Aggregator
【安全圈】国家网络安全中心发高危漏洞预警
6 months 3 weeks ago
关键词漏洞预警一、概述 📣发布单位:国家网络安全通报中心。涉及工具:AI绘图工具ComfyUI。
New Relic Enhances Software Reliability with GitHub Copilot Integration
6 months 3 weeks ago
New Relic's integration with GitHub Copilot to boost productivity and enhance software reliability. Discover more now!
The post New Relic Enhances Software Reliability with GitHub Copilot Integration appeared first on Security Boulevard.
Goverdhan Sisodia
Cybersecurity Alert: Major Breaches at TikTok and Ticketmaster
6 months 3 weeks ago
A major TikTok breach claims 428M user records are for sale, raising security alarms. Stay informed & secure your data today!
The post Cybersecurity Alert: Major Breaches at TikTok and Ticketmaster appeared first on Security Boulevard.
Rajveer Singh
CVE-2004-1655 | phpWebSite 0.7.3/0.8.2/0.8.3/0.9.3/0.9.3.4 Comments Module/Notes Module CM_pid/subject/message cross site scripting (EDB-24425 / XFDB-17202)
6 months 3 weeks ago
A vulnerability, which was classified as problematic, was found in phpWebSite 0.7.3/0.8.2/0.8.3/0.9.3/0.9.3.4. Affected is an unknown function of the component Comments Module/Notes Module. The manipulation of the argument CM_pid/subject/message leads to basic cross site scripting.
This vulnerability is traded as CVE-2004-1655. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2018-17254 | JCK Editor 6.4.4 on Joomla links.php parent sql injection (EDB-45423)
6 months 3 weeks ago
A vulnerability classified as critical was found in JCK Editor 6.4.4 on Joomla. This vulnerability affects unknown code of the file jtreelink/dialogs/links.php. The manipulation of the argument parent as part of Parameter leads to sql injection.
This vulnerability was named CVE-2018-17254. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2011-0266 | HP OpenView Network Node Manager 7.53 nnmRptConfig.exe nameParams memory corruption (EDB-17028 / Nessus ID 56843)
6 months 3 weeks ago
A vulnerability classified as very critical has been found in HP OpenView Network Node Manager 7.53. Affected is an unknown function of the file nnmRptConfig.exe. The manipulation of the argument nameParams leads to memory corruption.
This vulnerability is traded as CVE-2011-0266. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
New Linux Flaws Allow Password Hash Theft via Core Dumps in Ubuntu, RHEL, Fedora
6 months 3 weeks ago
Two information disclosure flaws have been identified in apport and systemd-coredump, the core dump handlers in Ubuntu, Red Hat Enterprise Linux, and Fedora, according to the Qualys Threat Research Unit (TRU).
Tracked as CVE-2025-5054 and CVE-2025-4598, both vulnerabilities are race condition bugs that could enable a local attacker to obtain access to access sensitive information. Tools like
The Hacker News
Как повлияет искусственный интеллект на информационную безопасность или мечтают ли андроиды об электроовцах?
6 months 3 weeks ago
Цель статьи подумать на тему как влияет сейчас и повлияет в будущем широкое распространение технологий искусственного интеллекта (ИИ) на мир информационной безопасности (ИБ). Дать некий туманный, а может и не очень, прогноз основываясь на непрозрачных фактах и собственных умозаключениях.
CVE-2010-4934 | Svcreation Get Tube up to 4.51 video.php ID sql injection (EDB-14637 / OSVDB-76225)
6 months 3 weeks ago
A vulnerability classified as critical was found in Svcreation Get Tube up to 4.51. Affected by this vulnerability is an unknown functionality of the file video.php. The manipulation of the argument ID leads to sql injection.
This vulnerability is known as CVE-2010-4934. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
安卓逆向基础知识之ARM汇编和so层动态调试
6 months 3 weeks ago
看雪论坛作者ID:黎明与黄昏
2025端午致谢 | 这份端午心意,我们“粽”意了!(文末留言赢端午礼品)
6 months 3 weeks ago
祝大家端午安康!
CVE-2013-6283 | VideoLAN VLC Media Player up to 2.0.8 M3U input validation (Exploit 27700 / EDB-27700)
6 months 3 weeks ago
A vulnerability, which was classified as critical, was found in VideoLAN VLC Media Player up to 2.0.8. Affected is an unknown function of the component M3U Handler. The manipulation leads to improper input validation.
This vulnerability is traded as CVE-2013-6283. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
欢迎申请 G.O.S.S.I.P 2025 暑期实习
6 months 3 weeks ago
别去美国,来G.O.S.S.I.P参加暑期实习吧!
CVE-2009-2360 | Horde passwd up to 3.1 backend cross site scripting (EDB-33065 / Nessus ID 44694)
6 months 3 weeks ago
A vulnerability was found in Horde passwd up to 3.1. It has been rated as problematic. This issue affects some unknown processing. The manipulation of the argument backend leads to cross site scripting.
The identification of this vulnerability is CVE-2009-2360. The attack may be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
俄罗斯核武库底牌曝光——泄密文件如何撕裂莫斯科的核威慑神话
6 months 3 weeks ago
俄罗斯核武库底牌曝光:泄密文件如何撕裂莫斯科的核威慑神话2025年5月29日,一份来自俄罗斯军方招标数据库的2
CVE-2009-3222 | FreeWebScriptz Honest Traffic 1.0 index.php msg cross site scripting (EDB-34772 / XFDB-51821)
6 months 3 weeks ago
A vulnerability, which was classified as problematic, was found in FreeWebScriptz Honest Traffic 1.0. Affected is an unknown function of the file index.php. The manipulation of the argument msg leads to cross site scripting.
This vulnerability is traded as CVE-2009-3222. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
Админы и разработчики наконец-то дождались — Windows 11 тестирует систему, где обновления не мешают работе и не пугают неожиданными перезагрузками
6 months 3 weeks ago
CVE-2018-19550 | Interspire Email Marketer up to 6.1.6 File Upload surveys_submit.php unrestricted upload (ID 153018 / EDB-46864)
6 months 3 weeks ago
A vulnerability, which was classified as critical, has been found in Interspire Email Marketer up to 6.1.6. Affected by this issue is some unknown functionality of the file surveys_submit.php of the component File Upload. The manipulation leads to unrestricted upload.
This vulnerability is handled as CVE-2018-19550. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
Кибератака на Белый дом с использованием ИИ стала ударом по репутации США
6 months 3 weeks ago
Кто и зачем крадёт голос доверия Трампа.