Aggregator
每月动态 | Web3 安全事件总损失约 1.47 亿美元
6 months 1 week ago
Web3 安全事件每月盘点。
活动回顾|慢雾(SlowMist) 荣获 Invest HK Fintech "Must-know" 2024
6 months 1 week ago
慢雾将继续为构建更安全的区块链生态而努力!
CVE-2006-1278 | Upoint @1 File Store 2006.03.07 functions.php id sql injection (EDB-6040 / XFDB-43724)
6 months 1 week ago
A vulnerability was found in Upoint @1 File Store 2006.03.07. It has been classified as critical. This affects an unknown part of the file functions.php. The manipulation of the argument id leads to sql injection.
This vulnerability is uniquely identified as CVE-2006-1278. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to add further authentication.
vuldb.com
CVE-2006-1278 | @1 File Store libs/functions.php id sql injection (EDB-6040 / XFDB-25183)
6 months 1 week ago
A vulnerability has been found in @1 File Store and classified as critical. Affected by this vulnerability is an unknown functionality of the file libs/functions.php. The manipulation of the argument id leads to sql injection.
This vulnerability is known as CVE-2006-1278. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-6877 | Zen Cart 1.3.8 htaccess initsystem.php loader_file path traversal (EDB-6038 / BID-30179)
6 months 1 week ago
A vulnerability, which was classified as critical, has been found in Zen Cart 1.3.8. This issue affects some unknown processing of the file admin/includes/initsystem.php of the component htaccess. The manipulation of the argument loader_file leads to path traversal.
The identification of this vulnerability is CVE-2008-6877. The attack may be initiated remotely. Furthermore, there is an exploit available.
The real existence of this vulnerability is still doubted at the moment.
vuldb.com
CVE-2008-6878 | Zen Cart up to 1.3.8 htaccess english.php _SESSION[language] path traversal (EDB-6038 / BID-30179)
6 months 1 week ago
A vulnerability, which was classified as critical, was found in Zen Cart up to 1.3.8. Affected is an unknown function of the file admin/includes/languages/english.php of the component htaccess. The manipulation of the argument _SESSION[language] leads to path traversal.
This vulnerability is traded as CVE-2008-6878. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
The real existence of this vulnerability is still doubted at the moment.
vuldb.com
CVE-2008-3179 | W2B phpDatingClub 3.7 website.php page path traversal (EDB-6037 / XFDB-43710)
6 months 1 week ago
A vulnerability was found in W2B phpDatingClub 3.7. It has been rated as critical. Affected by this issue is some unknown functionality of the file website.php. The manipulation of the argument page leads to path traversal.
This vulnerability is handled as CVE-2008-3179. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-3183 | gapi cms 9.0.2 dirDepth code injection (EDB-6036 / XFDB-43712)
6 months 1 week ago
A vulnerability, which was classified as critical, was found in gapi cms 9.0.2. Affected is an unknown function. The manipulation of the argument dirDepth leads to code injection.
This vulnerability is traded as CVE-2008-3183. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
欢迎报名!ARM系统深度调试与逆向(赠价值4500元硬件设备)
6 months 1 week ago
直播授课!报名赠价值4500元硬件设备
PTZ摄像头曝严重零日漏洞,黑客利用漏洞发起攻击
6 months 1 week ago
黑客瞄准 PTZ 摄像机中的关键零日漏洞
SDC2024 议题回顾 | 智能摩托车进化之路
6 months 1 week ago
你的摩托车安全吗?
RansomHub
6 months 1 week ago
cohenido
2024 网鼎杯 web 题解
6 months 1 week ago
2024 网鼎杯 web 题解
2024 网鼎杯部分WP
6 months 1 week ago
2024 网鼎杯部分WP
2024网鼎杯-青龙组-RE方向全部题解
6 months 1 week ago
2024网鼎杯-青龙组-RE方向全部题解
2024网鼎杯青龙组-Crypto&Misc方向WP
6 months 1 week ago
2024网鼎杯青龙组-Crypto&Misc方向WP
2024年NSSCTF秋季招新赛-Reverse
6 months 1 week ago
2024年NSSCTF秋季招新赛-Reverse
高版本io利用之House of Obstack(shell及orw)
6 months 1 week ago
高版本io利用之House of Obstack(shell及orw)
某PHPCMS代码审计
6 months 1 week ago
某PHPCMS代码审计