събота, 21 август 2021 г.

Weekly Digest: New diabetes clinical trial (9 items)

New diabetes clinical trial: High-intensity Interval Training Prescriptions to Reduce the Risk of Complications Linked to Type 2 Diabetes: the Role of Interval Length on Clinical Benefits and on Physiological Mechanisms

Published on: August 02, 2021 at 07:00PM
Condition:   Diabetes Mellitus, Type 2
Interventions:   Other: High-intensity interval training (HIIT)-4;   Other: High-intensity interval training (HIIT)-10;   Other: Rest
Sponsor:   Université de Sherbrooke
Not yet recruiting
https://clinicaltrials.gov/ct2/show/NCT04986345?term=diabetes&sfpd_d=14 August 02, 2021 at 05:22PM

via ClinicalTrials.gov


New diabetes clinical trial: Effects of Yogurt With Probiotics in Adults With Type 2 Diabetes Mellitus

Published on: August 03, 2021 at 07:00PM
Condition:   Type2 Diabetes
Interventions:   Dietary Supplement: Lactobacillus acidophilus 207, Bifidobacterium lactis B420/205;   Dietary Supplement: Lactobacillus bulgaricus and Streptococcus thermophillus;   Dietary Supplement: No culture
Sponsor:   Faculty of Medical Sciences, Clinical Hospital
Completed
https://clinicaltrials.gov/ct2/show/NCT04988594?term=diabetes&sfpd_d=14 August 03, 2021 at 09:22PM

via ClinicalTrials.gov


New diabetes clinical trial: Diabetes Prevention Program for the Treatment of Nonalcoholic Fatty Liver Disease

Published on: August 03, 2021 at 07:00PM
Condition:   Nonalcoholic Fatty Liver Disease
Intervention:   Behavioral: Diabetes Prevention Program
Sponsor:   Icahn School of Medicine at Mount Sinai
Completed
https://clinicaltrials.gov/ct2/show/NCT04988204?term=diabetes&sfpd_d=14 August 03, 2021 at 09:22PM

via ClinicalTrials.gov


New diabetes clinical trial: Relationship Between Oral Health and Diabetes

Published on: August 05, 2021 at 07:00PM
Condition:   Diabetes
Intervention:   Other: Questionnaire
Sponsor:   University Hospital, Montpellier
Not yet recruiting
https://clinicaltrials.gov/ct2/show/NCT04991168?term=diabetes&sfpd_d=14 August 05, 2021 at 05:22PM

via ClinicalTrials.gov


New diabetes clinical trial: AS-OCT Study in Diabetic Retinopathy

Published on: August 05, 2021 at 07:00PM
Condition:   Diabetes Mellitus
Intervention:   Diagnostic Test: Anterior segment-optical coherence tomography
Sponsor:   Federico II University
Completed
https://clinicaltrials.gov/ct2/show/NCT04992325?term=diabetes&sfpd_d=14 August 05, 2021 at 05:22PM

via ClinicalTrials.gov


New diabetes clinical trial: A Study of Nasal Glucagon (LY900018) in Pediatric Participants With Type 1 Diabetes

Published on: August 05, 2021 at 07:00PM
Condition:   Type 1 Diabetes
Intervention:   Drug: Glucagon Nasal Powder [Baqsimi]
Sponsor:   Eli Lilly and Company
Not yet recruiting
https://clinicaltrials.gov/ct2/show/NCT04992312?term=diabetes&sfpd_d=14 August 05, 2021 at 05:22PM

via ClinicalTrials.gov


New diabetes clinical trial: Advancing DSME/S and COVID-19 Prevention and Protection Through "emPOWERed to Change" Program

Published on: August 06, 2021 at 07:00PM
Conditions:   Type2 Diabetes;   Covid19
Intervention:   Behavioral: emPOWERed To Change Program
Sponsor:   Charles Drew University of Medicine and Science
Not yet recruiting
https://clinicaltrials.gov/ct2/show/NCT04993326?term=diabetes&sfpd_d=14 August 06, 2021 at 04:26PM

via ClinicalTrials.gov


New diabetes clinical trial: A Study of Efficacy and Safety of Supaglutide in Type 2 Diabetes Patients

Published on: August 06, 2021 at 07:00PM
Condition:   Type2 Diabetes
Interventions:   Biological: Supaglutide injection;   Other: placebo injection
Sponsor:   Shanghai Yinnuo Pharmaceutical Technology Co., Ltd.
Not yet recruiting
https://clinicaltrials.gov/ct2/show/NCT04994288?term=diabetes&sfpd_d=14 August 06, 2021 at 04:26PM

via ClinicalTrials.gov


New diabetes clinical trial: 24-hour Movement Behaviors Among Type 2 Diabetes Mellitus Patients

