Dangling DNS record for bastion.certb.cdp.bethesda.net

<p>Posted by shed riot on Aug 06</p># Summary<br> <br> The hostname resolved to an address within a dynamic cloud IP pool.<br> The address had been released and was no longer controlled by the<br> organisation operating the hostname.<br> <br> This condition is referred to as an &quot;afterlife&quot; issue.<br> <br> Unlike a conventional CNAME-based subdomain takeover, the DNS record<br> pointed directly to a reusable cloud IP address. An attacker obtaining<br> that address could receive traffic intended for the...<br>

2026/8/6
阅读更多

CL.0 desync in www.microsoft.com

<p>Posted by shed riot on Aug 06</p># Summary<br> <br> I reported the issue to the Microsoft Security Response Center twice:<br> <br> * VULN-165381, MSRC case 102964<br> * VULN-165876, MSRC case 103259<br> <br> In both cases, they do not appear to have even looked at the PoCs, and so<br> have failed to adequately investigate before reaching a decision.<br> <br> # Vulnerability<br> <br> CWE-444: HTTP Request/Response Smuggling<br> <br> The observed behaviour was consistent with CL.0 HTTP desync within the<br> request-processing chain.<br> <br> #...<br>

2026/8/6
阅读更多

CVE-2026-15013 – miniOrange SAML SSO <= 5.4.3 Unauthenticated Authentication Bypass (PoC)

<p>Posted by Öner Efe Güngör on Aug 06</p>Hello Full Disclosure,<br> <br> I&apos;d like to share an independent lab Proof-of-Concept for CVE-2026-15013.<br> <br> ### CVE-2026-15013 – miniOrange SAML SSO &lt;= 5.4.3 Unauthenticated<br> Authentication Bypass<br> <br> SAML Signature Algorithm Confusion vulnerability. An unauthenticated<br> attacker can forge a valid SAMLResponse by forcing HMAC-SHA1 verification<br> against the IdP&apos;s public key, allowing full account takeover (including<br> administrators).<br> <br> Root cause:...<br>

2026/8/6
阅读更多

[KIS-2026-16] Telenia Software TVox <= 26.5.3 (nice) Local Privilege Escalation Vulnerability

<p>Posted by Egidio Romano on Aug 06</p>-------------------------------------------------------------------------------<br> Telenia Software TVox &lt;= 26.5.3 (nice) Local Privilege Escalation<br> Vulnerability<br> -------------------------------------------------------------------------------<br> <br> [-] Software Link:<br> <br> <a rel="nofollow" href="https://www.teleniasoftware.com">https://www.teleniasoftware.com</a><br> <br> [-] Affected Versions:<br> <br> Version 26.5.3 and prior 26.x versions.<br> Version 24.9.21 and prior 24.x versions.<br> Older versions may be affected as well.<br> <br> [-]...<br>

2026/8/6
阅读更多

[KIS-2026-15] Telenia Software TVox <= 26.5.3 (action_audio.php) OS Command Injection Vulnerability

<p>Posted by Egidio Romano on Aug 06</p>-------------------------------------------------------------------------------------<br> Telenia Software TVox &lt;= 26.5.3 (action_audio.php) OS Command Injection<br> Vulnerability<br> -------------------------------------------------------------------------------------<br> <br> [-] Software Link:<br> <br> <a rel="nofollow" href="https://www.teleniasoftware.com">https://www.teleniasoftware.com</a><br> <br> [-] Affected Versions:<br> <br> Version 26.5.3 and prior 26.x versions.<br> Version 24.9.21 and prior 24.x versions.<br> Older versions may be affected...<br>

2026/8/6
阅读更多

[KIS-2026-14] Telenia Software TVox <= 26.5.3 (set_env.php) Authentication Bypass Vulnerability

<p>Posted by Egidio Romano on Aug 06</p>---------------------------------------------------------------------------------<br> Telenia Software TVox &lt;= 26.5.3 (set_env.php) Authentication Bypass<br> Vulnerability<br> ---------------------------------------------------------------------------------<br> <br> [-] Software Link:<br> <br> <a rel="nofollow" href="https://www.teleniasoftware.com">https://www.teleniasoftware.com</a><br> <br> [-] Affected Versions:<br> <br> Version 26.5.3 and prior 26.x versions.<br> Version 24.9.21 and prior 24.x versions.<br> Older versions may be affected as well....<br>

2026/8/6
阅读更多

[KIS-2026-13] vBulletin <= 6.2.1 (runMaths) Remote Code Execution Vulnerability

<p>Posted by Egidio Romano on Aug 06</p>-----------------------------------------------------------------<br> vBulletin &lt;= 6.2.1 (runMaths) Remote Code Execution Vulnerability<br> -----------------------------------------------------------------<br> <br> [-] Software Link:<br> <br> <a rel="nofollow" href="https://www.vbulletin.com">https://www.vbulletin.com</a><br> <br> [-] Affected Versions:<br> <br> Version 5.7.5 and prior 5.x versions.<br> Version 6.2.1 and prior 6.x versions.<br> <br> [-] Vulnerability Description:<br> <br> The vulnerable code is located within the...<br>

2026/8/6
阅读更多

[SYSS-2026-050]: DICOM Toolkit (DCMTK) - Integer Overflow or Wraparound (CWE-190)

<p>Posted by Matthias Deeg via Fulldisclosure on Aug 06</p>Advisory ID: SYSS-2026-050<br> Product: DCMTK (DICOM ToolKit)<br> Manufacturer: OFFIS e.V. / DCMTK Community<br> Affected Version(s): 3.7.0<br> Tested Version(s): 3.7.0<br> Vulnerability Type: Integer Overflow or Wraparound (CWE-190)<br> Risk Level: Medium<br> Solution Status: Fixed<br> Manufacturer Notification: 2026-07-02<br> Solution Date: 2026-07-03<br> Public Disclosure:...<br>

