CVE-2022-42823 Improved memory handling was addressed in tvOS 16.1, macOS Ventura 13, watchOS 9.1, Safari 16.1 and iOS 16.1.
An address bar spoofing issue was patched in Safari. The spoofing issue allowed a remote attacker to change the destination site by injecting malicious code
CVE-2022-42790 Apple fixed a logic issue in macOS Big Sur 11.7, macOS Ventura 13, iOS 16, iOS 15.7 and iPadOS 15.7.
A user may be able to view restricted content from the notification center on an iOS device. This issue is addressed on iOS 16. A
CVE-2022-26719 Memory corruption issue was fixed in tvOS 15.5, iOS 15.5, iPadOS 15.5, watchOS 8.6 and macOS Monterey 12.4.
This issue is fixed in these software versions. In Safari, user agents may send a Referer header with the wrong value. This may lead to
CVE-2022-41480 Tenda AC1200 US_AC6V2.0RTL_V15.03.06.51_multi_TDE01 has a buffer overflow in the 0x475dc function.
To exploit this vulnerability, an attacker would send a specially crafted HTTP request to the targeted Tenda WiFi device. An example of such a request
CVE-2022-40777 Interspire Email Marketer through 6.5.0 allows upload of arbitrary php files via a survey_submit.php operation, which can be accessed via /admin/temp/surveys/.
A remote attacker could leverage this vulnerability to upload arbitrary files and obtain access to the Interspire Email Marketer installation via directory traversal. Additionally, a
Episode
00:00:00
00:00:00