Published on: August 06, 2021 at 07:00PM
Condition:   Diabetes Mellitus, Type 2
Intervention:   Other: No intervention
Sponsors:   University Hospital, Ghent;   University Ghent
Not yet recruiting
https://clinicaltrials.gov/ct2/show/NCT04993482?term=diabetes&sfpd_d=14 August 06, 2021 at 04:26PM

via ClinicalTrials.gov



Weekly Digest: a new vulnerability is published on the National Vulnerability Database (24 items)

New vulnerabilities from the NVD: CVE-2017-18113

The DefaultOSWorkflowConfigurator class in Jira Server and Jira Data Center before version 8.18.1 allows remote attackers who can trick a system administrator to import their malicious workflow to execute arbitrary code via a Remote Code Execution (RCE) vulnerability. The vulnerability allowed for various problematic OSWorkflow classes to be used as part of workflows. The fix for this issue blocks usage of unsafe conditions, validators, functions and registers that are build-in into OSWorkflow library and other Jira dependencies. Atlassian-made functions or functions provided by 3rd party plugins are not affected by this fix.
Published at: August 02, 2021 at 06:15AM
View on website

August 02, 2021 at 08:34AM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2019-14453

An issue was discovered in Comelit "App lejos de casa (web)" 2.8.0. It allows privilege escalation via modified domus and logged fields, related to js/bridge.min.js and login.json. For example, an attacker can achieve high privileges (installer or administrator) for the graphical interface via a 1C000000000S value for domus, in conjunction with a zero value for logged.
Published at: August 03, 2021 at 09:15PM
View on website

August 03, 2021 at 11:33PM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-19305

An issue in /app/system/column/admin/index.class.php of Metinfo v7.0.0 causes the indeximg parameter to be deleted when the column is deleted, allowing attackers to escalate privileges.
Published at: August 04, 2021 at 01:15AM
View on website

August 04, 2021 at 03:33AM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-19304

An issue in /admin/index.php?n=system&c=filept&a=doGetFileList of Metinfo v7.0.0 allows attackers to perform a directory traversal and access sensitive information.
Published at: August 04, 2021 at 01:15AM
View on website

August 04, 2021 at 03:33AM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-19303

An arbitrary file upload vulnerability in /fileupload.php of hdcms 5.7 allows attackers to execute arbitrary code via a crafted file.
Published at: August 04, 2021 at 01:15AM
View on website

August 04, 2021 at 03:33AM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-19302

An arbitrary file upload vulnerability in the avatar upload function of vaeThink v1.0.1 allows attackers to open a webshell via changing uploaded file suffixes to ".php".
Published at: August 04, 2021 at 01:15AM
View on website

August 04, 2021 at 03:33AM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-19301

A vulnerability in the vae_admin_rule database table of vaeThink v1.0.1 allows attackers to execute arbitrary code via a crafted payload in the condition parameter.
Published at: August 04, 2021 at 01:15AM
View on website

August 04, 2021 at 03:33AM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-24823

A vulnerability in the dwarf::to_string function of Libelfin v0.3 allows attackers to cause a denial of service (DOS) through a segmentation fault via a crafted ELF file.
Published at: August 04, 2021 at 06:15PM
View on website

August 04, 2021 at 07:33PM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-24822

A vulnerability in the dwarf::cursor::uleb function of Libelfin v0.3 allows attackers to cause a denial of service (DOS) through a segmentation fault via a crafted ELF file.
Published at: August 04, 2021 at 06:15PM
View on website

August 04, 2021 at 07:33PM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-24821

A vulnerability in the dwarf::cursor::skip_form function of Libelfin v0.3 allows attackers to cause a denial of service (DOS) through a segmentation fault via a crafted ELF file.
Published at: August 04, 2021 at 06:15PM
View on website

August 04, 2021 at 07:33PM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-22352

The gf_dash_segmenter_probe_input function in GPAC v0.8 allows attackers to cause a denial of service (NULL pointer dereference) via a crafted file in the MP4Box command.
Published at: August 05, 2021 at 12:15AM
View on website

August 05, 2021 at 01:33AM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-22732

CMS Made Simple (CMSMS) 2.2.14 allows stored XSS via the Extensions > Fie Picker..
Published at: August 05, 2021 at 08:15PM
View on website

August 05, 2021 at 09:33PM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2021-1630

XML external entity (XXE) vulnerability affecting certain versions of a Mule runtime component that may affect CloudHub, GovCloud, Runtime Fabric, Pivotal Cloud Foundry, Private Cloud Edition, and on-premise customers.
Published at: August 06, 2021 at 12:15AM
View on website

