Aggregator
CVE-2024-11667 | Zyxel ATP/USG FLEX/USG FLEX 50(W)/USG20(W)-VPN up to 5.38 URL path traversal
4 months 3 weeks ago
A vulnerability was found in Zyxel ATP, USG FLEX, USG FLEX 50(W) and USG20(W)-VPN up to 5.38. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component URL Handler. The manipulation leads to path traversal.
This vulnerability is known as CVE-2024-11667. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-52323 | Zoho ManageEngine Analytics Plus up to 6099 information disclosure
4 months 3 weeks ago
A vulnerability was found in Zoho ManageEngine Analytics Plus up to 6099. It has been classified as problematic. Affected is an unknown function. The manipulation leads to information disclosure.
This vulnerability is traded as CVE-2024-52323. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
甲骨文ARM架构VPS搭建 Mtproxy
4 months 3 weeks ago
很多人白嫖了 Oracle ARM 架构的服务器不知道放点啥,用来搭建 MTP 代理,却很容易失败,遇到各种错误阻碍,今天简单整理下在 ARM 架构下搭建 MTProxy 的方法教程。MTPro...
黑海洋
CVE-2015-7611 | Apache James Server 2.3.2 os command injection (Entry 133798 / EDB-48130)
4 months 3 weeks ago
A vulnerability was found in Apache James Server 2.3.2. It has been classified as critical. This affects an unknown part. The manipulation leads to os command injection.
This vulnerability is uniquely identified as CVE-2015-7611. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Matrix黑客组织部署新型大规模IoT僵尸网络进行DDoS攻击
4 months 3 weeks ago
近日,一起大规模的数据泄露事件震动了网络安全界。名为“HikkI-Chan”的黑客在臭名昭著的Breach Forums上泄露了超过3.9亿VK用户的个人信息。
【安全圈】CVE-2024-8114:GitLab 漏洞允许权限升级
4 months 3 weeks ago
【安全圈】Firefox和Tor浏览器遭遇神秘0Day漏洞攻击
4 months 3 weeks ago
【安全圈】星巴克遭勒索攻击,回到纸质办公时代
4 months 3 weeks ago
【安全圈】VPN正在成为企业入侵的关键路径
4 months 3 weeks ago
Weekoverzicht Defensieoperaties
4 months 3 weeks ago
De multinationale gevechtsgroep van de enhanced Forward Presence in Litouwen maakte deel uit van de parade voor de Lithuanian Armed Forces Day. Ook Nederlandse militairen namen deel aan het eerbetoon. De internationale troepenmacht toonde zo haar solidariteit met de bevolking. Een overzicht van Defensieoperaties in de week van 20 tot en met 26 november 2024.
Russian RomCom APT Group Leverages Zero-Day Flaws in Firefox and Windows
4 months 3 weeks ago
Russia-backed hackers, known as RomCom, have exploited critical zero-day vulnerabilities in Mozilla Firefox and Windows to launch targeted attacks
网络安全警报:MUT-8694 供应链攻击以 npm 和 PyPI 生态系统为目标
4 months 3 weeks ago
安全客
CVE-2009-1486 | Ninjadesigns Flatchat 3.0 pmscript.php with path traversal (EDB-8549 / SA34904)
4 months 3 weeks ago
A vulnerability, which was classified as critical, was found in Ninjadesigns Flatchat 3.0. Affected is an unknown function of the file pmscript.php. The manipulation of the argument with leads to path traversal.
This vulnerability is traded as CVE-2009-1486. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2009-1622 | EcShop 2.5.0 user.php order_sn sql injection (EDB-8548 / BID-34733)
4 months 3 weeks ago
A vulnerability was found in EcShop 2.5.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file user.php. The manipulation of the argument order_sn leads to sql injection.
This vulnerability is handled as CVE-2009-1622. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2009-1624 | Dew-code Dew-NewPHPLinks 2.0 index.php show path traversal (EDB-8545 / BID-34732)
4 months 3 weeks ago
A vulnerability classified as problematic was found in Dew-code Dew-NewPHPLinks 2.0. This vulnerability affects unknown code of the file index.php. The manipulation of the argument show leads to path traversal.
This vulnerability was named CVE-2009-1624. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2009-1625 | Davlin Thickbox Gallery 2 index.php ln path traversal (EDB-8546 / BID-34741)
4 months 3 weeks ago
A vulnerability, which was classified as critical, has been found in Davlin Thickbox Gallery 2. This issue affects some unknown processing of the file index.php. The manipulation of the argument ln leads to path traversal.
The identification of this vulnerability is CVE-2009-1625. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2009-1626 | Will Kraft EZ-Blog category sql injection (EDB-8547 / BID-34729)
4 months 3 weeks ago
A vulnerability, which was classified as critical, was found in Will Kraft EZ-Blog. Affected is an unknown function. The manipulation of the argument category leads to sql injection.
This vulnerability is traded as CVE-2009-1626. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2009-1516 | IceWarp Merak Mail Server 9.4.1 ActiveX Control api.dll second memory corruption (EDB-8542 / BID-34739)
4 months 3 weeks ago
A vulnerability was found in IceWarp Merak Mail Server 9.4.1 and classified as critical. Affected by this issue is some unknown functionality in the library api.dll of the component ActiveX Control. The manipulation of the argument second leads to memory corruption.
This vulnerability is handled as CVE-2009-1516. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2009-1621 | OpenCart 1.1.8 index.php route path traversal (EDB-8539 / Nessus ID 38665)
4 months 3 weeks ago
A vulnerability was found in OpenCart 1.1.8. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file index.php. The manipulation of the argument route leads to path traversal.
This vulnerability is known as CVE-2009-1621. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com