Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Daveysec

#15804de 53,632
17.1CVSS total
Vulnerabilidades · 2
Alta
2
PT-2019-10120
7.8
2019-03-13
Microvirt · Memu · CVE-2018-20621
Name of the Vulnerable Software and Affected Versions: Microvirt MEmu version 6.0.6 Description: An issue was discovered in Microvirt MEmu. The MemuService.exe service binary is vulnerable to local privilege escalation through binary planting due to insecure permissions set at install time. This allows code to be run as NT AUTHORITY/SYSTEM. Recommendations: For Microvirt MEmu version 6.0.6, consider restricting access to the MemuService.exe service binary to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2018-11769
9.3
2018-04-25
Apache · Apache Tika · CVE-2018-1335
**Name of the Vulnerable Software and Affected Versions** Apache Tika versions 1.7 through 1.17 **Description** The issue allows clients to send specially crafted headers to the tika-server, potentially injecting commands into the server's command line. This affects servers running tika-server and exposed to untrusted clients. **Recommendations** For Apache Tika versions 1.7 through 1.17, upgrade to Tika 1.18 to resolve the issue.