August 06, 2021 at 01:33AM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-7863

A vulnerability in File Transfer Solution of Raonwiz could allow arbitrary command execution as the result of viewing a specially-crafted web page. This vulnerability is due to insufficient validation of the parameter of the specific method. An attacker could exploit this vulnerability by setting the parameter to the command they want to execute. A successful exploit could allow the attacker to execute arbitrary commands on a target system as the user. However, the victim must run the Internet Explorer browser with administrator privileges because of the cross-domain policy.
Published at: August 06, 2021 at 12:15AM
View on website

August 06, 2021 at 01:33AM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-22392

Cross Site Scripting (XSS) vulnerability exists in Subrion CMS 4.2.2 when adding a blog and then editing an image file.
Published at: August 06, 2021 at 01:15AM
View on website

August 06, 2021 at 03:33AM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-22330

Cross-Site Scripting (XSS) vulnerability in Subrion 4.2.1 via the title when adding a page.
Published at: August 06, 2021 at 05:15PM
View on website

August 06, 2021 at 07:33PM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-18694

Cross Site Request Forgery (CSRF) in IgnitedCMS v1.0 allows remote attackers to obtain sensitive information and gain privilege via the component "/admin/profile/save_profile".
Published at: August 06, 2021 at 10:15PM
View on website

August 06, 2021 at 11:34PM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-18693

Cross Site Scripting (XSS) in MineWebCMS v1.7.0 allows remote attackers to execute arbitrary code by injecting malicious code into the 'Title' field of the component '/admin/news'.
Published at: August 06, 2021 at 10:15PM
View on website

August 06, 2021 at 11:34PM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-28088

An arbitrary file upload vulnerability in /jeecg-boot/sys/common/upload of jeecg-boot CMS 2.3 allows attackers to execute arbitrary code.
Published at: August 07, 2021 at 02:15AM
View on website

August 07, 2021 at 03:33AM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-28087

A SQL injection vulnerability in /jeecg boot/sys/dict/loadtreedata of jeecg-boot CMS 2.3 allows attackers to access sensitive database information.
Published at: August 07, 2021 at 02:15AM
View on website

August 07, 2021 at 03:33AM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-21358

A cross site request forgery (CSRF) in Wage-CMS 1.5.x-dev allows attackers to arbitrarily add users.
Published at: August 07, 2021 at 02:15AM
View on website

August 07, 2021 at 03:33AM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-21357

A stored cross site scripting (XSS) vulnerability in /admin.php?mod=user&act=addnew of PopojiCMS 1.2 allows attackers to execute arbitrary web scripts or HTML via a crafted payload in the E-Mail field.
Published at: August 07, 2021 at 02:15AM
View on website

August 07, 2021 at 03:33AM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-21356

An information disclosure vulnerability in upload.php of PopojiCMS 1.2 leads to physical path disclosure of the host when 'name = "file" is deleted during file uploads.
Published at: August 07, 2021 at 02:15AM
View on website

August 07, 2021 at 03:33AM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-21353

A stored cross site scripting (XSS) vulnerability in /admin/snippets.php of GetSimple CMS 3.4.0a allows attackers to execute arbitrary web scripts or HTML via crafted payload in the Edit Snippets module.
Published at: August 07, 2021 at 02:15AM
View on website

August 07, 2021 at 03:33AM

via National Vulnerability Database


петък, 20 август 2021 г.

Weekly Digest: New diabetes clinical trial (18 items)

New diabetes clinical trial: Effect of Oral Anti-diabetic Medication on Liver Fat in Subjects With Type II Diabetes and Non-alcoholic Fatty Liver

Published on: July 26, 2021 at 07:00PM
Conditions:   Diabetes Mellitus, Type 2;   NASH - Nonalcoholic Steatohepatitis;   NAFLD
Interventions:   Drug: Pioglitazone;   Drug: Empagliflozin;   Drug: Pioglitazone + Empagliflozin
Sponsor:   Getz Pharma
Not yet recruiting
https://clinicaltrials.gov/ct2/show/NCT04976283?term=diabetes&sfpd_d=14 July 26, 2021 at 08:22PM

via ClinicalTrials.gov


New diabetes clinical trial: Echocardiographic Assessment of the Impact of Diabetes and Prognostic Analysis of Heart Transplantation

