OFBiz is an #opensource platform for the automation of enterprise processes, including framework components and business applications.
OFBiz is an #opensource platform for the automation of enterprise processes, including framework components and business applications.
Apache OFBiz 24.09.05 is now available for download: buff.ly/QBr0lqB
Apache OFBiz 24.09.05 is now available for download: buff.ly/QBr0lqB
🔗 PoC: github.com/AlissonFaoli...
🛑 CVE: CVE-2024-38856
💻 Affected: Apache OFBiz ≤ 18.12.14
⚠️ Type: Remote Code Execution (RCE)
🔓 Exploitation: No authentication required
🔗 PoC: github.com/AlissonFaoli...
🛑 CVE: CVE-2024-38856
💻 Affected: Apache OFBiz ≤ 18.12.14
⚠️ Type: Remote Code Execution (RCE)
🔓 Exploitation: No authentication required
Apache OFBiz® is an #opensource platform for the automation of enterprise processes, including framework components and business applications. #opensource
Apache OFBiz® is an #opensource platform for the automation of enterprise processes, including framework components and business applications. #opensource
In der Nacht zum Donnerstag hat die CISA eine Warnung vor einer bei einem Angriff missbrauchten Sicherheitslücke im Linux-Kernel herausgegeben. Die Schwachstelle betrifft den USB-Video-Class-Treiber (UVC).....
In der Nacht zum Donnerstag hat die CISA eine Warnung vor einer bei einem Angriff missbrauchten Sicherheitslücke im Linux-Kernel herausgegeben. Die Schwachstelle betrifft den USB-Video-Class-Treiber (UVC).....
OFBiz is an open source platform for the automation of enterprise processes, including framework components and business applications.
For more information, visit: buff.ly/oL8ao11
OFBiz is an open source platform for the automation of enterprise processes, including framework components and business applications.
For more information, visit: buff.ly/oL8ao11
"CISA marca bugs do Microsoft .NET e Apache OFBiz como explorados em ataques" #bolhasec
"CISA marca bugs do Microsoft .NET e Apache OFBiz como explorados em ataques" #bolhasec
OFBiz is an #opensource platform for the automation of enterprise processes, including framework components and business applications.
OFBiz is an #opensource platform for the automation of enterprise processes, including framework components and business applications.
OFBiz is an #opensource platform for the automation of enterprise processes, including framework components and business applications.
To download: buff.ly/pv4lSZT
OFBiz is an #opensource platform for the automation of enterprise processes, including framework components and business applications.
To download: buff.ly/pv4lSZT
blog.sonicwall.com/en-us/2023/1...
The vulnerability is apparently due to an incomplete fix for CVE-2023-49070 (CVSS 9.8 pre-auth RCE) that was patched Dec 4th: issues.apache.org/jira/browse/...
blog.sonicwall.com/en-us/2023/1...
The vulnerability is apparently due to an incomplete fix for CVE-2023-49070 (CVSS 9.8 pre-auth RCE) that was patched Dec 4th: issues.apache.org/jira/browse/...
CVSS N/A
Server-Side Request Forgery (SSRF), Improper Control of Generation of Code ('Code Injection') vulnerability in Apache OFBiz. This issue affects Apache OFBiz: before 18.12.17. Users are recommended to upgrade to version...
#security #infosec #cve-alert
CVSS N/A
Server-Side Request Forgery (SSRF), Improper Control of Generation of Code ('Code Injection') vulnerability in Apache OFBiz. This issue affects Apache OFBiz: before 18.12.17. Users are recommended to upgrade to version...
#security #infosec #cve-alert