Aggregator
天鹅印象
8 months ago
周末说走就走,去了一趟辽宁朝阳红村看天鹅和雾凇,简单记录。
晨曦梦幻世界中,观天鹅的游人和摄影师,近岸吃食的天鹅们,交织成一首欢快活泼的冬日乐曲。
拍完日出,我俩沿着河道往上游走,走入一个完全静谧的世界。河水是深邃的蓝,大天鹅带着幼鸟在水中自由写意,有的休憩、有的捕食、有的飞翔,不远处是多层次的树林。天地开阔,仿似这么一路走着,那些真切的伤痛都在被慢慢抚平。
CVE-2018-14716 | SEOmatic Plugin up to 3.1.3 on Craft CMS Template Request SSTI injection (EDB-45108)
8 months ago
A vulnerability was found in SEOmatic Plugin up to 3.1.3 on Craft CMS. It has been declared as critical. This vulnerability affects unknown code of the component Template Handler. The manipulation as part of Request leads to injection (SSTI).
This vulnerability was named CVE-2018-14716. The attack can be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
8Base
8 months ago
cohenido
AI,如何真正助力商家?
8 months ago
为新零售模式的未来发展奠定基础。AI,真正的落地场景,究竟是什么,这是目前行业都在讨论的一个问题。更重要的是,已经在「数字化」上有所建树的公司,能否利用 AI,进一步加速进程,提高公司业绩和表现?在刚
AI,如何真正助力商家?
8 months ago
为新零售模式的未来发展奠定基础。
CVE-2010-1587 | Apache ActiveMQ up to 5.4-snapshot input validation (EDB-33868 / Nessus ID 45623)
8 months ago
A vulnerability has been found in Apache ActiveMQ up to 5.4-snapshot and classified as problematic. This vulnerability affects unknown code. The manipulation leads to improper input validation.
This vulnerability was named CVE-2010-1587. The attack can be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Namecheap .news域名首年免费!续费原价
8 months ago
发布时间: 2024-12-22 New Article 分类: 共享资源/Free 热度: 1266 介绍Namecheap 成立于 2000 年,是一家总部位于
Namecheap .news域名首年免费!续费原价
8 months ago
介绍Namecheap 成立于 2000 年,是一家总部位于美国的域名注册和网络托管服务提供商。它以其清晰的价格体系、用户友好的界面和稳定的服务而广受好评。Namecheap 的服务范围包括域名...
黑海洋
RFID vs Sub Ghz?
8 months ago
CVE-2000-0142 | Netopia Timbuktu Pro 2.0b650/5.2.1 Authentication denial of service (EDB-19750 / BID-984)
8 months ago
A vulnerability, which was classified as problematic, has been found in Netopia Timbuktu Pro 2.0b650/5.2.1. Affected by this issue is some unknown functionality of the component Authentication. The manipulation leads to denial of service.
This vulnerability is handled as CVE-2000-0142. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to apply restrictive firewalling.
vuldb.com
CVE-2003-0845 | JBoss 3.0.8/3.2.1 SQL Statement privileges management (EDB-23221 / Nessus ID 43661)
8 months ago
A vulnerability was found in JBoss 3.0.8/3.2.1 and classified as critical. Affected by this issue is some unknown functionality of the component SQL Statement Handler. The manipulation leads to improper privilege management.
This vulnerability is handled as CVE-2003-0845. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Changing japanese car’s (toyota pruis) language
8 months ago
CVE-2004-1488 | GNU wget 1.8/1.8.1/1.8.2/1.9/1.9.1 memory corruption (EDB-24813 / Nessus ID 27476)
8 months ago
A vulnerability has been found in GNU wget 1.8/1.8.1/1.8.2/1.9/1.9.1 and classified as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to memory corruption.
This vulnerability is known as CVE-2004-1488. The attack can be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2019-6443 | NTPsec up to 1.1.2 ntp_control.c read_sysvars out-of-bounds (EDB-46175 / Nessus ID 121340)
8 months ago
A vulnerability has been found in NTPsec up to 1.1.2 and classified as critical. Affected by this vulnerability is the function read_sysvars of the file ntp_control.c. The manipulation leads to out-of-bounds read.
This vulnerability is known as CVE-2019-6443. The attack can be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-12898 | 1000 Projects Attendance Tracking Management System 1.0 faculty_action.php faculty_course_id sql injection
8 months ago
A vulnerability was found in 1000 Projects Attendance Tracking Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /admin/faculty_action.php. The manipulation of the argument faculty_course_id leads to sql injection.
This vulnerability was named CVE-2024-12898. The attack can be initiated remotely. Furthermore, there is an exploit available.
Other parameters might be affected as well.
vuldb.com
Week in review: MUT-1244 targets both security workers and threat actors, Kali Linux 2024.4 released
8 months ago
Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: MUT-1244 targeting security researchers, red teamers, and threat actors A threat actor tracked as MUT-1244 by DataDog researchers has been targeting academics, pentesters, red teamers, security researchers, as well as other threat actors, in order to steal AWS access keys, WordPress account credentials and other sensitive data. Kali Linux 2024.4 released! 14 new shiny tools added Kali Linux 2024.4 includes … More →
The post Week in review: MUT-1244 targets both security workers and threat actors, Kali Linux 2024.4 released appeared first on Help Net Security.
Help Net Security
CVE-2008-2365 | Linux Kernel 2.6.23 ptrace_may_attach race condition (EDB-31965 / Nessus ID 33365)
8 months ago
A vulnerability classified as problematic was found in Linux Kernel 2.6.23. Affected by this vulnerability is the function ptrace_may_attach. The manipulation leads to race condition.
This vulnerability is known as CVE-2008-2365. The attack needs to be approached locally. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Submit #467424: 1000 Projects Attendance Tracking Management System PHP & MySQL Project V1.0 SQL Injection [Accepted]
8 months ago
Submit #467424 / VDB-289168
onupset
CVE-2024-12897 | Intelbras VIP S4320 G2 up to 20241222 Web Interface Sha1Account1 path traversal
8 months ago
A vulnerability was found in Intelbras VIP S3020 G2, VIP S4020 G2, VIP S4020 G3 and VIP S4320 G2 up to 20241222. It has been classified as critical. This affects an unknown part of the file ../mtd/Config/Sha1Account1 of the component Web Interface. The manipulation leads to path traversal: '../filedir'.
This vulnerability is uniquely identified as CVE-2024-12897. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to apply restrictive firewalling.
vuldb.com