Published on: July 26, 2021 at 07:00PM
Condition:   Heart Transplant
Intervention:  
Sponsors:   Xie Mingxing;   Second Affiliated Hospital, School of Medicine, Zhejiang University;   Shanghai Zhongshan Hospital;   Wuhan Asia Heart Hospital;   Guangdong Provincial People's Hospital;   Henan Provincial People's Hospital
Not yet recruiting
https://clinicaltrials.gov/ct2/show/NCT04976517?term=diabetes&sfpd_d=14 July 26, 2021 at 08:22PM

via ClinicalTrials.gov


New diabetes clinical trial: The PREPARED Trial

Published on: July 26, 2021 at 07:00PM
Conditions:   Diabetes Mellitus, Type 2;   Electronic Health Record;   Primary Health Care;   Reproductive Behavior
Interventions:   Behavioral: Medication Reconciliation (MedRec) Tool;   Behavioral: Provider Best Practices Alert (BPA) and Decision Support;   Behavioral: PREPSheet;   Behavioral: Text Messaging
Sponsors:   Northwestern University;   Northwestern Memorial Hospital;   AllianceChicago
Not yet recruiting
https://clinicaltrials.gov/ct2/show/NCT04976881?term=diabetes&sfpd_d=14 July 26, 2021 at 08:22PM

via ClinicalTrials.gov


New diabetes clinical trial: The Influence of Personality Characteristics and Emotions on Blood Glucose Levels Among Type 1 Diabetes Mellitus Patients

Published on: July 27, 2021 at 07:00PM
Condition:   Significant Correlation Between Baseline Personality Characteristics, Changing Emotions Throughout the Day, and Glycemic Levels in Patients With T1DM
Intervention:  
Sponsors:   Tel-Aviv Sourasky Medical Center;   Rambam Health Care Campus;   Tel Aviv University
Completed
https://clinicaltrials.gov/ct2/show/NCT04978441?term=diabetes&sfpd_d=14 July 27, 2021 at 06:22PM

via ClinicalTrials.gov


New diabetes clinical trial: Intervention for High-normal Blood Pressure in Adults With Type 2 Diabetes-----renal Substudy

Published on: July 27, 2021 at 07:00PM
Conditions:   Diabetes Mellitus, Type 2;   Blood Pressure
Interventions:   Drug: Allisartan Isoproxil;   Drug: Amlodipine
Sponsor:   Guangdong Provincial People's Hospital
Not yet recruiting
https://clinicaltrials.gov/ct2/show/NCT04978649?term=diabetes&sfpd_d=14 July 27, 2021 at 06:22PM

via ClinicalTrials.gov


New diabetes clinical trial: Closing the Loop in Adults With Type 1 Diabetes (CLEAR)

Published on: July 27, 2021 at 07:00PM
Condition:   Type 1 Diabetes
Interventions:   Device: CamAPS HX;   Device: Standard insulin pump therapy with CGM
Sponsors:   University of Cambridge;   Cambridge University Hospitals NHS Foundation Trust
Not yet recruiting
https://clinicaltrials.gov/ct2/show/NCT04977908?term=diabetes&sfpd_d=14 July 27, 2021 at 06:22PM

via ClinicalTrials.gov


New diabetes clinical trial: Sleep and Chronotype in Children With Type 1 Diabetes

Published on: July 27, 2021 at 07:00PM
Condition:   Diabetes Mellitus, Type 1
Intervention:  
Sponsors:   Marmara University;   The Scientific and Technological Research Council of Turkey
Enrolling by invitation
https://clinicaltrials.gov/ct2/show/NCT04978662?term=diabetes&sfpd_d=14 July 27, 2021 at 06:22PM

via ClinicalTrials.gov


New diabetes clinical trial: Biomarkers of Heterogeneity in Type 1 Diabetes

Published on: July 27, 2021 at 07:00PM
Condition:   Type 1 Diabetes
Intervention:  
Sponsors:   Diabeter Nederland BV;   University Medical Center Groningen
Active, not recruiting
https://clinicaltrials.gov/ct2/show/NCT04977635?term=diabetes&sfpd_d=14 July 27, 2021 at 06:22PM

via ClinicalTrials.gov


New diabetes clinical trial: A Study for Post-Marketing Surveillance of Nesina® Tablet Monotherapy or Combination Therapy in Participants With Type 2 Diabetes (T2DM) in South Korea

Published on: July 28, 2021 at 07:00PM
Condition:   Type 2 Diabetes Mellitus
Intervention:   Drug: Alogliptin Benzoate
Sponsor:   Takeda
Completed
https://clinicaltrials.gov/ct2/show/NCT04980040?term=diabetes&sfpd_d=14 July 28, 2021 at 10:22PM

via ClinicalTrials.gov


New diabetes clinical trial: Comparing Semaglutide Versus Placebo on Intestinal Barrier Function in Type 2 Diabetes Mellitus (SIB)

