Advisories
archive

Generic selectors
Exact matches only
Search in title
Search in content
Post Type Selectors

SSD Advisory – Samsung MagicINFO Unauthenticated RCE

Summary MagicINFO exposes an endpoint which: Wrapping all together it is possible to upload a JSP file to execute arbitrary server-side code without having a valid user. Credit An independent security researcher working with SSD

SSD Advisory – Calix Pre-Auth RCE

Summary A critical Remote Code Execution (RCE) vulnerability has been discovered on TCP port 6998. This vulnerability arises due to improper sanitation of user input in a CWMP (CPE WAN Management Protocol) service. Exploiting this

BTPanel MFA Bypass – Michael Torres

BTPanel, also known as BaoTa Panel or Pagoda Panel, is a web administration panel designed for use in the People’s Republic of China. The manufacturer’s website (bt[.]cn) claims 15 million active installations and 2 million

SSD Advisory – Linux kernel hfsplus slab-out-of-bounds Write

Summary This advisory describes an out-of-bounds write vulnerability in the Linux kernel that achieves local privilege escalation on Ubuntu 22.04 for active user sessions. Credit An independent security researcher working with SSD Secure Disclosure. Vendor

SSD Advisory – cldflt Heap-based Overflow (PE)

Summary A vulnerability allows local attackers to escalate privileges on affected installations of Microsoft Windows. To exploit this vulnerability, an attacker must first obtain the ability to execute low-privileged code on the target system. The

SSD Advisory – ksthunk.sys Integer Overflow (PE)

Summary A vulnerability in the ksthunk.sys CKSAutomationThunk::ThunkEnableEventIrp allows a local attacker to exploit an Integer Overflow vulnerability which can then be used to gain elevated privileges in the Windows operating system. The exploit was successfully

SSD Advisory – Common Log File System (CLFS) driver PE

Summary A vulnerability in the Common Log File System (CLFS) driver allows a local user to gain elevated privileges on Windows 11. The vulnerability is in the CClfsBaseFilePersisted::WriteMetadataBlock function, and is due to return value

SSD Advisory – Nortek Linear eMerge E3 Pre-Auth RCE

Summary A vulnerability in the Nortek Linear eMerge E3 allows remote unauthenticated attackers to cause the device to execute arbitrary commands. Credit An independent security researcher working with SSD Secure Disclosure Vendor Response The vendor

SSD Advisory – LANCOM LCOS Heap Overflow

Summary A vulnerability in LANCOM LCOS web interface (usually listening on port 443) allows a remote attacker to trigger a heap overflow in the service listening on this port. Credit An independent security researcher working

?

Get in touch

Skip to content