Cisco fixes SQL Injection flaw in Unified CM

A high-severity flaw (CVE-2023-20010) was found in Cisco Unified Communications Manager and Unified Communications Manager Session Management Edition. Cisco fixed a high-severity SQL injection flaw, tracked as CVE-2023-20010 (CVSS score of 8.1), in Unified Communications Manager and Unified Communications Manager Session Management Edition. Unified Communications Manager solutions provide reliable, secure, scalable, and manageable call control […]

The post Cisco fixes SQL Injection flaw in Unified CM appeared first on Security Affairs.

January 20, 2023
Read More >>

PayPal Notifies 35,000 Users of Data Breach

By Habiba Rashid
According to PayPal, hackers managed to access the personal information of 34,942 users; however, no transactions were performed from the breached accounts.
This is a post from HackRead.com Read the original post: PayPal Notifies 35,00…

January 20, 2023
Read More >>

Experts released PoC exploit for critical Zoho ManageEngine RCE flaw

Researchers released Proof-of-concept exploit code for remote code execution flaw CVE-2022-47966 impacting multiple Zoho ManageEngine products. The CVE-2022-47966 flaw is an unauthenticated remote code execution vulnerability that impacts multiple Zoho products with SAML SSO enabled in the ManageEngine setup. The issue also impacts products that had the feature enabled in the past. The root cause of […]

The post Experts released PoC exploit for critical Zoho ManageEngine RCE flaw appeared first on Security Affairs.

January 19, 2023
Read More >>