Published on: July 28, 2021 at 07:00PM
Conditions:   Type 2 Diabetes;   Chronic Inflammation;   Intestinal Permeability
Interventions:   Drug: Semaglutide;   Drug: Placebo
Sponsors:   University of Colorado, Denver;   Novo Nordisk A/S
Not yet recruiting
https://clinicaltrials.gov/ct2/show/NCT04979130?term=diabetes&sfpd_d=14 July 28, 2021 at 10:22PM

via ClinicalTrials.gov


New diabetes clinical trial: Evaluation of the Safety and Efficacy of Insulin Glargine 300 U/ml (Gla-300) in Insulin-naïve Patients With Type 2 Diabetes Mellitus Uncontrolled on Oral Antihyperglycemic Drugs

Published on: July 28, 2021 at 07:00PM
Condition:   Type 2 Diabetes Mellitus
Intervention:   Drug: Insulin glargine (U300)
Sponsor:   Sanofi
Not yet recruiting
https://clinicaltrials.gov/ct2/show/NCT04980027?term=diabetes&sfpd_d=14 July 28, 2021 at 10:22PM

via ClinicalTrials.gov


New diabetes clinical trial: A Post-Marketing Surveillance Study on NesinaAct® Tablet Use Among Type 2 Diabetes Mellitus Participants in Korea

Published on: July 28, 2021 at 07:00PM
Condition:   Type 2 Diabetes Mellitus
Intervention:   Drug: NesinaAct® Tablet
Sponsor:   Takeda
Completed
https://clinicaltrials.gov/ct2/show/NCT04980014?term=diabetes&sfpd_d=14 July 28, 2021 at 10:22PM

via ClinicalTrials.gov


New diabetes clinical trial: Prevalence of Hyperandrogenism in Type 1 Diabetes

Published on: July 28, 2021 at 07:00PM
Conditions:   Type 1 Diabetes;   Polycystic Ovary Syndrome;   Hyperandrogenism;   Hirsutism;   Oligomenorrhea;   Ovulation Disorder
Interventions:   Other: Clinical hyperandrogenism assessment;   Diagnostic Test: Total testosterone (ng/dL);   Diagnostic Test: A1c (%);   Diagnostic Test: Total cholesterol;   Other: Body mass index (BMI) (kg/m2);   Diagnostic Test: Frequency of chronic vascular complications [n (%)];   Diagnostic Test: Polycystic ovary morphology;   Diagnostic Test: Cardiovascular autonomic reflex tests (CARTs);   Diagnostic Test: Sex hormone-binding globulin (SHBG) (nmol/L);   Diagnostic Test: Dehydroepiandrosterone-sulphate (IQL) (ng/mL);   Other: Waist circumference (cm);   Other: Waist-to-hip ratio;   Other: Body composition;   Diagnostic Test: Mean glucose (mg/dL);   Diagnostic Test: Time in target range (hours);   Diagnostic Test: Time in hyperglycemia (hours);   Other: Insulin dose (UI/Kg);   Other: Insulin sensitivity;   Diagnostic Test: High-density lipoprotein (HDL) (mg/dL);   Diagnostic Test: Low-density lipoprotein (LDL) (mg/dL);   Diagnostic Test: Triglycerides (mg/dL)
Sponsors:   Fundacion para la Investigacion Biomedica del Hospital Universitario Ramon y Cajal;   Hospital Universitario Ramon y Cajal;   Spanish Biomedical Research Centre in Diabetes and Associated Metabolic Disorders;   University of Alcala;   Instituto de Salud Carlos III
Recruiting
https://clinicaltrials.gov/ct2/show/NCT04979377?term=diabetes&sfpd_d=14 July 28, 2021 at 10:22PM

via ClinicalTrials.gov


New diabetes clinical trial: Efficacy and Safety of Bifidobacterium Quadruple Live Tablets in Patients With T2DM and Constipation

Published on: July 29, 2021 at 07:00PM
Condition:   Type 2 Diabetes Mellitus With Complication
Interventions:   Drug: Bifidobacterium, Lactobacillus, Enterococcus and Bacillus Cereus Tablets, Live;   Drug: Siliankang simulating tablets
Sponsors:   Peking Union Medical College Hospital;   First Affiliated Hospital of Harbin Medical University;   The Affiliated Hospital of Inner Mongolia Medical University;   Affiliated Hospital of Chengde Medical University;   The First Affiliated Hospital of Zhengzhou University;   Chinese Academy of Sciences;   Hangzhou Grand Biologic Pharmaceutical, Inc.
Not yet recruiting
https://clinicaltrials.gov/ct2/show/NCT04982380?term=diabetes&sfpd_d=14 July 29, 2021 at 05:23PM

via ClinicalTrials.gov


New diabetes clinical trial: Research Study to Look at How Well Cagrilintide Together With Semaglutide Works in People With Type 2 Diabetes

