Critical Software Vulnerabilities Impacting Credit Unions Discovered by LMG Security Researcher
ID: 46e0e2e1-f840-53fc-9b99-bc1b17700dc9
STIX ID: report--46e0e2e1-f840-53fc-9b99-bc1b17700dc9
Feed Name: Dark Reading
Threat Score
LMG Security disclosed three critical vulnerabilities (two reflected XSS and one blind SQL injection) in a content-management web application used by credit unions; chaining these issues can allow attackers to obtain a vendor "ultra admin" backdoor account and access installations that lack multi-factor authentication. Affected organizations are urged to upgrade to v7.75 and enable MFA immediately to mitigate widespread access risk.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
