Aggregator
我为什么坚信网络和信息安全的内在逻辑
4 months 3 weeks ago
摘要随着全球经济一体化和科技的快速发展,网络和信息安全已经不仅仅是技术领域的问题,而是关乎全球经济稳定、国家安全以及国际合作的核心议题。在全球供应链重构、数字经济崛起及科技创新的背景下,信息安全的重要
Do you know a website for wishlist ?
4 months 3 weeks ago
CVE-2013-4103 | Cryptocat up to 2.0.21 input validation (ID 134252 / EDB-38637)
4 months 3 weeks ago
A vulnerability, which was classified as critical, was found in Cryptocat up to 2.0.21. This affects an unknown part. The manipulation leads to improper input validation.
This vulnerability is uniquely identified as CVE-2013-4103. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-12591 | wbolt MagicPost Plugin up to 1.2.1 on WordPress Shortcode wb_share_social cross site scripting
4 months 3 weeks ago
A vulnerability was found in wbolt MagicPost Plugin up to 1.2.1 on WordPress. It has been declared as problematic. Affected by this vulnerability is the function wb_share_social of the component Shortcode Handler. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2024-12591. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-12408 | wpseahorse WP on AWS Plugin up to 5.2.1 on WordPress cross site scripting
4 months 3 weeks ago
A vulnerability was found in wpseahorse WP on AWS Plugin up to 5.2.1 on WordPress. It has been classified as problematic. Affected is an unknown function. The manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2024-12408. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-12558 | puckrobin WP BASE Booking of Appointments, Services and Events Plugin export_db authorization
4 months 3 weeks ago
A vulnerability was found in puckrobin WP BASE Booking of Appointments, Services and Events Plugin up to 4.9.2 on WordPress and classified as problematic. This issue affects the function export_db. The manipulation leads to missing authorization.
The identification of this vulnerability is CVE-2024-12558. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2021-3129 | Ignition up to 2.5.1 Debug Mode file_get_contents/file_put_contents Remote Code Execution (EDB-49424)
4 months 3 weeks ago
A vulnerability was found in Ignition up to 2.5.1. It has been declared as critical. This vulnerability affects the function file_get_contents/file_put_contents of the component Debug Mode. The manipulation leads to Remote Code Execution.
This vulnerability was named CVE-2021-3129. The attack can be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
RansomHub
4 months 3 weeks ago
cohenido
RansomHub
4 months 3 weeks ago
cohenido
看看产业里 AI 应用的进展吧,它治愈了我的 AI 价值焦虑
4 months 3 weeks ago
不用怀疑,AI 就是未来的新阶梯。文 | 张鹏编辑 | 宛辰你会发现,当把目光放在消费级应用时,无论是软件还是硬件,面对的问题其实很复杂。除了 AI 技术本身的能力够不够,还有产品和工程上的可实现性,
看看产业里 AI 应用的进展吧,它治愈了我的 AI 价值焦虑
4 months 3 weeks ago
不用怀疑,AI 就是未来的新阶梯。
强网杯S8决赛Reverse
4 months 3 weeks ago
看雪论坛作者ID:xi@0ji233
欢迎报名!“系统0day安全”系列课程:掌握漏洞挖掘重要技能
4 months 3 weeks ago
全是干货
强网杯S8决赛Reverse
4 months 3 weeks ago
复盘一下强网决赛的Reverse题。一S1mpleVM附件下载:https://xia0ji233.pro/2024/12/11/qwb2024_final_reverse/S1mpLeVM_6d42
欢迎报名!“系统0day安全”系列课程:掌握漏洞挖掘重要技能
4 months 3 weeks ago
数字化时代,系统漏洞如同隐形的威胁,潜伏在企业网络的每个角落。0day漏洞的发现与利用,已成为黑客攻击的主要手段,给企业安全带来巨大的威胁和挑战。我们特别推出了“系统0day安全”系列课程,本系列课程
CVE-2012-4997 | AneCMS 2e2c583 path traversal (EDB-18559 / XFDB-73682)
4 months 3 weeks ago
A vulnerability was found in AneCMS 2e2c583. It has been rated as critical. This issue affects some unknown processing. The manipulation leads to path traversal.
The identification of this vulnerability is CVE-2012-4997. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2017-6074 | Oracle Communications ECz7.x/ECz8.x Session Border Controller double free (EDB-41457 / Nessus ID 97347)
4 months 3 weeks ago
A vulnerability, which was classified as critical, was found in Oracle Communications ECz7.x/ECz8.x. This affects an unknown part of the component Session Border Controller. The manipulation leads to double free.
This vulnerability is uniquely identified as CVE-2017-6074. The attack needs to be approached locally. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2020-13629 | Espressif UART Download Mode uninitialized pointer (AR2020-001)
4 months 3 weeks ago
A vulnerability has been found in Espressif and classified as problematic. This vulnerability affects unknown code of the component UART Download Mode. The manipulation leads to uninitialized pointer.
This vulnerability was named CVE-2020-13629. It is possible to launch the attack on the physical device. There is no exploit available.
vuldb.com
CVE-2020-15048 | Espressif Flash injection (AR2020-001)
4 months 3 weeks ago
A vulnerability, which was classified as problematic, was found in Espressif. This affects an unknown part of the component Flash Handler. The manipulation leads to injection.
This vulnerability is uniquely identified as CVE-2020-15048. It is possible to launch the attack on the physical device. There is no exploit available.
vuldb.com