Published on: July 29, 2021 at 07:00PM
Condition:   Diabetes Mellitus, Type 2
Interventions:   Drug: Semaglutide 2.4 mg;   Drug: Cagrilintide 2.4 mg;   Drug: Placebo (semaglutide);   Drug: Placebo (cagrilintide)
Sponsor:   Novo Nordisk A/S
Not yet recruiting
https://clinicaltrials.gov/ct2/show/NCT04982575?term=diabetes&sfpd_d=14 July 29, 2021 at 05:23PM

via ClinicalTrials.gov


New diabetes clinical trial: Diabetes teleMonitoring of Patients in Insulin Therapy

Published on: July 29, 2021 at 07:00PM
Condition:   Type 2 Diabetes Treated With Insulin
Intervention:   Device: Telemonitoring
Sponsors:   Aalborg University Hospital;   Steno Diabetes Center Sjaelland;   Novo Nordisk A/S;   Glooko;   DexCom, Inc.
Not yet recruiting
https://clinicaltrials.gov/ct2/show/NCT04981808?term=diabetes&sfpd_d=14 July 29, 2021 at 05:23PM

via ClinicalTrials.gov


New diabetes clinical trial: Feasibility of Yoga for Type-2 Diabetes

Published on: July 29, 2021 at 07:00PM
Condition:   Type2 Diabetes
Interventions:   Behavioral: Iyengar yoga;   Behavioral: Standard Exercise;   Behavioral: Nutrition Counseling
Sponsor:   The Miriam Hospital
Not yet recruiting
https://clinicaltrials.gov/ct2/show/NCT04982640?term=diabetes&sfpd_d=14 July 29, 2021 at 05:24PM

via ClinicalTrials.gov


New diabetes clinical trial: Diabetes Complications and the Risk of Cardiovascular and Cerebrovascular Diseases

Published on: July 30, 2021 at 07:00PM
Conditions:   Diabetes Complications;   Cardiovascular Diseases;   Cerebrovascular Disease
Intervention:   Other: no intervention
Sponsor:   Second Affiliated Hospital, School of Medicine, Zhejiang University
Not yet recruiting
https://clinicaltrials.gov/ct2/show/NCT04983277?term=diabetes&sfpd_d=14 July 30, 2021 at 08:22PM

via ClinicalTrials.gov


Weekly Digest: a new vulnerability is published on the National Vulnerability Database (39 items)

New vulnerabilities from the NVD: CVE-2020-12681

Missing TLS certificate validation on 3xLogic Infinias eIDC32 devices through 3.4.125 allows an attacker to intercept/control the channel by which door lock policies are applied.
Published at: July 26, 2021 at 03:15PM
View on website

July 26, 2021 at 05:33PM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-18174

A process injection vulnerability in setup.exe of AutoHotkey 1.1.32.00 allows attackers to escalate privileges.
Published at: July 26, 2021 at 11:15PM
View on website

July 27, 2021 at 01:34AM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-18173

A DLL injection vulnerability in 1password.dll of 1Password 7.3.712 allows attackers to execute arbitrary code.
Published at: July 26, 2021 at 11:15PM
View on website

July 27, 2021 at 01:34AM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-18172

A code injection vulnerability in the SeDebugPrivilege component of Trezor Bridge 2.0.27 allows attackers to escalate privileges.
Published at: July 26, 2021 at 11:15PM
View on website

July 27, 2021 at 01:34AM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-18171

TechSmith Snagit 19.1.0.2653 uses Object Linking and Embedding (OLE) which can allow attackers to obfuscate and embed crafted files used to escalate privileges.
Published at: July 26, 2021 at 11:15PM
View on website

July 27, 2021 at 01:34AM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-18170

An issue in the SeChangeNotifyPrivilege component of Abloy Key Manager Version 7.14301.0.0 allows attackers to escalate privileges via a change in permissions.
Published at: July 26, 2021 at 11:15PM
View on website

July 27, 2021 at 01:34AM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-18169

A vulnerability in the Windows installer XML (WiX) toolset of TechSmith Snagit 19.1.1.2860 allows attackers to escalate privileges.
Published at: July 26, 2021 at 11:15PM
View on website

July 27, 2021 at 01:34AM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-17952

A remote code execution (RCE) vulnerability in /library/think/App.php of Twothink v2.0 allows attackers to execute arbitrary PHP code.
Published at: July 26, 2021 at 11:15PM
View on website

July 27, 2021 at 01:34AM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-18430

tinyexr 0.9.5 was discovered to contain an array index error in the tinyexr::DecodeEXRImage component, which can lead to a denial of service (DOS).
Published at: July 27, 2021 at 01:15AM
View on website

