Observium version 0.16.7533 suffers from code execution and cross site request forgery vulnerabilities.
2359c07b1bd62ab882e442b19908fa49ee5d76e0f485673bc1f79ac54b6ccf30
Observium version 0.16.7533 suffers from a cross site request forgery vulnerability.
4198f71dabd0d94dfbaba0c5817ddef7ef67bdaea792ebd8df049f7971bceca1
PacketFence is a network access control (NAC) system. It is actively maintained and has been deployed in numerous large-scale institutions. It can be used to effectively secure networks, from small to very large heterogeneous networks. PacketFence provides NAC-oriented features such as registration of new network devices, detection of abnormal network activities including from remote snort sensors, isolation of problematic devices, remediation through a captive portal, and registration-based and scheduled vulnerability scans.
dc8460ba19b256181082d0a13002ecd87e4ca85c8bb7657b1e831a0f4f3178ba
This Metasploit module exploits a remote command execution vulnerability in Apache Struts version between 2.3.20 and 2.3.28 (except 2.3.20.2 and 2.3.24.2). Remote Code Execution can be performed via method: prefix when Dynamic Method Invocation is enabled.
39285e2ede3a389887f3e8ccc69a2f47104f97406d3bfc7a832a9a1fa422a408
Red Hat Security Advisory 2016-0702-01 - IBM Java SE version 7 includes the IBM Java Runtime Environment and the IBM Java Software Development Kit. This update upgrades IBM Java SE 7 to version 7 SR9-FP40. Security Fix: This update fixes multiple vulnerabilities in the IBM Java Runtime Environment and the IBM Java Software Development Kit.
c98ad902d46fce046c111ef7a6a8995c219f2bff9d29e4119568637c4265d5ca
Red Hat Security Advisory 2016-0701-01 - IBM Java SE version 7 Release 1 includes the IBM Java Runtime Environment and the IBM Java Software Development Kit. This update upgrades IBM Java SE 7 to version 7R1 SR3-FP40. Security Fix: This update fixes multiple vulnerabilities in the IBM Java Runtime Environment and the IBM Java Software Development Kit.
884e110ff003a5ebe87b021cdb5a85ef8b34452464ed2bffbe01fa645b5ce7d2
Ubuntu Security Notice 2956-1 - Zygmunt Krynicki discovered that ubuntu-core-launcher did not properly sanitize its input and contained a logic error when determining the mountpoint of bind mounts when using snaps on Ubuntu classic systems (eg, traditional desktop and server). If a user were tricked into installing a malicious snap with a crafted snap name, an attacker could perform a delayed attack to steal data or execute code within the security context of another snap. This issue did not affect Ubuntu Core systems.
632df5bd97671917840f2fe614b04f125db458c1c3da25f5a2f2f65fbeb95d7f