Aggregator
Страж эфира: CellGuard раскрывает тайны сотового подполья
11 months ago
Исследователи SEEMOO бросают вызов невидимым похитителям данных.
CVE-2016-1387 | Cisco TelePresence Codde up to 7.3.5 XML API improper authentication (CSCuz26935 / Nessus ID 91130)
11 months ago
A vulnerability was found in Cisco TelePresence Codde up to 7.3.5. It has been classified as critical. This affects an unknown part of the component XML API. The manipulation leads to improper authentication.
This vulnerability is uniquely identified as CVE-2016-1387. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-47789 | D3D Security IP Camera D8801 HTTP Header Protocol cleartext transmission (CIVN-2024-0314)
11 months ago
A vulnerability, which was classified as problematic, has been found in D3D Security IP Camera D8801. This issue affects some unknown processing of the component HTTP Header Protocol Handler. The manipulation leads to cleartext transmission of sensitive information. NOTE: This vulnerability only affects products that are no longer supported by the maintainer.
The identification of this vulnerability is CVE-2024-47789. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-47790 | D3D Security IP Camera D8801 Real-Time Streaming Protocol authorization (CIVN-2024-0314)
11 months ago
A vulnerability, which was classified as problematic, was found in D3D Security IP Camera D8801. Affected is an unknown function of the component Real-Time Streaming Protocol Handler. The manipulation leads to missing authorization. NOTE: This vulnerability only affects products that are no longer supported by the maintainer.
This vulnerability is traded as CVE-2024-47790. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-9923 | Teamplus Technology Team+ 13.5.x path traversal
11 months ago
A vulnerability was found in Teamplus Technology Team+ 13.5.x. It has been declared as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to relative path traversal.
This vulnerability is known as CVE-2024-9923. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-9921 | Teamplus Technology Team+ 13.5.x page sql injection
11 months ago
A vulnerability was found in Teamplus Technology Team+ 13.5.x. It has been rated as critical. Affected by this issue is some unknown functionality. The manipulation of the argument page leads to sql injection.
This vulnerability is handled as CVE-2024-9921. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-9922 | Teamplus Technology Team+ 13.5.x System Files path traversal
11 months ago
A vulnerability classified as problematic has been found in Teamplus Technology Team+ 13.5.x. This affects an unknown part of the component System Files Handler. The manipulation leads to relative path traversal.
This vulnerability is uniquely identified as CVE-2024-9922. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-9924 | Hgiga OAKlouds prior 1162 Incomplete Fix CVE-2024-26261 absolute path traversal
11 months ago
A vulnerability classified as very critical was found in Hgiga OAKlouds. This vulnerability affects unknown code of the component Incomplete Fix CVE-2024-26261. The manipulation leads to absolute path traversal.
This vulnerability was named CVE-2024-9924. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-43701 | Imagination Technologies Graphics DDK up to 24.2 RTM1 GPU System Call use after free
11 months ago
A vulnerability was found in Imagination Technologies Graphics DDK up to 24.2 RTM1. It has been rated as critical. This issue affects some unknown processing of the component GPU System Call Handler. The manipulation leads to use after free.
The identification of this vulnerability is CVE-2024-43701. It is possible to launch the attack on the local host. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2014-7670 | alawar Motor Town: Machine Soul Free 1.1 X.509 Certificate cryptographic issues (VU#582497)
11 months ago
A vulnerability was found in alawar Motor Town: Machine Soul Free 1.1. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
This vulnerability is known as CVE-2014-7670. Access to the local network is required for this attack to succeed. There is no exploit available.
vuldb.com
Безопасность или слежка? Новый закон ЕС угрожает открытому ПО
11 months ago
В ЕС вводятся новые стандарты безопасности для IoT-устройств.
CVE-2016-1388 | Cisco Prime Network Analysis Module up to 6.1/6.2 HTTP Request command injection (CSCuy21882 / ID 11678)
11 months ago
A vulnerability, which was classified as critical, has been found in Cisco Prime Network Analysis Module up to 6.1/6.2. Affected by this issue is some unknown functionality of the component HTTP Request Handler. The manipulation leads to command injection.
This vulnerability is handled as CVE-2016-1388. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
比飓风更可怕的,是一张 AI 生成图片
11 months ago
一眼假的 AI 图片,但我爸妈全信了。
安全动态回顾|工信部通报21款APP及SDK存在侵害用户权益行为 互联网档案馆遭黑客攻击致使数据泄露
11 months ago
公司简介 | 我要投稿
如何管理影子 IT 并减少攻击面
11 months ago
胡金鱼
CVE-2008-0355 | PHPEcho CMS up to 2.0-rc3 index.php id sql injection (EDB-4929 / XFDB-39741)
11 months ago
A vulnerability has been found in PHPEcho CMS up to 2.0-rc3 and classified as critical. Affected by this vulnerability is an unknown functionality of the file index.php. The manipulation of the argument id leads to sql injection.
This vulnerability is known as CVE-2008-0355. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-0357 | Galaxyscripts Mini File Host up to 1.2.1 language path traversal (EDB-4930 / XFDB-39799)
11 months ago
A vulnerability was found in Galaxyscripts Mini File Host up to 1.2.1 and classified as problematic. Affected by this issue is some unknown functionality. The manipulation of the argument language leads to path traversal.
This vulnerability is handled as CVE-2008-0357. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-0361 | Instituto Politicnico Nacional GradMan 0.1.3 agregar_info.php tabla path traversal (EDB-4926 / XFDB-39732)
11 months ago
A vulnerability classified as problematic has been found in Instituto Politicnico Nacional GradMan 0.1.3. Affected is an unknown function of the file agregar_info.php. The manipulation of the argument tabla leads to path traversal.
This vulnerability is traded as CVE-2008-0361. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-0382 | MyBB up to 1.10 forumdisplay.php sortby code injection (EDB-4927 / Nessus ID 29996)
11 months ago
A vulnerability classified as critical was found in MyBB. This vulnerability affects unknown code of the file forumdisplay.php. The manipulation of the argument sortby leads to code injection.
This vulnerability was named CVE-2008-0382. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com