Aggregator
8Base
11 months ago
cohenido
8Base
11 months ago
cohenido
8Base
11 months ago
cohenido
【纳新】开源情报技术专业委员会欢迎您加入!
11 months ago
第四届全国开源情报技术大会(The 4th China Open Source Intelligence Technology Conference,COSINT 2024)将于2024年10月26日
【工具】情报分析师必备工具之:虚拟机
11 months ago
虚拟机(Virtual Machine)是通过软件模拟的完整计算机系统,是运行在一个完全隔离环境中的计算机系统,通俗来讲就是虚拟出来的电脑,它和真实的电脑几乎一模一样,但虚拟机的硬盘是在一个文件中虚拟
CVE-2024-43047 | Qualcomm Snapdragon Auto up to XR2 5G Platform HLOS use after free
11 months ago
A vulnerability classified as critical was found in Qualcomm Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile and Snapdragon Wearables. Affected by this vulnerability is an unknown functionality of the component HLOS. The manipulation leads to use after free.
This vulnerability is known as CVE-2024-43047. Local access is required to approach this attack. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-9913 | D-Link DIR-619L B1 2.06 /goform/formSetRoute curTime buffer overflow
11 months ago
A vulnerability was found in D-Link DIR-619L B1 2.06. It has been rated as critical. This issue affects the function formSetRoute of the file /goform/formSetRoute. The manipulation of the argument curTime leads to buffer overflow.
The identification of this vulnerability is CVE-2024-9913. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2024-9914 | D-Link DIR-619L B1 2.06 formSetWizardSelectMode curTime buffer overflow
11 months ago
A vulnerability classified as critical has been found in D-Link DIR-619L B1 2.06. Affected is the function formSetWizardSelectMode of the file /goform/formSetWizardSelectMode. The manipulation of the argument curTime leads to buffer overflow.
This vulnerability is traded as CVE-2024-9914. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2019-11358 | Oracle Insurance Accounting Analyzer 8.0.6/8.0.7/8.0.8 User Interface cross site scripting (Nessus ID 208606 / ID 176919)
11 months ago
A vulnerability was found in Oracle Insurance Accounting Analyzer 8.0.6/8.0.7/8.0.8. It has been classified as very critical. This affects an unknown part of the component User Interface. The manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2019-11358. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2019-11358 | Oracle Application Service Level Management 13.2.0.0/13.3.0.0 Service Level Agreements cross site scripting (Nessus ID 208606 / ID 176919)
11 months ago
A vulnerability was found in Oracle Application Service Level Management 13.2.0.0/13.3.0.0. It has been declared as critical. This vulnerability affects unknown code of the component Service Level Agreements. The manipulation leads to cross site scripting.
This vulnerability was named CVE-2019-11358. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2019-11358 | Oracle Big Data Discovery 1.6 Studio cross site scripting (Nessus ID 208606 / ID 176919)
11 months ago
A vulnerability was found in Oracle Big Data Discovery 1.6. It has been declared as critical. This vulnerability affects unknown code of the component Studio. The manipulation leads to cross site scripting.
This vulnerability was named CVE-2019-11358. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2019-11358 | Oracle Fusion Middleware MapViewer 12.2.1.3.0 Install cross site scripting (Nessus ID 208606 / ID 176919)
11 months ago
A vulnerability was found in Oracle Fusion Middleware MapViewer 12.2.1.3.0. It has been rated as critical. This issue affects some unknown processing of the component Install. The manipulation leads to cross site scripting.
The identification of this vulnerability is CVE-2019-11358. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2019-11358 | Oracle WebCenter Sites 12.2.1.3.0 Advanced UI cross site scripting (Nessus ID 208606 / ID 176919)
11 months ago
A vulnerability classified as critical has been found in Oracle WebCenter Sites 12.2.1.3.0. Affected is an unknown function of the component Advanced UI. The manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2019-11358. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2019-11358 | Oracle Tape Library ACSLS 8.5/8.5.1 Software cross site scripting (Nessus ID 208606 / ID 176919)
11 months ago
A vulnerability was found in Oracle Tape Library ACSLS 8.5/8.5.1. It has been classified as critical. Affected is an unknown function of the component Software. The manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2019-11358. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2019-11358 | Oracle Real-Time Scheduler 2.3.0.1/2.3.0.2/2.3.0.3 Next Gen Mobile Application cross site scripting (Nessus ID 208606 / ID 176919)
11 months ago
A vulnerability was found in Oracle Real-Time Scheduler 2.3.0.1/2.3.0.2/2.3.0.3. It has been classified as critical. Affected is an unknown function of the component Next Gen Mobile Application. The manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2019-11358. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2019-11358 | Oracle Utilities Mobile Workforce Management 2.3.0.1/2.3.0.2/2.3.0.3 Next Gen Mobile Application cross site scripting (Nessus ID 208606 / ID 176919)
11 months ago
A vulnerability was found in Oracle Utilities Mobile Workforce Management 2.3.0.1/2.3.0.2/2.3.0.3. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component Next Gen Mobile Application. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2019-11358. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2008-0147 | SmallNuke 2.0.4 index.php username sql injection (EDB-4863 / XFDB-39525)
11 months ago
A vulnerability, which was classified as critical, has been found in SmallNuke 2.0.4. This issue affects some unknown processing of the file index.php. The manipulation of the argument username leads to sql injection.
The identification of this vulnerability is CVE-2008-0147. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-0148 | TUTOS 1.3 cmd access control (EDB-4861 / XFDB-39531)
11 months ago
A vulnerability, which was classified as critical, was found in TUTOS 1.3. Affected is an unknown function. The manipulation of the argument cmd leads to improper access controls.
This vulnerability is traded as CVE-2008-0148. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-0233 | Zero CMS up to 1.0 Alpha Access Restriction access control (File //packetst / EDB-4864)
11 months ago
A vulnerability, which was classified as critical, has been found in Zero CMS up to 1.0 Alpha. This issue affects some unknown processing of the component Access Restriction. The manipulation leads to improper access controls.
The identification of this vulnerability is CVE-2008-0233. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com