Aggregator
CVE-1999-0822 | Ipswitch IMail up to 5.07 POP3 Service AUTH memory corruption (EDB-19645 / Nessus ID 10184)
11 months ago
A vulnerability, which was classified as very critical, has been found in Ipswitch IMail up to 5.07. Affected by this issue is some unknown functionality of the component POP3 Service. The manipulation of the argument AUTH leads to memory corruption.
This vulnerability is handled as CVE-1999-0822. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-0398 | longpi1 warehouse 1.0 Backend updateInport remark cross site scripting
11 months ago
A vulnerability has been found in longpi1 warehouse 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /resources/..;/inport/updateInport of the component Backend. The manipulation of the argument remark leads to cross site scripting.
This vulnerability is known as CVE-2025-0398. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-0397 | reckcn SPPanAdmin 1.0 /;/admin/role/edit name cross site scripting
11 months ago
A vulnerability, which was classified as problematic, was found in reckcn SPPanAdmin 1.0. Affected is an unknown function of the file /;/admin/role/edit. The manipulation of the argument name leads to cross site scripting.
This vulnerability is traded as CVE-2025-0397. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
The vendor was contacted early about this disclosure but did not respond in any way.
Other parameters might be affected as well. The vendor was contacted early about this disclosure but did not respond in any way.
vuldb.com
Has anyone tried hijacking school Apple TVs for a prank?
11 months ago
Yo, I’m planning something for the end of the school year, and I need some advice. My scho
Submit #473316: longpi1 warehouse 1.0 storage XSS [Accepted]
11 months ago
Submit #473316 / VDB-291271
LVZC4
Submit #473287: reckcn SPPanAdmin 1.0 storage type XSS [Accepted]
11 months ago
Submit #473287 / VDB-291270
LVZC
CVE-2025-0396 | exelban stats up to 2.11.21 XPC Service shouldAcceptNewConnection command injection
11 months ago
A vulnerability, which was classified as critical, has been found in exelban stats up to 2.11.21. This issue affects the function shouldAcceptNewConnection of the component XPC Service. The manipulation leads to command injection.
The identification of this vulnerability is CVE-2025-0396. It is possible to launch the attack on the local host. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
DoJ charged three Russian citizens with operating crypto-mixing services
11 months ago
The U.S. Department of Justice charged three Russian citizens with operating crypto-mixing services that helped crooks launder cryptocurrency. The U.S. Department of Justice (DoJ) charged Russian national Roman Vitalyevich Ostapenko, Alexander Evgenievich Oleynik, and Anton Vyachlavovich Tarasov with operating crypto-mixing services Blender.io and Sinbad.io that helped crooks launder cryptocurrency. Roman Vitalyevich Ostapenko and Alexander Evgenievich […]
Pierluigi Paganini
DoJ charged three Russian citizens with operating crypto-mixing services
11 months ago
DoJ charged three Russian citizens with operating crypto-mixing services
Submit #473229: https://github.com/exelban Stats < v2.11.22 Local Privilege Escalation [Accepted]
11 months ago
Submit #473229 / VDB-291269
winslow1984
How to convert a password protected zip file into a RAR file?
11 months ago
CVE-2016-5309 | Symantec Mail Security for Domino up to 8.0.9/8.1.2/8.1.3 RAR Decompression out-of-bounds (SYM16-015 / EDB-40405)
11 months ago
A vulnerability was found in Symantec Mail Security for Domino up to 8.0.9/8.1.2/8.1.3. It has been rated as problematic. Affected by this issue is some unknown functionality of the component RAR Decompression. The manipulation leads to out-of-bounds read.
This vulnerability is handled as CVE-2016-5309. The attack needs to be approached locally. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2012-1188 | Fork CMS 3.2.6 name cross site scripting (EDB-36894 / XFDB-73605)
11 months ago
A vulnerability was found in Fork CMS 3.2.6. It has been declared as problematic. This vulnerability affects unknown code. The manipulation of the argument name leads to cross site scripting.
This vulnerability was named CVE-2012-1188. The attack can be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2002-1457 | Leszek Krupinski L-Forum 2.4.0 search.php search sql injection (EDB-21708 / XFDB-9837)
11 months ago
A vulnerability was found in Leszek Krupinski L-Forum 2.4.0. It has been classified as critical. Affected is an unknown function of the file search.php. The manipulation of the argument search leads to sql injection.
This vulnerability is traded as CVE-2002-1457. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2014-4725 | MailPoet Newsletters up to 1.0.0 improper authentication (EDB-33991 / Nessus ID 76526)
11 months ago
A vulnerability was found in MailPoet Newsletters up to 1.0.0 and classified as critical. Affected by this issue is some unknown functionality. The manipulation leads to improper authentication.
This vulnerability is handled as CVE-2014-4725. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2007-4560 | SourceFire ClamAV 0.91.1 os command injection (EDB-16924 / Nessus ID 29830)
11 months ago
A vulnerability classified as very critical has been found in SourceFire ClamAV 0.91.1. Affected is an unknown function. The manipulation leads to os command injection.
This vulnerability is traded as CVE-2007-4560. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2000-1234 | Phorum 3.0.7 violation.php3 Mod/ForumName Relay privileges management (EDB-20587 / BID-2272)
11 months ago
A vulnerability classified as critical was found in Phorum 3.0.7. Affected by this vulnerability is an unknown functionality of the file violation.php3. The manipulation of the argument Mod/ForumName leads to improper privilege management (Relay).
This vulnerability is known as CVE-2000-1234. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
Суд отклонил обвинения в бездействии Роскомнадзора по делу YouTube
11 months ago
Петербуржец не смог доказать нарушение ведомством своих обязанностей.
免Telent/TTL屏蔽运营商新版光猫的远控、TR069和RMS,获取动态随机超级管理员密码并固化权限 | Kenvix's Blog
11 months ago
免Telent/TTL屏蔽运营商新版光猫的远控、TR069和RMS,获取动态随机超级管理员密码并固化权限