Aggregator
OneQuick 10 - 让 Windows 用得更爽!操作效率起飞的热键工具
11 months 2 weeks ago
优化辅助 Windows 2025-01-02过去我以为 Windows 本身操作效率用着还行,但自从用了 OneQuick,才发现以前的操作简直太繁琐了!就像手动挡汽车,而用了 One
CVE-2020-28977 | Canto Plugin 1.3.0 on WordPress /includes/lib/get.php subdomain server-side request forgery (EDB-49189)
11 months 2 weeks ago
A vulnerability classified as critical was found in Canto Plugin 1.3.0 on WordPress. Affected by this vulnerability is an unknown functionality of the file /includes/lib/get.php. The manipulation of the argument subdomain leads to server-side request forgery.
This vulnerability is known as CVE-2020-28977. The attack can only be done within the local network. Furthermore, there is an exploit available.
vuldb.com
FTP: Allow Anonymous user to view files/folders uploaded by real user
11 months 2 weeks ago
I've launched an AWS EC2 Instance running Ubuntu, installed `vsftpd` and made changes to t
派早报:Apple TV+ 即将开启新年免费体验、LineageOS 发布 22.1 更新等
11 months 2 weeks ago
你可能错过的新鲜事Apple TV+ 即将开启新年免费体验12 月 30 日,Apple 公司发布新闻稿表示,为了庆祝 2025 新年到来,所有用户均可在 2025 年的首个周末(即 1 月 3
Trying to hack a WindowsApp game but running into errors after patching ("This app can't open")
11 months 2 weeks ago
Hey all, I am pretty new to the hacking scene but I find it really interesting and
Daily Blog #705: AI Prompts that help me
11 months 2 weeks ago
By •January 01, 2025•AIDaily
Daily Dose of Dark Web Informer - January 1st, 2025
11 months 2 weeks ago
This daily article is intended to make it easier for those who want to stay updated with my regular Dark Web Informer and X/Twitter posts.
Dark Web Informer - Cyber Threat Intelligence
一文了解电力配网接入网建设方案
11 months 2 weeks ago
构建可靠、稳定、高性能的配电接入网。
一文了解电力配网接入网建设方案
11 months 2 weeks ago
前 言智能配电网是智能电网中的重要组成部分,包含5个部分:智能发电、输电、变电、配电和调度。智能配电网能够提高用户的供电可靠性、增强用电安全性、优化用电成本、提供个性化服务等,还能为未来的智慧城市建
CVE-2012-6517 | DiY-CMS 1.0 answer cross site scripting (EDB-18804 / XFDB-75229)
11 months 2 weeks ago
A vulnerability was found in DiY-CMS 1.0 and classified as problematic. Affected by this issue is some unknown functionality. The manipulation of the argument answer leads to cross site scripting.
This vulnerability is handled as CVE-2012-6517. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2010-1180 | Apple iOS 3.1.3 code injection (EDB-33810 / XFDB-57992)
11 months 2 weeks ago
A vulnerability classified as very critical has been found in Apple iOS 3.1.3. This affects an unknown part. The manipulation leads to code injection.
This vulnerability is uniquely identified as CVE-2010-1180. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2008-4795 | Opera Web Browser up to 9.61 cross site scripting (EDB-32548 / Nessus ID 34689)
11 months 2 weeks ago
A vulnerability classified as problematic has been found in Opera Web Browser up to 9.61. This affects an unknown part. The manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2008-4795. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2017-8051 | Tenable Appliance up to 4.4.0 Web UI simpleupload.py tns_appliance_session_user command injection (EDB-41892 / ID 11802)
11 months 2 weeks ago
A vulnerability classified as critical was found in Tenable Appliance up to 4.4.0. Affected by this vulnerability is an unknown functionality of the file simpleupload.py of the component Web UI. The manipulation of the argument tns_appliance_session_user leads to command injection.
This vulnerability is known as CVE-2017-8051. The attack can be launched remotely. Furthermore, there is an exploit available. Due to its background and reception, this vulnerability has an historic impact.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2002-1435 | Achievo up to 0.9.1 class.atkdateattribute.js.php config_atkroot privileges management (EDB-21745 / Nessus ID 11109)
11 months 2 weeks ago
A vulnerability was found in Achievo up to 0.9.1. It has been rated as critical. This issue affects some unknown processing of the file class.atkdateattribute.js.php. The manipulation of the argument config_atkroot leads to improper privilege management.
The identification of this vulnerability is CVE-2002-1435. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2016-2107 | Oracle Primavera P6 Professional Project Management 8.3/8.4/15.x/16.x OpenSSL cryptographic issues (EDB-39768 / Nessus ID 91033)
11 months 2 weeks ago
A vulnerability was found in Oracle Primavera P6 Professional Project Management 8.3/8.4/15.x/16.x. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component OpenSSL. The manipulation leads to cryptographic issues.
This vulnerability is known as CVE-2016-2107. The attack can be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2009-4494 | AOL AOLserver 4.5.1 Terminal input validation (EDB-33497 / BID-37712)
11 months 2 weeks ago
A vulnerability was found in AOL AOLserver 4.5.1. It has been classified as critical. Affected is an unknown function of the component Terminal. The manipulation leads to improper input validation.
This vulnerability is traded as CVE-2009-4494. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-3280 | OpenID Provider weak prng (EDB-5720)
11 months 2 weeks ago
A vulnerability classified as problematic has been found in OpenID Provider. Affected is an unknown function. The manipulation leads to cryptographically weak prng.
This vulnerability is traded as CVE-2008-3280. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2003-1504 | Goldscripts Goldlink 3.0 Cookie variables.php vadmin_login/vadmin_pass sql injection (EDB-23259 / XFDB-13465)
11 months 2 weeks ago
A vulnerability classified as critical has been found in Goldscripts Goldlink 3.0. This affects an unknown part of the file variables.php of the component Cookie Handler. The manipulation of the argument vadmin_login/vadmin_pass leads to sql injection.
This vulnerability is uniquely identified as CVE-2003-1504. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2006-0671 | Sony Ericsson W800i Bluetooth memory corruption (EDB-1473 / XFDB-24534)
11 months 2 weeks ago
A vulnerability, which was classified as critical, was found in Sony Ericsson W800i. This affects an unknown part of the component Bluetooth. The manipulation leads to memory corruption.
This vulnerability is uniquely identified as CVE-2006-0671. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com