Tag : 2024-09-19

3 attack reports | 43 vulnerabilities

Attack Reports

Title Published Tags Description Number of indicators
WebDAV-as-a-Service: Uncovering the infrastructure behind Emmenhtal loader distribution - Sekoia.io Blog Sept. 19, 2024, 7:34 p.m. The Emmenhtal loader, also known as PeakLight, operates in a memory-only manner, making it difficult to detect and analyse. It is… 120
SambaSpy – a new RAT targeting Italian users Sept. 19, 2024, 7:35 a.m. A campaign exclusively targeting Italian users was detected in May 2024, delivering a new Remote Access Trojan (RAT) dubbed Samba… 24
Gleaming Pisces Poisoned Python Packages Campaign Delivers PondRAT Linux and MacOS Backdoors Sept. 19, 2024, 7:33 a.m. Unit 42 researchers have uncovered an ongoing campaign involving poisoned Python packages that deliver Linux and macOS backdoors.… 16

Vulnerabilities

CVE CVSS Published Product impacted Tags
CVE-2024-33109 9.9 Sept. 19, 2024, 7:15 p.m. LOGO-VULNERABLETiptel IP 286
CVE-2024-46946 9.8 Sept. 19, 2024, 5:15 a.m. LOGO-VULNERABLELangChain Experimental
CVE-2024-8963 9.4 Sept. 19, 2024, 6:15 p.m. LOGO-VULNERABLEIvanti CSA
CVE-2024-7736 8.7 Sept. 19, 2024, 4:15 p.m. LOGO-VULNERABLEENOVIA Collaborative Industry Innovator
CVE-2024-7737 8.7 Sept. 19, 2024, 4:15 p.m. LOGO-VULNERABLE3DSwym
CVE-2024-45752 8.5 Sept. 19, 2024, 4:15 p.m. LOGO-VULNERABLElogiops
CVE-2024-46394 8.0 Sept. 19, 2024, 2:15 p.m. LOGO-VULNERABLEFrogCMS
CVE-2024-38016 7.8 Sept. 19, 2024, 5:15 p.m. LOGO-VULNERABLEMicrosoft Office Visio
CVE-2024-8698 7.7 Sept. 19, 2024, 4:15 p.m. LOGO-VULNERABLEKeycloak
CVE-2024-40125 7.3 Sept. 19, 2024, 7:15 p.m. LOGO-VULNERABLEClosed-Loop Technology CLESS Server
CVE-2024-8883 6.8 Sept. 19, 2024, 4:15 p.m. LOGO-VULNERABLEKeycloak
CVE-2024-46382 6.5 Sept. 19, 2024, 1:15 p.m. LOGO-VULNERABLElinlinjava litemall
CVE-2024-43489 6.5 Sept. 19, 2024, 9:15 p.m. LOGO-VULNERABLEMicrosoft Edge (Chromium-based)
CVE-2024-43496 6.5 Sept. 19, 2024, 9:15 p.m. LOGO-VULNERABLEMicrosoft Edge
CVE-2024-8364 6.4 Sept. 19, 2024, 4:15 a.m. LOGO-VULNERABLEWP Custom Fields Search plugin for WordPress
CVE-2024-9001 6.3 Sept. 19, 2024, 8:15 p.m. LOGO-VULNERABLETOTOLINK T10
CVE-2024-9004 6.3 Sept. 19, 2024, 9:15 p.m. LOGO-VULNERABLED-Link DAR-7000
CVE-2024-8850 6.1 Sept. 19, 2024, 4:15 a.m. LOGO-VULNERABLEMC4WP: Mailchimp for WordPress plugin
CVE-2024-45769 5.5 Sept. 19, 2024, 9:15 a.m. LOGO-VULNERABLEPerformance Co-Pilot (PCP)
CVE-2022-4533 5.3 Sept. 19, 2024, 4:15 a.m. LOGO-VULNERABLELimit Login Attempts Plus plugin for WordPress
CVE-2024-8354 4.7 Sept. 19, 2024, 11:15 a.m. LOGO-VULNERABLEQEMU
CVE-2024-45770 4.4 Sept. 19, 2024, 9:15 a.m. LOGO-VULNERABLEPerformance Co-Pilot (PCP)
CVE-2024-47159 4.3 Sept. 19, 2024, 6:15 p.m. LOGO-VULNERABLEJetBrains YouTrack
CVE-2024-47160 4.3 Sept. 19, 2024, 6:15 p.m. LOGO-VULNERABLEJetBrains YouTrack
CVE-2024-38221 4.3 Sept. 19, 2024, 9:15 p.m. LOGO-VULNERABLEMicrosoft Edge (Chromium-based)
CVE-2024-9003 4.3 Sept. 19, 2024, 9:15 p.m. LOGO-VULNERABLEJFlow
CVE-2024-47162 4.1 Sept. 19, 2024, 6:15 p.m. LOGO-VULNERABLEJetBrains YouTrack
CVE-2024-7254 None Sept. 19, 2024, 1:15 a.m. LOGO-VULNERABLEProtocol Buffers
CVE-2024-47085 None Sept. 19, 2024, 6:15 a.m. LOGO-VULNERABLELD DP Back Office
CVE-2024-47086 None Sept. 19, 2024, 6:15 a.m. LOGO-VULNERABLELD DP Back Office
CVE-2024-47087 None Sept. 19, 2024, 7:15 a.m. LOGO-VULNERABLEApex Softcell LD Geo
CVE-2024-47088 None Sept. 19, 2024, 7:15 a.m. LOGO-VULNERABLEApex Softcell LD Geo
CVE-2024-47089 None Sept. 19, 2024, 7:15 a.m. LOGO-VULNERABLEApex Softcell LD Geo
CVE-2024-8986 None Sept. 19, 2024, 11:15 a.m. LOGO-VULNERABLEGrafana
CVE-2024-7785 None Sept. 19, 2024, 2:15 p.m. LOGO-VULNERABLEElectronic Ticket System
CVE-2024-45861 None Sept. 19, 2024, 4:15 p.m. LOGO-VULNERABLEKastle Systems firmware
CVE-2024-45862 None Sept. 19, 2024, 4:15 p.m. LOGO-VULNERABLEKastle Systems firmware
CVE-2024-8375 None Sept. 19, 2024, 4:15 p.m. LOGO-VULNERABLEReverb
CVE-2024-31570 None Sept. 19, 2024, 5:15 p.m. LOGO-VULNERABLEFreeImage
CVE-2024-8651 None Sept. 19, 2024, 5:15 p.m. LOGO-VULNERABLENetCat CMS
CVE-2024-8652 None Sept. 19, 2024, 5:15 p.m. LOGO-VULNERABLENetCat CMS
CVE-2024-8653 None Sept. 19, 2024, 5:15 p.m. LOGO-VULNERABLENetCat CMS
CVE-2024-25673 None Sept. 19, 2024, 7:15 p.m. LOGO-VULNERABLECouchbase Server