Aggregator
美国公司大幅裁减中层经理职位
7 months 2 weeks ago
美国公司大幅裁减中层经理职位
CVE-2024-8894 | Open Design Alliance ODA Drawings SDK 2024.10 DWF File out-of-bounds write
7 months 2 weeks ago
A vulnerability has been found in Open Design Alliance ODA Drawings SDK 2024.10 and classified as critical. This vulnerability affects unknown code of the component DWF File Handler. The manipulation leads to out-of-bounds write.
This vulnerability was named CVE-2024-8894. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Are We Too Trusting of Employees?
7 months 2 weeks ago
Are We Too Trusting of Employees?
AI全新赋能,360开启终端All in One 5.0时代
7 months 2 weeks ago
安全客
立即修复,微软驱动程序关键漏洞已被APT组织利用
7 months 2 weeks ago
立即修复,微软驱动程序关键漏洞已被APT组织利用
日本加密服务因价值3.08亿美元的比特币被盗而关闭
7 months 2 weeks ago
安全客
Fortinet FortiManager Unauthenticated Remote Code Execution
7 months 2 weeks ago
Fortinet FortiManager Unauthenticated Remote Code Execution
Asterisk AMI Originate Authenticated Remote Code Execution
7 months 2 weeks ago
Asterisk AMI Originate Authenticated Remote Code Execution
能源行业承包商称勒索软件攻击限制了对 IT 系统的访问
7 months 2 weeks ago
安全客
Veeam security advisory (AV24-692)
7 months 2 weeks ago
Canadian Centre for Cyber Security
韩国撤销戒严令,加密货币市场回暖
7 months 2 weeks ago
安全客
澳大利亚面临太阳能供大于求
7 months 2 weeks ago
澳大利亚面临太阳能供大于求
CVE-2024-52274 | Tenda AC6V2 up to 15.03.06.50 setDoubleL2tpConfig stack-based overflow
7 months 2 weeks ago
A vulnerability, which was classified as critical, has been found in Tenda AC6V2 up to 15.03.06.50. This issue affects the function setDoubleL2tpConfig. The manipulation leads to stack-based buffer overflow.
The identification of this vulnerability is CVE-2024-52274. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-52273 | Tenda AC6V2 up to 15.03.06.50 setDoublePppoeConfig stack-based overflow
7 months 2 weeks ago
A vulnerability, which was classified as critical, was found in Tenda AC6V2 up to 15.03.06.50. Affected is the function setDoublePppoeConfig. The manipulation leads to stack-based buffer overflow.
This vulnerability is traded as CVE-2024-52273. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-52275 | Tenda AC6V2 up to 15.03.06.50 fromWizardHandle stack-based overflow
7 months 2 weeks ago
A vulnerability has been found in Tenda AC6V2 up to 15.03.06.50 and classified as critical. Affected by this vulnerability is the function fromWizardHandle. The manipulation leads to stack-based buffer overflow.
This vulnerability is known as CVE-2024-52275. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-52272 | Tenda AC6V2 up to 15.03.06.50 fromAdvSetLanip stack-based overflow
7 months 2 weeks ago
A vulnerability was found in Tenda AC6V2 up to 15.03.06.50 and classified as critical. Affected by this issue is the function fromAdvSetLanip. The manipulation leads to stack-based buffer overflow.
This vulnerability is handled as CVE-2024-52272. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-12107 | uD3TN BPv7 up to 0.14.1 Endpoint Identifier double free
7 months 2 weeks ago
A vulnerability was found in uD3TN BPv7 up to 0.14.1. It has been classified as critical. This affects an unknown part of the component Endpoint Identifier Handler. The manipulation leads to double free.
This vulnerability is uniquely identified as CVE-2024-12107. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-10576 | Infinix Mobile com.transsion.agingfunction 13 intent by broadcast receiver
7 months 2 weeks ago
A vulnerability was found in Infinix Mobile com.transsion.agingfunction 13 and classified as critical. This issue affects some unknown processing. The manipulation leads to improper verification of intent by broadcast receiver.
The identification of this vulnerability is CVE-2024-10576. An attack has to be approached locally. There is no exploit available.
vuldb.com
How widespread is mercenary spyware? More than you think
7 months 2 weeks ago
A targeted hunt on 2,500 mobile devices for indicators of compromise associated with mercenary spyware has revealed that its use is not as rare as one would hope. The results of the hunt Earlier this year, iVerify added a “Mobile Threat Hunting” feature to its mobile device security solution for Android-based phones and iPhones and urged users to try it out. 2,500 of them did, and six (possibly seven) discovered that they’ve been infected with … More →
The post How widespread is mercenary spyware? More than you think appeared first on Help Net Security.
Zeljka Zorz