Aggregator
BFScan: Uncover Hidden URLs, Paths, & Secrets in JAR/WAR/APK Files
8 months 1 week ago
BFScan – Tool for initial processing of APK / XAPK / DEX / JAR / WAR applications. Search for strings in source code and resources that look like URIs, paths, or secrets Generate raw...
The post BFScan: Uncover Hidden URLs, Paths, & Secrets in JAR/WAR/APK Files appeared first on Penetration Testing Tools.
ddos
CVE-2009-4428 | Joomplace Com Joomportfolio 1.0.0 index.php secid sql injection (EDB-33418 / XFDB-54912)
8 months 1 week ago
A vulnerability classified as critical was found in Joomplace Com Joomportfolio 1.0.0. This vulnerability affects unknown code of the file index.php. The manipulation of the argument secid leads to sql injection.
This vulnerability was named CVE-2009-4428. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
红队钓鱼免杀沙箱对抗样本分析
8 months 1 week ago
红队钓鱼免杀沙箱对抗样本分析
CVE-2006-4868 | Microsoft Internet Explorer up to 6 VML Vector Markup Language fill memory corruption (MS06-055 / VU#416092)
8 months 1 week ago
A vulnerability was found in Microsoft Internet Explorer up to 6 and classified as critical. Affected by this issue is the function fill of the component VML Vector Markup Language Handler. The manipulation leads to memory corruption.
This vulnerability is handled as CVE-2006-4868. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to disable the affected component.
vuldb.com
CVE-2006-4980 | Python up to 2.5 Release Candidate 2 repr memory corruption (Nessus ID 22514 / ID 115426)
8 months 1 week ago
A vulnerability has been found in Python and classified as critical. Affected by this vulnerability is the function repr. The manipulation leads to memory corruption.
This vulnerability is known as CVE-2006-4980. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2006-4950 | Cisco IOS up to 12.4(4) SNMP Community String improper authentication (VU#123140 / Nessus ID 17782)
8 months 1 week ago
A vulnerability classified as critical has been found in Cisco IOS up to 12.4(4). Affected is an unknown function of the component SNMP. The manipulation with the input DOCSIS as part of Community String leads to improper authentication.
This vulnerability is traded as CVE-2006-4950. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2006-5006 | IBM AIX 5.2.0/5.3.0 path memory corruption (Nessus ID 28631 / ID 115473)
8 months 1 week ago
A vulnerability was found in IBM AIX 5.2.0/5.3.0. It has been rated as critical. This issue affects some unknown processing. The manipulation of the argument path leads to memory corruption.
The identification of this vulnerability is CVE-2006-5006. An attack has to be approached locally. There is no exploit available.
vuldb.com
摩萨德情报人才培养体系可视化分析报告
8 months 1 week ago
本文约2608字,预计阅读8分钟。摩萨德作为以色列对外情报机构,在情报人才培养方面展现出精密且前瞻的布局。
CVE-2024-51163 | Vegam Solutions Vegam 4i up to 6.3.47.0 Print Labelling information disclosure (EUVD-2024-45773)
8 months 1 week ago
A vulnerability classified as problematic was found in Vegam Solutions Vegam 4i up to 6.3.47.0. This vulnerability affects unknown code of the component Print Labelling. The manipulation leads to information disclosure.
This vulnerability was named CVE-2024-51163. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-52867 | GNU Guix guix-daemon Local Privilege Escalation (EUVD-2024-45958 / Nessus ID 211622)
8 months 1 week ago
A vulnerability was found in GNU Guix. It has been classified as critical. Affected is an unknown function of the component guix-daemon. The manipulation leads to Local Privilege Escalation.
This vulnerability is traded as CVE-2024-52867. The attack needs to be approached locally. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-51208 | PHPGurukul Boat Booking System 1.0 Image Upload change-image.php unrestricted upload (EUVD-2024-45564)
8 months 1 week ago
A vulnerability, which was classified as critical, has been found in PHPGurukul Boat Booking System 1.0. Affected by this issue is some unknown functionality of the file change-image.php of the component Image Upload Handler. The manipulation leads to unrestricted upload.
This vulnerability is handled as CVE-2024-51208. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-51298 | Draytek Vigor 3900 1.5.1.3 mainfunction.cgi doGRETunnel command injection (EUVD-2024-45323)
8 months 1 week ago
A vulnerability was found in Draytek Vigor 3900 1.5.1.3. It has been classified as critical. Affected is the function doGRETunnel of the file mainfunction.cgi. The manipulation leads to command injection.
This vulnerability is traded as CVE-2024-51298. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-51162 | audimexEE up to 15.1.20 default permission (EUVD-2024-45772)
8 months 1 week ago
A vulnerability was found in audimexEE up to 15.1.20. It has been declared as critical. This vulnerability affects unknown code. The manipulation leads to incorrect default permissions.
This vulnerability was named CVE-2024-51162. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-51408 | AppSmith Community up to 1.8.2 JSON Request server-side request forgery (EUVD-2024-45343)
8 months 1 week ago
A vulnerability was found in AppSmith Community up to 1.8.2. It has been declared as critical. This vulnerability affects unknown code of the component JSON Request Handler. The manipulation leads to server-side request forgery.
This vulnerability was named CVE-2024-51408. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2006-5007 | IBM AIX 5.2.0/5.3.0 Local Privilege Escalation (Nessus ID 65303 / ID 115458)
8 months 1 week ago
A vulnerability classified as problematic has been found in IBM AIX 5.2.0/5.3.0. Affected is an unknown function. The manipulation leads to Local Privilege Escalation.
This vulnerability is traded as CVE-2006-5007. Local access is required to approach this attack. There is no exploit available.
vuldb.com
CVE-2006-5008 | IBM AIX 5.2.0/5.3.0 privileges management (Nessus ID 28687 / ID 115472)
8 months 1 week ago
A vulnerability classified as very critical was found in IBM AIX 5.2.0/5.3.0. Affected by this vulnerability is an unknown functionality. The manipulation leads to improper privilege management.
This vulnerability is known as CVE-2006-5008. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2006-5010 | IBM AIX 5.3.0 mkdir privileges management (Nessus ID 28723 / ID 115446)
8 months 1 week ago
A vulnerability was found in IBM AIX 5.3.0. It has been rated as critical. Affected by this issue is some unknown functionality of the component mkdir. The manipulation leads to improper privilege management.
This vulnerability is handled as CVE-2006-5010. Access to the local network is required for this attack to succeed. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2006-5012 | Sun Solaris up to 10.0 Syslog denial of service (Nessus ID 19843 / ID 115420)
8 months 1 week ago
A vulnerability, which was classified as critical, has been found in Sun Solaris up to 10.0. This issue affects some unknown processing of the component Syslog. The manipulation leads to denial of service.
The identification of this vulnerability is CVE-2006-5012. The attack may be initiated remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2006-5011 | IBM AIX 5.2.0/5.3.0 privileges management (Nessus ID 28741 / ID 115445)
8 months 1 week ago
A vulnerability, which was classified as critical, has been found in IBM AIX 5.2.0/5.3.0. Affected by this issue is some unknown functionality. The manipulation leads to improper privilege management.
This vulnerability is handled as CVE-2006-5011. It is possible to launch the attack on the local host. There is no exploit available.
vuldb.com