Aggregator
.NET 安全基础入门学习知识库
7 months 3 weeks ago
一招禁用 Windows Defender,通过 Sharp4BypassWDAC 绕过端点安全防护
7 months 3 weeks ago
疑似某红队CS样本分析三
7 months 3 weeks ago
疑似某红队CS样本分析三
CVE-2023-48206 | GaatiTrack Courier Management System 1.0 login.php page cross site scripting (ID 175803)
7 months 3 weeks ago
A vulnerability was found in GaatiTrack Courier Management System 1.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the file login.php. The manipulation of the argument page leads to cross site scripting.
This vulnerability is handled as CVE-2023-48206. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2023-49740 | Seraphinite Accelerator Plugin up to 2.20.28 on WordPress rt cross site scripting
7 months 3 weeks ago
A vulnerability was found in Seraphinite Accelerator Plugin up to 2.20.28 on WordPress. It has been declared as problematic. This vulnerability affects unknown code. The manipulation of the argument rt leads to cross site scripting.
This vulnerability was named CVE-2023-49740. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2023-49492 | DedeCMS 5.7.111 selectimages.php imgstick cross site scripting
7 months 3 weeks ago
A vulnerability classified as problematic has been found in DedeCMS 5.7.111. Affected is an unknown function of the file selectimages.php. The manipulation of the argument imgstick leads to cross site scripting.
This vulnerability is traded as CVE-2023-49492. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2023-6656 | DeepFaceLab pretrained DF.wf.288res.384.92.72.22 DFLIMG/DFLJPG.py deserialization
7 months 3 weeks ago
A vulnerability was found in DeepFaceLab pretrained DF.wf.288res.384.92.72.22. It has been rated as critical. Affected by this issue is some unknown functionality of the file DFLIMG/DFLJPG.py. The manipulation leads to deserialization. This vulnerability only affects products that are no longer supported by the maintainer.
This vulnerability is handled as CVE-2023-6656. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2023-6186 | Document Foundation LibreOffice up to 7.5.8/7.6.3 Macro permission (FEDORA-2023-0d971cd6aa / Nessus ID 214472)
7 months 3 weeks ago
A vulnerability, which was classified as critical, has been found in Document Foundation LibreOffice up to 7.5.8/7.6.3. This issue affects some unknown processing of the component Macro Handler. The manipulation leads to permission issues.
The identification of this vulnerability is CVE-2023-6186. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-38174 | Microsoft Edge up to 119.0.2151.72 information disclosure
7 months 3 weeks ago
A vulnerability was found in Microsoft Edge. It has been classified as problematic. This affects an unknown part. The manipulation leads to information disclosure.
This vulnerability is uniquely identified as CVE-2023-38174. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-35618 | Microsoft Edge up to 119.0.2151.72 use after free
7 months 3 weeks ago
A vulnerability was found in Microsoft Edge. It has been declared as critical. This vulnerability affects unknown code. The manipulation leads to use after free.
This vulnerability was named CVE-2023-35618. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-6185 | Document Foundation LibreOffice up to 7.5.8/7.6.2 GStreamer input validation (FEDORA-2023-0d971cd6aa / Nessus ID 208635)
7 months 3 weeks ago
A vulnerability, which was classified as critical, was found in Document Foundation LibreOffice up to 7.5.8/7.6.2. Affected is an unknown function of the component GStreamer. The manipulation leads to improper input validation.
This vulnerability is traded as CVE-2023-6185. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-5955 | Contact Form Email Plugin up to 1.3.43 on WordPress Setting cross site scripting
7 months 3 weeks ago
A vulnerability was found in Contact Form Email Plugin up to 1.3.43 on WordPress. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component Setting Handler. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2023-5955. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Cobalt Strike 流量伪装与免杀小技巧
7 months 3 weeks ago
接触Cobalt Strike 流量伪装时候留下的笔记
UMassCTF 2025
7 months 3 weeks ago
Name: UMassCTF 2025 (an UMassCTF event.)
Date: April 18, 2025, 6 p.m. — 21 April 2025, 00:00 UTC [add to calendar]
Format: Jeopardy
On-line
Offical URL: https://ctf.umasscybersec.org/
Rating weight: 48.38
Event organizers: SavedByTheShell
Date: April 18, 2025, 6 p.m. — 21 April 2025, 00:00 UTC [add to calendar]
Format: Jeopardy
On-line
Offical URL: https://ctf.umasscybersec.org/
Rating weight: 48.38
Event organizers: SavedByTheShell
b01lers CTF 2025
7 months 3 weeks ago
Name: b01lers CTF 2025 (an b01lers CTF event.)
Date: April 18, 2025, 11 p.m. — 20 April 2025, 23:00 UTC [add to calendar]
Format: Jeopardy
On-line
Offical URL: https://b01lersc.tf/
Rating weight: 44.50
Event organizers: b01lers
Date: April 18, 2025, 11 p.m. — 20 April 2025, 23:00 UTC [add to calendar]
Format: Jeopardy
On-line
Offical URL: https://b01lersc.tf/
Rating weight: 44.50
Event organizers: b01lers
智驭云端,揭秘威努特云WAF如何守护高校网站安全
7 months 3 weeks ago
云端守护,实时防护,确保教学、科研及网站服务的平稳运行。
FOG Ransomware Spread by Cybercriminals Claiming Ties to DOGE
7 months 3 weeks ago
This blog details our investigation of malware samples that conceal within them a FOG ransomware payload.
Nathaniel Morales
CVE-2024-48839 | ABB ASPECT-Enterprise/NEXUS/MATRIX up to 3.08.02 code injection (EDB-52217)
7 months 3 weeks ago
A vulnerability has been found in ABB ASPECT-Enterprise, NEXUS and MATRIX up to 3.08.02 and classified as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to code injection.
This vulnerability is known as CVE-2024-48839. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2023-42903 | Apple macOS up to 14.1 File memory corruption (HT214036)
7 months 3 weeks ago
A vulnerability has been found in Apple macOS up to 14.1 and classified as critical. Affected by this vulnerability is an unknown functionality of the component File Handler. The manipulation leads to memory corruption.
This vulnerability is known as CVE-2023-42903. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com