July 27, 2021 at 03:33AM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-18428

tinyexr commit 0.9.5 was discovered to contain an array index error in the tinyexr::SaveEXR component, which can lead to a denial of service (DOS).
Published at: July 27, 2021 at 01:15AM
View on website

July 27, 2021 at 03:33AM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-5351

Dell EMC Data Protection Advisor versions 6.4, 6.5 and 18.1 contain an undocumented account with limited privileges that is protected with a hard-coded password. A remote unauthenticated malicious user with the knowledge of the hard-coded password may login to the system and gain read-only privileges.
Published at: July 28, 2021 at 03:15AM
View on website

July 28, 2021 at 08:33AM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-5341

Deserialization of Untrusted Data Vulnerability Dell EMC Avamar Server versions 7.4.1, 7.5.0, 7.5.1, 18.2, 19.1 and 19.2 and Dell EMC Integrated Data Protection Appliance versions 2.0, 2.1, 2.2, 2.3, 2.4 and 2.4.1 contain a Deserialization of Untrusted Data Vulnerability. A remote unauthenticated attacker could exploit this vulnerability to send a serialized payload that would execute code on the system.
Published at: July 28, 2021 at 03:15AM
View on website

July 28, 2021 at 08:33AM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-26180

Dell EMC Isilon OneFS supported versions 8.1 and later and Dell EMC PowerScale OneFS supported version 9.0.0 contain an access issue with the remotesupport user account. A remote malicious user with low privileges may gain access to data stored on the /ifs directory through most protocols.
Published at: July 28, 2021 at 03:15AM
View on website

July 28, 2021 at 08:33AM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-5004

IBM Jazz Foundation products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 192957.
Published at: July 28, 2021 at 04:15PM
View on website

July 28, 2021 at 05:37PM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-4974

IBM Jazz Foundation products are vulnerable to server side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks. IBM X-Force ID: 192434.
Published at: July 28, 2021 at 04:15PM
View on website

July 28, 2021 at 05:37PM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-36239

Jira Data Center, Jira Core Data Center, Jira Software Data Center from version 6.3.0 before 8.5.16, from 8.6.0 before 8.13.8, from 8.14.0 before 8.17.0 and Jira Service Management Data Center from version 2.0.2 before 4.5.16, from version 4.6.0 before 4.13.8, and from version 4.14.0 before 4.17.0 exposed a Ehcache RMI network service which attackers, who can connect to the service, on port 40001 and potentially 40011[0][1], could execute arbitrary code of their choice in Jira through deserialization due to a missing authentication vulnerability. While Atlassian strongly suggests restricting access to the Ehcache ports to only Data Center instances, fixed versions of Jira will now require a shared secret in order to allow access to the Ehcache service. [0] In Jira Data Center, Jira Core Data Center, and Jira Software Data Center versions prior to 7.13.1, the Ehcache object port can be randomly allocated. [1] In Jira Service Management Data Center versions prior to 3 .16.1, the Ehcache object port can be randomly allocated.
Published at: July 29, 2021 at 02:15PM
View on website

July 29, 2021 at 03:35PM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2021-20505

The PowerVM Logical Partition Mobility(LPM) (PowerVM Hypervisor FW920, FW930, FW940, and FW950) encryption key exchange protocol can be compromised. If an attacker has the ability to capture encrypted LPM network traffic and is able to gain service access to the FSP they can use this information to perform a series of PowerVM service procedures to decrypt the captured migration traffic IBM X-Force ID: 198232
Published at: July 29, 2021 at 03:15PM
View on website

July 29, 2021 at 05:33PM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-5353

The Dell Isilon OneFS versions 8.2.2 and earlier and Dell EMC PowerScale OneFS version 9.0.0 default configuration for Network File System (NFS) allows access to an 'admin' home directory. An attacker may leverage a spoofed Unique Identifier (UID) over NFS to rewrite sensitive files to gain administrative access to the system.
Published at: July 29, 2021 at 07:15PM
View on website

July 29, 2021 at 09:33PM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-5329

Dell EMC Avamar Server contains an open redirect vulnerability. A remote unauthenticated attacker may exploit this vulnerability to redirect application users to arbitrary web URLs by tricking the victim users to click on maliciously crafted links.
Published at: July 29, 2021 at 07:15PM
View on website

July 29, 2021 at 09:33PM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-22765

Cross Site Scripting (XSS) vulnerability in NukeViet cms 4.4.0 via the editor in the News module.
Published at: July 30, 2021 at 05:15PM
View on website

July 30, 2021 at 07:33PM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-22761

Cross Site Request Forgery (CSRF) vulnerability in FlatPress 1.1 via the DeleteFile function in flat/admin.php.
Published at: July 30, 2021 at 05:15PM
View on website

