Aggregator
权威认可 | 悬镜持续引领《CCSIP 2024中国网络安全行业全景册(第七版)》供应链安全等关键领域
8 months 1 week ago
悬镜安全持续引领SCA、SAST、IAST、RASP、SBOM情报、DevSecOps等关键技术领域。
DT杯网络安全攻击挑战赛:巅峰对决,等你来战!
8 months 1 week ago
DT杯网络安全攻击挑战赛:巅峰对决,等你来战!
8 months 1 week ago
亲爱的网络安全爱好者们:2025年1月18日和19日,DT杯网络安全攻击挑战赛 即将震撼登场!我们的靶场已全面开放,专注于 Web安全 和 内网渗透 两大核心方向。无论你是初出茅庐的新手,还是经验丰富
新栏目试读 | OmniFocus 的效率之旅,从用好收件箱开始
8 months 1 week ago
按:本文是付费栏目《生产力超频:OmniFocus 4 高效管理日程》的限时免费试读文章。这是现有栏目《用 OmniFocus 3 搭建任务管理系统》的后续版本,针对 OmniFocus 最新版撰写。
CVE-2025-0173 | SourceCodester Online Eyewear Shop 1.0 /orders/view_order.php id sql injection
8 months 1 week ago
A vulnerability was found in SourceCodester Online Eyewear Shop 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /orders/view_order.php. The manipulation of the argument id leads to sql injection.
This vulnerability is handled as CVE-2025-0173. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
Am I in trouble?
8 months 1 week ago
CVE-2025-0172 | code-projects Chat System 1.0 /admin/deleteroom.php id sql injection
8 months 1 week ago
A vulnerability has been found in code-projects Chat System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /admin/deleteroom.php. The manipulation of the argument id leads to sql injection.
This vulnerability is known as CVE-2025-0172. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-0171 | code-projects Chat System 1.0 /admin/deleteuser.php id sql injection
8 months 1 week ago
A vulnerability, which was classified as critical, was found in code-projects Chat System 1.0. Affected is an unknown function of the file /admin/deleteuser.php. The manipulation of the argument id leads to sql injection.
This vulnerability is traded as CVE-2025-0171. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
Submit #473163: sourcecodester Online Eyewear Shop Website v1.0 SQL Injection [Accepted]
8 months 1 week ago
Submit #473163 / VDB-289940
wejieqin
Submit #473154: Code-projects Chat System 1.0 Improper Access Controls [Duplicate]
8 months 1 week ago
Submit #473154 / VDB-289939
Rorochan
Submit #473153: Code-projects Chat System 1.0 SQL Injection [Accepted]
8 months 1 week ago
Submit #473153 / VDB-289939
Rorochan
Submit #473143: Code-projects Chat System 1.0 SQL Injection [Accepted]
8 months 1 week ago
Submit #473143 / VDB-289938
Rorochan
CVE-2024-8447 | Red Hat JBoss Narayana 7.0.2 LRA Coordinator deadlock (JBTM-3911)
8 months 1 week ago
A vulnerability, which was classified as problematic, has been found in Red Hat JBoss Narayana 7.0.2. This issue affects some unknown processing of the component LRA Coordinator. The manipulation leads to deadlock.
The identification of this vulnerability is CVE-2024-8447. The attack needs to be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Разоблачена тайная программа слежки через мобильные приложения
8 months 1 week ago
Как прогноз погоды превращает приватные данные в инструмент шпионажа.
CVE-2024-56830 | Perl always uses Perl Net::EasyTCP Package up to 0.26 rand weak prng (ID 184)
8 months 1 week ago
A vulnerability classified as problematic was found in Perl always uses Perl Net::EasyTCP Package up to 0.26. This vulnerability affects the function rand. The manipulation leads to cryptographically weak prng.
This vulnerability was named CVE-2024-56830. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
GitHub - musana/CF-Hero: CF-Hero is a reconnaissance tool that uses multiple data sources to discover the origin IP addresses of Cloudflare-protected web applications. The tool can also distinguish between domains that are protected by Cloudflare and…
8 months 1 week ago
CVE-2025-22214 | Landray EIS up to 2006 fi_message_receiver.aspx replyid sql injection
8 months 1 week ago
A vulnerability classified as critical has been found in Landray EIS up to 2006. This affects an unknown part of the file Message/fi_message_receiver.aspx. The manipulation of the argument replyid leads to sql injection.
This vulnerability is uniquely identified as CVE-2025-22214. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
CVE-2002-20002 | Perl always uses Perl Net::EasyTCP Package up to 0.14 rand weak prng (ID 184)
8 months 1 week ago
A vulnerability was found in Perl always uses Perl Net::EasyTCP Package up to 0.14. It has been rated as problematic. Affected by this issue is the function rand. The manipulation leads to cryptographically weak prng.
This vulnerability is handled as CVE-2002-20002. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-11184 | wp-enable-svg Plugin up to 0.7 on WordPress SVG File cross site scripting
8 months 1 week ago
A vulnerability was found in wp-enable-svg Plugin up to 0.7 on WordPress. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component SVG File Handler. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2024-11184. The attack can be launched remotely. There is no exploit available.
vuldb.com