Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2020-25533PUBLISHED: 2021-01-15
An issue was discovered in Malwarebytes before 4.0 on macOS. A malicious application was able to perform a privileged action within the Malwarebytes launch daemon. The privileged service improperly validated XPC connections by relying on the PID instead of the audit token. An attacker can construct ...
CVE-2021-3162PUBLISHED: 2021-01-15Docker Desktop Community before 2.5.0.0 on macOS mishandles certificate checking, leading to local privilege escalation.
CVE-2021-21242PUBLISHED: 2021-01-15
OneDev is an all-in-one devops platform. In OneDev before version 4.0.3, there is a critical vulnerability which can lead to pre-auth remote code execution. AttachmentUploadServlet deserializes untrusted data from the `Attachment-Support` header. This Servlet does not enforce any authentication or a...
CVE-2021-21245PUBLISHED: 2021-01-15
OneDev is an all-in-one devops platform. In OneDev before version 4.0.3, AttachmentUploadServlet also saves user controlled data (`request.getInputStream()`) to a user specified location (`request.getHeader("File-Name")`). This issue may lead to arbitrary file upload which can be used to u...
CVE-2021-21246PUBLISHED: 2021-01-15
OneDev is an all-in-one devops platform. In OneDev before version 4.0.3, the REST UserResource endpoint performs a security check to make sure that only administrators can list user details. However for the `/users/` endpoint there are no security checks enforced so it is possible to retrieve ar...
User Rank: Ninja
4/16/2020 | 2:41:10 PM
I think he brought up good points but the problem is that individuals of power are not willing to listen to people of color or individuals who have a difference of opinion. Racist tendies are still embedded in the very fabric of our society, so it is hard for someone who is vibrant, intelligent and willing to do whatever get an opportunity to provide valuable insight into areas of technology, this could prove to be beneficial to the entire organization.
In addition, I do think the answers are there, but there is something else in the way - fear. Individuals who have been doing something for a period of time, they have a problem with change, they don't want to see something that is innovative and possible game-changing to get in their way (greed and unwillingness to grow).
So we have to address the psychological and philosophical elements of our society before making advancements because we are the ones who are holding each other back, technology has not been the problem, it is the other outside factors that cause individuals to revert back to their old way of doing things.
Todd