Aggregator
SECURITY AFFAIRS MALWARE NEWSLETTER – ROUND 18
6 months 2 weeks ago
SECURITY AFFAIRS MALWARE NEWSLETTE
Security Affairs newsletter Round 496 by Pierluigi Paganini – INTERNATIONAL EDITION
6 months 2 weeks ago
SECURITY AFFAIRS MALWARE NEWSLETTE
CVE-2008-4345 | WebPortal CMS 0.6 Beta/0.6.0/0.7.3/0.7.4 download.php aid sql injection (EDB-6443 / XFDB-45113)
6 months 2 weeks ago
A vulnerability was found in WebPortal CMS 0.6 Beta/0.6.0/0.7.3/0.7.4. It has been classified as critical. Affected is an unknown function of the file download.php. The manipulation of the argument aid leads to sql injection.
This vulnerability is traded as CVE-2008-4345. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-4354 | Net Art Media iBoutique 4.0 index.php cat sql injection (EDB-6444 / XFDB-45110)
6 months 2 weeks ago
A vulnerability was found in Net Art Media iBoutique 4.0. It has been classified as critical. This affects an unknown part of the file index.php. The manipulation of the argument cat leads to sql injection.
This vulnerability is uniquely identified as CVE-2008-4354. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-4355 | Powie pForum 1.30 showprofil.php id sql injection (EDB-6442 / XFDB-45079)
6 months 2 weeks ago
A vulnerability was found in Powie pForum 1.30. It has been declared as critical. This vulnerability affects unknown code of the file showprofil.php. The manipulation of the argument id leads to sql injection.
This vulnerability was named CVE-2008-4355. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-7005 | Minb Is Not a Blog 0.1.0 File Upload 1-random_quote.php quotes_to_edit code injection (EDB-6432 / XFDB-45054)
6 months 2 weeks ago
A vulnerability, which was classified as critical, has been found in Minb Is Not a Blog 0.1.0. This issue affects some unknown processing of the file 1-random_quote.php of the component File Upload. The manipulation of the argument quotes_to_edit leads to code injection.
The identification of this vulnerability is CVE-2008-7005. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-4072 | Phsdev phsBlog 0.2 index.php sql_cid sql injection (EDB-6431 / XFDB-45053)
6 months 2 weeks ago
A vulnerability has been found in Phsdev phsBlog 0.2 and classified as critical. Affected by this vulnerability is an unknown functionality of the file index.php. The manipulation of the argument sql_cid leads to sql injection.
This vulnerability is known as CVE-2008-4072. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-4074 | Zanfi Autodealers CMS AutOnline index.php id sql injection (EDB-6433 / XFDB-45200)
6 months 2 weeks ago
A vulnerability was found in Zanfi Autodealers CMS AutOnline. It has been classified as critical. This affects an unknown part of the file index.php. The manipulation of the argument id leads to sql injection.
This vulnerability is uniquely identified as CVE-2008-4074. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-4167 | Ezphotogallery 2.1 Administrator Account useradmin.php improper authentication (EDB-6437 / XFDB-45119)
6 months 2 weeks ago
A vulnerability classified as critical was found in Ezphotogallery 2.1. This vulnerability affects unknown code of the file useradmin.php of the component Administrator Account. The manipulation leads to improper authentication.
This vulnerability was named CVE-2008-4167. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
中国科学院自动化研究所 | CogMG:大语言模型与知识图谱之间的协同增强
6 months 2 weeks ago
通过知识图谱的结构化格式和对事实信息的精确封装来为大语言模型提供现实支撑。
CVE-2008-4075 | Dino D-iscussion Board 3.01 index.php topic path traversal (EDB-6430 / XFDB-45063)
6 months 2 weeks ago
A vulnerability was found in Dino D-iscussion Board 3.01. It has been declared as critical. This vulnerability affects unknown code of the file index.php. The manipulation of the argument topic leads to path traversal.
This vulnerability was named CVE-2008-4075. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-6988 | Ezphotogallery 2.1 gallery.php galleryid cross site scripting (EDB-6428 / XFDB-45050)
6 months 2 weeks ago
A vulnerability, which was classified as problematic, was found in Ezphotogallery 2.1. Affected is an unknown function of the file gallery.php. The manipulation of the argument galleryid leads to cross site scripting.
This vulnerability is traded as CVE-2008-6988. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-6989 | Ezphotogallery 2.1 gallery.php username sql injection (EDB-6428 / SA31774)
6 months 2 weeks ago
A vulnerability has been found in Ezphotogallery 2.1 and classified as critical. Affected by this vulnerability is an unknown functionality of the file gallery.php. The manipulation of the argument username leads to sql injection.
This vulnerability is known as CVE-2008-6989. The attack can be launched remotely. Furthermore, there is an exploit available.
It is recommended to add further authentication.
vuldb.com
CVE-2008-4592 | Sportspanel Sports Clubs Web Portal 0.0.1 index.php path traversal (EDB-6427 / XFDB-45062)
6 months 2 weeks ago
A vulnerability classified as critical was found in Sportspanel Sports Clubs Web Portal 0.0.1. This vulnerability affects unknown code of the file index.php. The manipulation leads to path traversal.
This vulnerability was named CVE-2008-4592. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-4073 | Zanfi Autodealers CMS AutOnline index.php pageid sql injection (EDB-6426 / XFDB-45049)
6 months 2 weeks ago
A vulnerability was found in Zanfi Autodealers CMS AutOnline and classified as critical. Affected by this issue is some unknown functionality of the file index.php. The manipulation of the argument pageid leads to sql injection.
This vulnerability is handled as CVE-2008-4073. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2015-0884 | Toshiba Bluetooth Stack 9.10.27(T) on Windows privileges management (VU#632140 / XFDB-101251)
6 months 2 weeks ago
A vulnerability was found in Toshiba Bluetooth Stack 9.10.27(T) on Windows. It has been rated as critical. This issue affects some unknown processing. The manipulation leads to improper privilege management.
The identification of this vulnerability is CVE-2015-0884. The attack needs to be approached locally. There is no exploit available.
vuldb.com
Meet Interlock — The new ransomware targeting FreeBSD servers
6 months 2 weeks ago
A relatively new ransomware operation named Interlock attacks organizations worldwide, taking the unusual approach of creating an encryptor to target FreeBSD servers. [...]
Lawrence Abrams
Hackers N' Hops
6 months 2 weeks ago
Name: Hackers N' Hops (an The Haunted Brewery event.)
Date: Nov. 2, 2024, 10 a.m. — 03 Nov. 2024, 18:00 UTC [add to calendar]
Format: Jeopardy
On-line
Offical URL: https://hackersnhops.ctfd.io/
Rating weight: 24.71
Event organizers: Hackers N' Hops
Date: Nov. 2, 2024, 10 a.m. — 03 Nov. 2024, 18:00 UTC [add to calendar]
Format: Jeopardy
On-line
Offical URL: https://hackersnhops.ctfd.io/
Rating weight: 24.71
Event organizers: Hackers N' Hops
CVE-2008-4702 | PhpWebGallery 1.3.4 init.inc.php user[language] path traversal (EDB-6425 / XFDB-45060)
6 months 2 weeks ago
A vulnerability classified as critical was found in PhpWebGallery 1.3.4. This vulnerability affects unknown code of the file init.inc.php. The manipulation of the argument user[language] leads to path traversal.
This vulnerability was named CVE-2008-4702. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com