Aggregator
Nederland bestelt in Tsjechië meer artilleriegranaten en pantserhouwitsers voor Oekraïne
10 months 3 weeks ago
Nederland bestelt samen met Denemarken nieuwe artilleriegranaten voor Oekraïne. Deze worden besteld bij de Tsjechische defensie-industrie. Dat valt te lezen in een gezamenlijke verklaring van Nederland, Tsjechië en Denemarken, die is vrijgegeven rondom de Europese Raad.
mbNET.mini工业路由器发现严重漏洞,可能导致全面系统接管
10 months 3 weeks ago
安全客
Researchers Uncover Cicada3301 Ransomware Operations and Its Affiliate Program
10 months 3 weeks ago
Cybersecurity researchers have gleaned additional insights into a nascent ransomware-as-a-service (RaaS) called Cicada3301 after successfully gaining access to the group's affiliate panel on the dark web.
Singapore-headquartered Group-IB said it contacted the threat actor behind the Cicada3301 persona on the RAMP cybercrime forum via the Tox messaging service after the latter put out an
The Hacker News
CVE-2008-0811 | AuraCMS 1.62 query sql injection (EDB-5130 / BID-27841)
10 months 3 weeks ago
A vulnerability was found in AuraCMS 1.62. It has been classified as critical. Affected is an unknown function. The manipulation of the argument query leads to sql injection.
This vulnerability is traded as CVE-2008-0811. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-0829 | Mambo 2.6.8 jooget.php id sql injection (EDB-5132 / BID-27836)
10 months 3 weeks ago
A vulnerability was found in Mambo 2.6.8. It has been classified as critical. Affected is an unknown function of the file jooget.php. The manipulation of the argument id leads to sql injection.
This vulnerability is traded as CVE-2008-0829. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-0835 | Simple CMS up to 1.0.3 indexen.php area sql injection (EDB-5131 / BID-27843)
10 months 3 weeks ago
A vulnerability has been found in Simple CMS up to 1.0.3 and classified as critical. Affected by this vulnerability is an unknown functionality of the file indexen.php. The manipulation of the argument area leads to sql injection.
This vulnerability is known as CVE-2008-0835. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-0841 | Com Ricette Component 1.0 on Joomla index.php id sql injection (EDB-5133 / BID-27834)
10 months 3 weeks ago
A vulnerability classified as critical has been found in Com Ricette Component 1.0 on Joomla. Affected is an unknown function of the file index.php. The manipulation of the argument id leads to sql injection.
This vulnerability is traded as CVE-2008-0841. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-0814 | TRUC 0.11 download.php upload_filename path traversal (EDB-5129 / BID-27839)
10 months 3 weeks ago
A vulnerability classified as critical has been found in TRUC 0.11. This affects an unknown part of the file download.php. The manipulation of the argument upload_filename leads to path traversal.
This vulnerability is uniquely identified as CVE-2008-0814. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-0818 | freePHPgallery 0.6 comment.php path traversal (EDB-5124 / BID-27806)
10 months 3 weeks ago
A vulnerability has been found in freePHPgallery 0.6 and classified as critical. Affected by this vulnerability is an unknown functionality of the file comment.php. The manipulation leads to path traversal.
This vulnerability is known as CVE-2008-0818. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-0821 | OSI Codes Inc. PHPLive 3.2.2 questid sql injection (EDB-5125 / BID-27807)
10 months 3 weeks ago
A vulnerability was found in OSI Codes Inc. PHPLive 3.2.2. It has been declared as critical. This vulnerability affects unknown code. The manipulation of the argument questid leads to sql injection.
This vulnerability was named CVE-2008-0821. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-0832 | Kemas Antonius Com Quran up to 1.1 on Joomla index.php surano sql injection (EDB-5128 / XFDB-40573)
10 months 3 weeks ago
A vulnerability classified as critical was found in Kemas Antonius Com Quran up to 1.1 on Joomla. This vulnerability affects unknown code of the file index.php. The manipulation of the argument surano leads to sql injection.
This vulnerability was named CVE-2008-0832. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-0822 | Scribe 0.2 index.php page path traversal (EDB-5123 / BID-27803)
10 months 3 weeks ago
A vulnerability was found in Scribe 0.2. It has been rated as problematic. This issue affects some unknown processing of the file index.php. The manipulation of the argument page leads to path traversal.
The identification of this vulnerability is CVE-2008-0822. An attack has to be approached locally. Furthermore, there is an exploit available.
vuldb.com
CVE-2024-49315 | CodeFlock Free Download Manager Plugin up to 1.0.0 on WordPress path traversal
10 months 3 weeks ago
A vulnerability was found in CodeFlock Free Download Manager Plugin up to 1.0.0 on WordPress. It has been classified as critical. Affected is an unknown function. The manipulation leads to path traversal.
This vulnerability is traded as CVE-2024-49315. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-48038 | Hans Matzen wp-Monalisa Plugin up to 6.4 on WordPress cross-site request forgery
10 months 3 weeks ago
A vulnerability was found in Hans Matzen wp-Monalisa Plugin up to 6.4 on WordPress and classified as problematic. This issue affects some unknown processing. The manipulation leads to cross-site request forgery.
The identification of this vulnerability is CVE-2024-48038. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-49392 | Acronis Cyber Files prior 9.0.0x24 on Windows Enrollment InvitationPage cross site scripting
10 months 3 weeks ago
A vulnerability has been found in Acronis Cyber Files on Windows and classified as problematic. This vulnerability affects unknown code of the component Enrollment InvitationPage. The manipulation leads to cross site scripting.
This vulnerability was named CVE-2024-49392. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-49389 | Acronis Cyber Files prior 9.0.0x24 on Windows default permission
10 months 3 weeks ago
A vulnerability, which was classified as critical, was found in Acronis Cyber Files on Windows. This affects an unknown part. The manipulation leads to incorrect default permissions.
This vulnerability is uniquely identified as CVE-2024-49389. It is possible to launch the attack on the local host. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-48048 | Wsify Widget Plugin up to 1.0 on WordPress cross-site request forgery
10 months 3 weeks ago
A vulnerability classified as problematic was found in Wsify Widget Plugin up to 1.0 on WordPress. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross-site request forgery.
This vulnerability is known as CVE-2024-48048. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-49391 | Acronis Cyber Files prior 9.0.0x24 on Windows uncontrolled search path
10 months 3 weeks ago
A vulnerability, which was classified as critical, has been found in Acronis Cyber Files on Windows. Affected by this issue is some unknown functionality. The manipulation leads to uncontrolled search path.
This vulnerability is handled as CVE-2024-49391. Attacking locally is a requirement. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-48037 | A WP Life Contact Form Widget Plugin up to 1.4.2 on WordPress cross-site request forgery
10 months 3 weeks ago
A vulnerability classified as problematic has been found in A WP Life Contact Form Widget Plugin up to 1.4.2 on WordPress. Affected is an unknown function. The manipulation leads to cross-site request forgery.
This vulnerability is traded as CVE-2024-48037. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com