Aggregator
CVE-2019-9623 | Feng Office 3.7.0.5 ck_upload_handler.php shtml File unrestricted upload (EDB-46471)
CVE-2019-12185 | Elabftw 1.8.5 File Upload EntityController.php POST Request command injection (EDB-46869)
CVE-2019-13961 | flatCore up to 1.4 files.upload-script.php cross-site request forgery (ID 39 / EDB-52166)
CVE-2019-11354 | Electronic Arts Origin Client 10.5.36 on Windows Template Title code injection (News 153375 / EDB-47021)
CVE-2019-15811 | DomainMod up to 4.13 cost-by-month.php daterange cross site scripting (ID 154270 / EDB-47325)
CVE-2023-38427 | Linux Kernel up to 6.3.7 ksmbd fs/smb/server/smb2pdu.c deassemble_neg_contexts out-of-bounds (Nessus ID 249907)
CVE-2022-49888 | Linux Kernel up to 5.15.77/6.0.7 arm64 kprobe_events cortex_a76_erratum_1463225_debug_handler stack-based overflow (Nessus ID 249908)
CVE-2021-47330 | Linux Kernel up to 5.13.3 tty serial_config memory leak (Nessus ID 249911)
CVE-2019-15212 | Linux Kernel up to 5.1.7 USB Device rio500.c double free (USN-4115-1 / Nessus ID 249912)
Dutch Traffic Cameras Go Dark After Major Cyberattack
Several automated traffic enforcement cameras in the Netherlands were temporarily taken out of service following a July incident. As confirmed by the Dutch Openbaar Ministerie (OM)—the national public prosecutor’s office—the shutdown affected not only...
The post Dutch Traffic Cameras Go Dark After Major Cyberattack appeared first on Penetration Testing Tools.
CVE-2025-9097 | Euro Information CIC banque et compte en ligne App 12.56.0 on Android com.cic_prod.bad AndroidManifest.xml improper export of android application components
Unmasking the New Sanctions: How a Crypto Exchange Evaded Authorities and Supported Ransomware
U.S. authorities have once again imposed sanctions on the cryptocurrency exchange Garantex, accusing it of facilitating the laundering of more than $100 million in illicit funds and supporting the operations of ransomware groups. Founded...
The post Unmasking the New Sanctions: How a Crypto Exchange Evaded Authorities and Supported Ransomware appeared first on Penetration Testing Tools.
.NET 内网攻防实战电子报刊
.NET 绕过运行隔离,通过 AppDomain 创建与管理新的应用程序域
.NET 文件监控,实时记录捕获上传的 WebShell
.NET 文件监控,实时记录捕获上传的 WebShell
.NET 内网攻防实战电子报刊
.NET 绕过运行隔离,通过 AppDomain 创建与管理新的应用程序域
Urgent Security Patches: Zoom and Xerox Address Critical Flaws
Zoom has patched a critical vulnerability in its Windows clients, while Xerox has issued fixes for severe flaws in its FreeFlow Core system. Both issues posed significant threats—ranging from privilege escalation to remote code...
The post Urgent Security Patches: Zoom and Xerox Address Critical Flaws appeared first on Penetration Testing Tools.