Aggregator
CVE-2014-7419 | PokeCreator Lite 1.1 X.509 Certificate cryptographic issues (VU#582497)
11 months 2 weeks ago
A vulnerability has been found in PokeCreator Lite 1.1 and classified as critical. This vulnerability affects unknown code of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
This vulnerability was named CVE-2014-7419. The attack needs to be approached within the local network. There is no exploit available.
vuldb.com
CVE-2014-7418 | magzter BBC Knowledge Magazine 3.01 X.509 Certificate cryptographic issues (VU#582497)
11 months 2 weeks ago
A vulnerability, which was classified as critical, was found in magzter BBC Knowledge Magazine 3.01. This affects an unknown part of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
This vulnerability is uniquely identified as CVE-2014-7418. Access to the local network is required for this attack to succeed. There is no exploit available.
vuldb.com
国庆最后一天福利 | 星球免费名额赠送+知识星球优惠券放送
11 months 2 weeks ago
CVE-2007-4790 | Microsoft Internet Explorer 7 fpole.ocx/foxtlib.ocx FoxDoCmd memory corruption (EDB-4369 / Nessus ID 31044)
11 months 2 weeks ago
A vulnerability was found in Microsoft Internet Explorer 7. It has been classified as critical. Affected is the function FoxDoCmd in the library fpole.ocx/foxtlib.ocx. The manipulation leads to memory corruption.
This vulnerability is traded as CVE-2007-4790. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
关注 | 中央网信办部署开展“清朗·整治违规开展互联网新闻信息服务”专项行动
11 months 2 weeks ago
为进一步规范互联网新闻信息服务活动,提升主流新闻舆论影响力,营造清朗网络空间,近日,中央网信办印发通知,部署开展为期3个月的“清朗·整治违规开展互联网新闻信息服务”专项行动。
专家解读 | 《人工智能能力建设普惠计划》
11 months 2 weeks ago
2024年9月25日,“人工智能能力建设国际合作”高级别会议在纽约联合国总部举行。中方在会上提出《人工智能能力建设普惠计划》引起国际社会广泛关注和积极支持。
专家解读 | 时建中:强化网络数据安全治理体系和能力现代化的法治保障
11 months 2 weeks ago
《网络数据安全管理条例》以《网络安全法》《数据安全法》等法律为依据,聚焦网络数据,细化相关规定,完善网络数据安全规则,为提升网络数据安全治理体系和能力现代化提供了更有可操作性的法治保障,标志着我国网络数据安全治理进入了新阶段。
Broadcom Firmware Update Image Unpacker (Bash script created while learning firmware analysis.)
11 months 2 weeks ago
CVE-2002-0991 | HP CIFS-9000 Server up to A.01.06 Sharity Package -U/-D/-P/-S/-N/-u memory corruption (EDB-21577 / XFDB-9431)
11 months 2 weeks ago
A vulnerability was found in HP CIFS-9000 Server up to A.01.06 and classified as critical. This issue affects some unknown processing of the component Sharity Package. The manipulation of the argument -U/-D/-P/-S/-N/-u leads to memory corruption.
The identification of this vulnerability is CVE-2002-0991. The attack needs to be approached locally. Furthermore, there is an exploit available.
vuldb.com
Here's How I Built a Webflow Like UI Builder for Python
11 months 2 weeks ago
I have been working on a Drag and Drop builder for Python for the last few weeks.You can check it ou
CVE-2005-3685 | Virtual Programming VP-ASP 5.50 Shopping Cart shopadmin.asp UserName cross site scripting (EDB-26537 / BID-15490)
11 months 2 weeks ago
A vulnerability classified as problematic has been found in Virtual Programming VP-ASP 5.50. This affects an unknown part of the file shopadmin.asp of the component Shopping Cart. The manipulation of the argument UserName leads to basic cross site scripting.
This vulnerability is uniquely identified as CVE-2005-3685. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2016-4000 | Oracle Enterprise Manager Base Platform 13.2/13.3 Jython deserialization (ID 176072 / BID-105647)
11 months 2 weeks ago
A vulnerability classified as very critical was found in Oracle Enterprise Manager Base Platform 13.2/13.3. Affected by this vulnerability is an unknown functionality of the component Jython. The manipulation leads to deserialization.
This vulnerability is known as CVE-2016-4000. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-5458 | PHP up to 8.1.28/8.2.19/8.3.7 URL Filter filter_var data authenticity (Nessus ID 208047)
11 months 2 weeks ago
A vulnerability was found in PHP up to 8.1.28/8.2.19/8.3.7. It has been rated as critical. Affected by this issue is the function filter_var of the component URL Filter Handler. The manipulation leads to insufficient verification of data authenticity.
This vulnerability is handled as CVE-2024-5458. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-48733 | Linux Kernel up to 5.15.21/5.16.7 btrfs ioctl.c create_snapshot use after free (a7b717fa1516/9372fa1d73da/28b21c558a37 / Nessus ID 208045)
11 months 2 weeks ago
A vulnerability, which was classified as critical, was found in Linux Kernel up to 5.15.21/5.16.7. Affected is the function create_snapshot of the file ioctl.c of the component btrfs. The manipulation leads to use after free.
This vulnerability is traded as CVE-2022-48733. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-47806 | Jenkins OpenId Connect Authentication Plugin up to 4.354.v321ce67a_1de8 improper authentication (Nessus ID 208097)
11 months 2 weeks ago
A vulnerability was found in Jenkins OpenId Connect Authentication Plugin up to 4.354.v321ce67a_1de8. It has been classified as critical. This affects an unknown part. The manipulation leads to improper authentication.
This vulnerability is uniquely identified as CVE-2024-47806. The attack needs to be approached within the local network. There is no exploit available.
vuldb.com
CVE-2024-47807 | Jenkins OpenId Connect Authentication Plugin up to 4.354.v321ce67a_1de8 improper authentication (Nessus ID 208097)
11 months 2 weeks ago
A vulnerability was found in Jenkins OpenId Connect Authentication Plugin up to 4.354.v321ce67a_1de8. It has been declared as critical. This vulnerability affects unknown code. The manipulation leads to improper authentication.
This vulnerability was named CVE-2024-47807. The attack can only be done within the local network. There is no exploit available.
vuldb.com
CVE-2024-46859 | Linux Kernel up to 6.1.110/6.6.51/6.10.10 panasonic-laptop out-of-bounds (Nessus ID 208099)
11 months 2 weeks ago
A vulnerability, which was classified as problematic, has been found in Linux Kernel up to 6.1.110/6.6.51/6.10.10. This issue affects some unknown processing of the component panasonic-laptop. The manipulation leads to out-of-bounds read.
The identification of this vulnerability is CVE-2024-46859. Access to the local network is required for this attack. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-46865 | Linux Kernel up to 6.1.110/6.6.51/6.10.10 initialization (Nessus ID 208099)
11 months 2 weeks ago
A vulnerability was found in Linux Kernel up to 6.1.110/6.6.51/6.10.10. It has been declared as critical. This vulnerability affects unknown code. The manipulation leads to improper initialization.
This vulnerability was named CVE-2024-46865. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-46855 | Linux Kernel up to 6.1.110/6.6.51/6.10.10 nft_socket reference count (Nessus ID 208099)
11 months 2 weeks ago
A vulnerability, which was classified as critical, was found in Linux Kernel up to 6.1.110/6.6.51/6.10.10. This affects an unknown part of the component nft_socket. The manipulation leads to improper update of reference count.
This vulnerability is uniquely identified as CVE-2024-46855. The attack can only be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com