July 30, 2021 at 07:33PM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-21854

Cross Site Scripting vulnerabiity exists in WDScanner 1.1 in the system management page.
Published at: July 30, 2021 at 05:15PM
View on website

July 30, 2021 at 07:33PM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-21809

SQL Injection vulnerability in NukeViet CMS module Shops 4.0.29 and 4.3 via the (1) listid parameter in detail.php and the (2) group_price or groupid parameters in search_result.php.
Published at: July 30, 2021 at 05:15PM
View on website

July 30, 2021 at 07:33PM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-21808

SQL Injection vulnerability in NukeViet CMS 4.0.10 - 4.3.07 via:the topicsid parameter in modules/news/admin/addtotopics.php.
Published at: July 30, 2021 at 05:15PM
View on website

July 30, 2021 at 07:33PM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-21806

SQL Injection Vulnerability in ECTouch v2 via the shop page in index.php..
Published at: July 30, 2021 at 05:15PM
View on website

July 30, 2021 at 07:33PM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-20701

A stored cross site scripting (XSS) vulnerability in /app/config/of S-CMS PHP v3.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.
Published at: July 30, 2021 at 05:15PM
View on website

July 30, 2021 at 07:33PM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-20700

A stored cross site scripting (XSS) vulnerability in /app/form_add/of S-CMS PHP v3.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload entered into the Title Entry text box.
Published at: July 30, 2021 at 05:15PM
View on website

July 30, 2021 at 07:33PM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-20699

A cross site scripting (XSS) vulnerability in S-CMS PHP v3.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload entered into the Copyright text box under Basic Settings.
Published at: July 30, 2021 at 05:15PM
View on website

July 30, 2021 at 07:33PM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-20698

A remote code execution (RCE) vulnerability in /1.com.php of S-CMS PHP v3.0 allows attackers to getshell via modification of a PHP file.
Published at: July 30, 2021 at 05:15PM
View on website

July 30, 2021 at 07:33PM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-19118

Cross Site Scripting (XSS) vulnerabiity in YzmCMS 5.2 via the site_code parameter in admin/index/init.html.
Published at: July 30, 2021 at 05:15PM
View on website

July 30, 2021 at 07:33PM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-18175

SQL Injection vulnerability in Metinfo 6.1.3 via a dosafety_emailadd action in basic.php.
Published at: July 30, 2021 at 05:15PM
View on website

July 30, 2021 at 07:33PM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-18158

Cross Site Scripting (XSS) vulnerability in HuCart 5.7.4 via nickname in index.php.
Published at: July 30, 2021 at 05:15PM
View on website

July 30, 2021 at 07:33PM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-18157

Cross Site Request Forgery (CSRF) vulnerability in MetInfo 6.1.3 via a doaddsave action in admin/index.php.
Published at: July 30, 2021 at 05:15PM
View on website

July 30, 2021 at 07:33PM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-18013

SQL Injextion vulnerability exists in Whatsns 4.0 via the ip parameter in index.php?admin_banned/add.htm.
Published at: July 30, 2021 at 05:15PM
View on website

July 30, 2021 at 07:33PM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-16839

On Crestron DM-NVX-DIR, DM-NVX-DIR80, and DM-NVX-ENT devices before the DM-XIO/1-0-3-802 patch, the password can be changed by sending an unauthenticated WebSocket request.
Published at: July 30, 2021 at 05:15PM
View on website

July 30, 2021 at 07:33PM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-15948

eGain Chat 15.5.5 allows XSS via the Name (aka full_name) field.
Published at: July 30, 2021 at 05:15PM
View on website

July 30, 2021 at 07:33PM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-14999

A logic bug in system monitoring driver of Acronis Agent after 12.5.21540 and before 12.5.23094 allowed to bypass Windows memory protection and access sensitive data.
Published at: July 30, 2021 at 05:15PM
View on website

July 30, 2021 at 07:33PM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-11511

The LearnPress plugin before 3.2.6.9 for WordPress allows remote attackers to escalate the privileges of any user to LP Instructor via the accept-to-be-teacher action parameter.
Published at: July 30, 2021 at 05:15PM
View on website

July 30, 2021 at 07:33PM

via National Vulnerability Database


New vulnerabilities from the NVD: CVE-2020-10590

Replicated Classic 2.x versions have an improperly secured API that exposes sensitive data from the Replicated Admin Console configuration. An attacker with network access to the Admin Console port (8800) on the Replicated Classic server could retrieve the TLS Keypair (Cert and Key) used to configure the Admin Console.
Published at: July 30, 2021 at 05:15PM
View on website

July 30, 2021 at 07:33PM

via National Vulnerability Database