Aggregator
TryHackme’s Advent of Cyber 2024 — Day 07 Writeup
7 months 2 weeks ago
TryHackme’s Advent of Cyber 2024 — Day 07 Writeup
How Black Hat Use Cookies to Steal Your Identity
7 months 2 weeks ago
How Black Hat Use Cookies to Steal Your Identity
Cookie Jar Overflow: A New Threat to HttpOnly Cookies in XSS Vulnerable Applications
7 months 2 weeks ago
Cookie Jar Overflow: A New Threat to HttpOnly Cookies in XSS Vulnerable Applications
石正丽实验室在 2004-2021 年收集的病毒样本都与SARS-CoV-2无关
7 months 2 weeks ago
石正丽实验室在 2004-2021 年收集的病毒样本都与SARS-CoV-2无关
ИИ на службе маркетинга: Growk AI взламывает коды восточных и западных рынков
7 months 2 weeks ago
Разработчики готовы покорять фестиваль COMEUP 2024.
CVE-1999-0750 | Microsoft Hotmail Javascript style cross site scripting (EDB-19492 / BID-630)
7 months 2 weeks ago
A vulnerability has been found in Microsoft Hotmail and classified as critical. This vulnerability affects unknown code of the component Javascript. The manipulation of the argument style leads to basic cross site scripting.
This vulnerability was named CVE-1999-0750. The attack can be initiated remotely. Furthermore, there is an exploit available. This vulnerability has a historic impact due to its background and reception.
It is recommended to replace the affected component with an alternative.
vuldb.com
CVE-2001-1003 | WebCT Respondus 1.1.2 WEBCT.SVR missing encryption (EDB-21078)
7 months 2 weeks ago
A vulnerability was found in WebCT Respondus 1.1.2 and classified as problematic. This issue affects some unknown processing of the file WEBCT.SVR. The manipulation leads to missing encryption of sensitive data.
The identification of this vulnerability is CVE-2001-1003. The attack needs to be approached locally. Furthermore, there is an exploit available.
vuldb.com
首席安全官的权力悖论:为何责任越大权力越小?
7 months 2 weeks ago
首席安全官的权力悖论:为何责任越大权力越小?
What do you do when your friends you don't even know anymore?
7 months 2 weeks ago
What do you do when your friends you don't even know anymore?
CVE-2010-3771 | Mozilla Firefox up to 1.0.8 cross site scripting (Bug 609437 / Nessus ID 51777)
7 months 2 weeks ago
A vulnerability was found in Mozilla Firefox and classified as critical. Affected by this issue is some unknown functionality. The manipulation leads to basic cross site scripting.
This vulnerability is handled as CVE-2010-3771. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2010-3770 | Mozilla Firefox up to 1.0.8 Rendering Engine cross site scripting (Bug 601429 / EDB-35095)
7 months 2 weeks ago
A vulnerability has been found in Mozilla Firefox and classified as problematic. Affected by this vulnerability is an unknown functionality of the component Rendering Engine. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2010-3770. The attack can be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2010-3769 | Mozilla Firefox up to 1.0.8 memory corruption (Bug 608336 / Nessus ID 51180)
7 months 2 weeks ago
A vulnerability, which was classified as very critical, was found in Mozilla Firefox. Affected is an unknown function. The manipulation leads to memory corruption.
This vulnerability is traded as CVE-2010-3769. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2010-3768 | Mozilla Firefox up to 1.4.4 Fonts input validation (Bug 527276 / Nessus ID 68159)
7 months 2 weeks ago
A vulnerability, which was classified as very critical, has been found in Mozilla Firefox. This issue affects some unknown processing of the component Fonts. The manipulation leads to improper input validation.
The identification of this vulnerability is CVE-2010-3768. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2010-3766 | Mozilla Firefox up to 3.6.x resource management (MFSA2010-74 / Nessus ID 68156)
7 months 2 weeks ago
A vulnerability, which was classified as critical, has been found in Mozilla Firefox up to 3.6.x. This issue affects some unknown processing. The manipulation leads to improper resource management.
The identification of this vulnerability is CVE-2010-3766. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2010-3767 | Mozilla Firefox up to 1.0.8 NewIdArray numeric error (Bug 599468 / Nessus ID 68157)
7 months 2 weeks ago
A vulnerability classified as very critical was found in Mozilla Firefox. This vulnerability affects the function NewIdArray. The manipulation leads to numeric error.
This vulnerability was named CVE-2010-3767. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2010-3711 | Pidgin up to 2.7.3 NTLM Authentication purple_base64_decode input validation (RHSA-2010:0890 / Nessus ID 68143)
7 months 2 weeks ago
A vulnerability has been found in Pidgin and classified as problematic. This vulnerability affects the function purple_base64_decode of the component NTLM Authentication. The manipulation leads to improper input validation.
This vulnerability was named CVE-2010-3711. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2010-0307 | Intel E1000 up to 7.4.35 load_elf_binary denial of service (EDB-33585 / Nessus ID 68037)
7 months 2 weeks ago
A vulnerability was found in Intel E1000. It has been declared as problematic. Affected by this vulnerability is the function load_elf_binary. The manipulation leads to denial of service.
This vulnerability is known as CVE-2010-0307. The attack needs to be approached locally. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
AnonBF is Allegedly Selling VPN Access to 39 Unidentified Companies
7 months 2 weeks ago
AnonBF is Allegedly Selling VPN Access to 39 Unidentified Companies
Dark Web Informer - Cyber Threat Intelligence
CVE-2024-12355 | SourceCodester Phone Contact Manager System 1.0 ContactBook.cpp ContactBook::adding input validation
7 months 2 weeks ago
A vulnerability has been found in SourceCodester Phone Contact Manager System 1.0 and classified as problematic. Affected by this vulnerability is the function ContactBook::adding of the file ContactBook.cpp. The manipulation leads to improper input validation.
This vulnerability is known as CVE-2024-12355. The attack needs to be approached locally. Furthermore, there is an exploit available.
vuldb.com