2026/8/6
阅读更多

[SYSS-2026-049]: DICOM Toolkit (DCMTK) - Integer Overflow or Wraparound (CWE-190)

<p>Posted by Matthias Deeg via Fulldisclosure on Aug 06</p>Advisory ID: SYSS-2026-049<br> Product: DCMTK (DICOM ToolKit)<br> Manufacturer: OFFIS e.V. / DCMTK Community<br> Affected Version(s): 3.7.0<br> Tested Version(s): 3.7.0<br> Vulnerability Type: Integer Overflow or Wraparound (CWE-190)<br> Risk Level: High<br> Solution Status: Fixed<br> Manufacturer Notification: 2026-07-02<br> Solution Date: 2026-07-03<br> Public Disclosure:...<br>

2026/8/6
阅读更多

[SYSS-2026-048]: DICOM Toolkit (DCMTK) - Integer Overflow or Wraparound (CWE-190)

<p>Posted by Matthias Deeg via Fulldisclosure on Aug 06</p>Advisory ID: SYSS-2026-048<br> Product: DCMTK (DICOM ToolKit)<br> Manufacturer: OFFIS e.V. / DCMTK Community<br> Affected Version(s): 3.7.0<br> Tested Version(s): 3.7.0<br> Vulnerability Type: Integer Overflow or Wraparound (CWE-190)<br> Risk Level: High<br> Solution Status: Fixed<br> Manufacturer Notification: 2026-07-02<br> Solution Date: 2026-07-03<br> Public Disclosure:...<br>

2026/8/6
阅读更多

[SYSS-2026-047]: DICOM Toolkit (DCMTK) - Path traversal (CWE-22)

<p>Posted by Matthias Deeg via Fulldisclosure on Aug 06</p>Advisory ID: SYSS-2026-047<br> Product: DCMTK (DICOM ToolKit)<br> Manufacturer: OFFIS e.V. / DCMTK Community<br> Affected Version(s): 3.7.0<br> Tested Version(s): 3.7.0<br> Vulnerability Type: Path traversal (CWE-22)<br> Risk Level: High<br> Solution Status: Fixed<br> Manufacturer Notification: 2026-07-02<br> Solution Date: 2026-07-03<br> Public Disclosure: 2026-07-31<br> CVE...<br>

2026/8/6
阅读更多

[SYSS-2026-046]: DICOM Toolkit (DCMTK) - Integer Overflow or Wraparound (CWE-190)

<p>Posted by Matthias Deeg via Fulldisclosure on Aug 06</p>Advisory ID: SYSS-2026-046<br> Product: DCMTK (DICOM ToolKit)<br> Manufacturer: OFFIS e.V. / DCMTK Community<br> Affected Version(s): 3.7.0<br> Tested Version(s): 3.7.0<br> Vulnerability Type: Integer Overflow or Wraparound (CWE-190)<br> Risk Level: High<br> Solution Status: Fixed<br> Manufacturer Notification: 2026-07-02<br> Solution Date: 2026-07-03<br> Public Disclosure:...<br>

2026/8/6
阅读更多

APPLE-SA-07-27-2026-8 Safari 26.6

<p>Posted by Apple Product Security via Fulldisclosure on Aug 06</p>APPLE-SA-07-27-2026-8 Safari 26.6<br> <br> Safari 26.6 addresses the following issues.<br> Information about the security content is also available at<br> <a rel="nofollow" href="https://support.apple.com/en-us/128073">https://support.apple.com/en-us/128073</a>.<br> <br> Apple maintains a Security Releases page at<br> <a rel="nofollow" href="https://support.apple.com/100100">https://support.apple.com/100100</a> which lists recent<br> software updates with security advisories.<br> <br> Safari<br> Available for: macOS Sonoma and macOS Sequoia<br> Impact: An app may be able to access sensitive user data<br> Description: An...<br>

2026/8/6
阅读更多

APPLE-SA-07-27-2026-7 visionOS 26.6

<p>Posted by Apple Product Security via Fulldisclosure on Aug 06</p>APPLE-SA-07-27-2026-7 visionOS 26.6<br> <br> visionOS 26.6 addresses the following issues.<br> Information about the security content is also available at<br> <a rel="nofollow" href="https://support.apple.com/en-us/128070">https://support.apple.com/en-us/128070</a>.<br> <br> Apple maintains a Security Releases page at<br> <a rel="nofollow" href="https://support.apple.com/100100">https://support.apple.com/100100</a> which lists recent<br> software updates with security advisories.<br> <br> Accounts Framework<br> Available for: Apple Vision Pro (all models)<br> Impact: An app may be able to fingerprint the user...<br>

2026/8/6
阅读更多

APPLE-SA-07-27-2026-6 watchOS 26.6

<p>Posted by Apple Product Security via Fulldisclosure on Aug 06</p>APPLE-SA-07-27-2026-6 watchOS 26.6<br> <br> watchOS 26.6 addresses the following issues.<br> Information about the security content is also available at<br> <a rel="nofollow" href="https://support.apple.com/en-us/128068">https://support.apple.com/en-us/128068</a>.<br> <br> Apple maintains a Security Releases page at<br> <a rel="nofollow" href="https://support.apple.com/100100">https://support.apple.com/100100</a> which lists recent<br> software updates with security advisories.<br> <br> Accounts Framework<br> Available for: Apple Watch Series 6 and later<br> Impact: An app may be able to fingerprint the user<br> Description:...<br>

2026/8/6
阅读更多