Get a Pentest and security assessment of your IT network.

News

Vulnerability Spotlight: SQL injection vulnerability in Glacies IceHRM

Glacies’ IceHRM software contains a vulnerability that could allow an adversary to inject SQL. An attacker could send the software a specially crafted HTTP request, which can open the door for SQL injection. This could allow the attacker to access information such as usernames and password hashes stored in the software’s database. Cisco Talos worked with Glacies to ensure that these issues are resolved and that an update is available for affected customers. The following SNORT rules will detect exploitation attempts.”]

Source: https://blog.talosintelligence.com/2020/07/vuln-spotlight-icehrm-sql-injection-july-2020.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

SEA has stolen invoices that shows Microsoft charges FBI for user data

News

Greek police arrested a man running the BTC-e Bitcoin exchange to launder more than US$4bn worth of the Bitcoin