Aggregator
CVE-2017-8046 | Pivotal Spring Data REST up to 2.5.11/2.6.6/3.0 RC2 REST Server JSON Data input validation (RHSA-2018:2405 / EDB-44289)
7 months ago
A vulnerability has been found in Pivotal Spring Data REST up to 2.5.11/2.6.6/3.0 RC2 and classified as critical. Affected by this vulnerability is an unknown functionality of the component REST Server. The manipulation as part of JSON Data leads to improper input validation.
This vulnerability is known as CVE-2017-8046. The attack can be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Hunters
7 months ago
cohenido
CVE-2002-0838 | gv/gvv/ggv/gnome-gv/kghostview PDF/PostScript File memory corruption (VU#600777 / EDB-21871)
7 months ago
A vulnerability was found in gv, gvv, ggv, gnome-gv and kghostview and classified as problematic. This issue affects some unknown processing of the component PDF/PostScript File Handler. The manipulation leads to memory corruption.
The identification of this vulnerability is CVE-2002-0838. It is possible to launch the attack on the local host. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2006-0283 | Oracle Database 10.1.0.4.2 rpc Privilege Escalation (VU#545804 / ID 19197)
7 months ago
A vulnerability classified as critical has been found in Oracle Database 10.1.0.4.2. This affects an unknown part of the component rpc. The manipulation leads to Privilege Escalation.
This vulnerability is uniquely identified as CVE-2006-0283. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2006-0283 | Oracle Collaboration Suite 10.1.0.4.2 cross site scripting (VU#545804 / Nessus ID 57619)
7 months ago
A vulnerability classified as critical has been found in Oracle Collaboration Suite 10.1.0.4.2. This affects an unknown part. The manipulation leads to basic cross site scripting.
This vulnerability is uniquely identified as CVE-2006-0283. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2006-0278 | Oracle E-Business Suite/Applications 11.5.9 Oracle Application Object Library Remote Code Execution (VU#545804 / XFDB-24321)
7 months ago
A vulnerability has been found in Oracle E-Business Suite and Applications 11.5.9 and classified as very critical. This vulnerability affects unknown code of the component Oracle Application Object Library. The manipulation leads to Remote Code Execution.
This vulnerability was named CVE-2006-0278. The attack can be initiated remotely. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2006-0279 | Oracle E-Business Suite 4.3 Remote Code Execution (VU#545804 / XFDB-24321)
7 months ago
A vulnerability was found in Oracle E-Business Suite 4.3 and classified as very critical. This issue affects some unknown processing. The manipulation leads to Remote Code Execution.
The identification of this vulnerability is CVE-2006-0279. The attack may be initiated remotely. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2006-0280 | Oracle PeopleSoft Enterprise Portal 8.4 Bundle 15/8.8 Bundle 10/8.9 Bundle 2 Remote Code Execution (VU#545804 / XFDB-24321)
7 months ago
A vulnerability was found in Oracle PeopleSoft Enterprise Portal 8.4 Bundle 15/8.8 Bundle 10/8.9 Bundle 2. It has been classified as very critical. Affected is an unknown function. The manipulation leads to Remote Code Execution.
This vulnerability is traded as CVE-2006-0280. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2006-0281 | Oracle Enterpriseone 8.95.f1/Sp23 L1 Remote Code Execution (VU#545804 / XFDB-24321)
7 months ago
A vulnerability was found in Oracle Enterpriseone 8.95.f1/Sp23 L1. It has been declared as very critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to Remote Code Execution.
This vulnerability is known as CVE-2006-0281. The attack can be launched remotely. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2006-0282 | Oracle Database Server 8.1.7.4 cross site scripting (VU#545804 / Nessus ID 57619)
7 months ago
A vulnerability was found in Oracle Database Server 8.1.7.4. It has been rated as critical. Affected by this issue is some unknown functionality. The manipulation leads to basic cross site scripting.
This vulnerability is handled as CVE-2006-0282. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CornDB is Claiming to Sell Access of Givat Shmuel Community (GSC)
7 months ago
CornDB is Claiming to Sell Access of Givat Shmuel Community (GSC)
Dark Web Informer - Cyber Threat Intelligence
CVE-2001-1022 | GNU groff up to 1.16.1 -S format string (EDB-21037 / Nessus ID 14909)
7 months ago
A vulnerability classified as critical was found in GNU groff up to 1.16.1. This vulnerability affects unknown code. The manipulation of the argument -S leads to format string.
This vulnerability was named CVE-2001-1022. The attack can be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2013-5575 | LibTIFF 3.6.0/3.9.5 Integer td_samplesperpixel memory corruption (XADV-2013001 / EDB-27875)
7 months ago
A vulnerability was found in LibTIFF 3.6.0/3.9.5 and classified as very critical. This issue affects the function td_samplesperpixel of the component Integer Handler. The manipulation leads to memory corruption.
The identification of this vulnerability is CVE-2013-5575. The attack may be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2011-3230 | Apple Safari up to 5.1.0 access control (EDB-17986 / Nessus ID 56482)
7 months ago
A vulnerability classified as critical has been found in Apple Safari up to 5.1.0. Affected is an unknown function. The manipulation leads to improper access controls.
This vulnerability is traded as CVE-2011-3230. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-40278 | OpenClinic GA 5.247.01 printAppointmentPdf.jsp AppointmentUid information exposure (EDB-51994)
7 months ago
A vulnerability classified as problematic has been found in OpenClinic GA 5.247.01. This affects an unknown part of the file printAppointmentPdf.jsp. The manipulation of the argument AppointmentUid leads to information exposure through error message.
This vulnerability is uniquely identified as CVE-2023-40278. The attack needs to be initiated within the local network. Furthermore, there is an exploit available.
vuldb.com
CVE-2018-6222 | Trend Micro Email Encryption Gateway 5.5 Command access control (EDB-44166)
7 months ago
A vulnerability was found in Trend Micro Email Encryption Gateway 5.5. It has been classified as critical. Affected is an unknown function of the component Encryption. The manipulation as part of Command leads to improper access controls.
This vulnerability is traded as CVE-2018-6222. An attack has to be approached locally. Furthermore, there is an exploit available.
vuldb.com
CVE-2018-6223 | Trend Micro Email Encryption Gateway 5.5 improper authentication (EDB-44166)
7 months ago
A vulnerability was found in Trend Micro Email Encryption Gateway 5.5. It has been declared as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to improper authentication.
This vulnerability is known as CVE-2018-6223. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
Notorious Threat Actor IntelBroker is Claiming to be Selling Access of an Unidentified Software Company in USA
7 months ago
Notorious Threat Actor IntelBroker is Claiming to be Selling Access of an Unidentified Software Company in USA
Dark Web Informer - Cyber Threat Intelligence
CVE-2015-5306 | OpenStack Ironic Inspector Debug Mode 7pk security (Bug 1273698 / Nessus ID 89240)
7 months ago
A vulnerability classified as critical has been found in OpenStack Ironic Inspector. This affects an unknown part of the component Debug Mode. The manipulation leads to 7pk security features.
This vulnerability is uniquely identified as CVE-2015-5306. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com