Description

VMware Tools (12.0.0, 11.x.y and 10.x.y) contains a local privilege escalation vulnerability. A malicious actor with local non-administrative access to the Guest OS can escalate privileges as a root user in the virtual machine.

References

https://www.vmware.com/security/advisories/VMSA-2022-0024.html

http://www.openwall.com/lists/oss-security/2022/08/23/3

For More Information

MITRE

Common Vulnerabilityies and Exposures

Contact us to get started

CVE-2022-47767 : SOLAR-LOG GATEWAY UP TO 4.2.7/5.1.1 SLCORE BACKDOOR

CVE-2022-47767 : SOLAR-LOG GATEWAY UP TO 4.2.7/5.1.1 SLCORE BACKDOOR

Description A backdoor in Solar-Log Gateway products allows remote access via web panel gaining super administration privileges to the attacker.

CVE-2022-45808 : LEARNPRESS PLUGIN UP TO 4.1.7.3.2 ON WORDPRESS SQL INJECTION

CVE-2022-45808 : LEARNPRESS PLUGIN UP TO 4.1.7.3.2 ON WORDPRESS SQL INJECTION

Description SQL Injection vulnerability in LearnPress – WordPress LMS Plugin

CVE-2023-21795 : MICROSOFT EDGE REMOTE CODE EXECUTION

CVE-2023-21795 : MICROSOFT EDGE REMOTE CODE EXECUTION

Description Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2023-21796. References https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2023-21795 For More Information