Aggregator
CVE-2007-6310 | Falt4 Cms Falt4 Extreme Rc4 10.9.2007 index.php topic cross site scripting (EDB-4711 / XFDB-38952)
9 months 2 weeks ago
A vulnerability was found in Falt4 Cms Falt4 Extreme Rc4 10.9.2007 and classified as problematic. This issue affects some unknown processing of the file index.php. The manipulation of the argument topic leads to cross site scripting.
The identification of this vulnerability is CVE-2007-6310. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2007-6391 | SH-News 3.0 id sql injection (EDB-4709 / BID-26778)
9 months 2 weeks ago
A vulnerability was found in SH-News 3.0. It has been classified as critical. Affected is an unknown function. The manipulation of the argument id leads to sql injection.
This vulnerability is traded as CVE-2007-6391. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2007-6392 | Dominion Web DWdirectory 2.1 search sql injection (EDB-4708 / XFDB-38938)
9 months 2 weeks ago
A vulnerability was found in Dominion Web DWdirectory 2.1. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file search. The manipulation of the argument search leads to sql injection.
This vulnerability is known as CVE-2007-6392. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2007-6393 | Ace Image Hosting Script 0 albums.php id sql injection (EDB-4707 / XFDB-38941)
9 months 2 weeks ago
A vulnerability was found in Ace Image Hosting Script 0. It has been rated as critical. Affected by this issue is some unknown functionality of the file albums.php. The manipulation of the argument id leads to sql injection.
This vulnerability is handled as CVE-2007-6393. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2007-6398 | Flat PHP Board 1.2 improper authentication (EDB-4705 / BID-26782)
9 months 2 weeks ago
A vulnerability has been found in Flat PHP Board 1.2 and classified as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to improper authentication.
This vulnerability is known as CVE-2007-6398. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2007-6399 | Myupb Flat PHP Board up to 1.2 User Account index.php password credentials management (EDB-4705 / BID-26782)
9 months 2 weeks ago
A vulnerability was found in Myupb Flat PHP Board up to 1.2 and classified as critical. Affected by this issue is some unknown functionality of the file index.php of the component User Account. The manipulation of the argument password leads to credentials management.
This vulnerability is handled as CVE-2007-6399. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2007-6394 | P3mbo Content Injector 1.53 index.php id sql injection (EDB-4706 / XFDB-38939)
9 months 2 weeks ago
A vulnerability classified as critical has been found in P3mbo Content Injector 1.53. This affects an unknown part of the file index.php. The manipulation of the argument id leads to sql injection.
This vulnerability is uniquely identified as CVE-2007-6394. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
上交所通过重启系统解决堵单问题
9 months 2 weeks ago
9 月 27 日周五上交所遭遇了堵单问题,当天的交易量大幅下降。为了解决问题,上交所最后选择了重启交易系统,问题随后真的解决了。财新援引专业人士的消息报道,交易所的操作系统较为古老,在处理高并发任务时遇到瓶颈,尤其是在内存管理方面;当系统负载过高,内存被耗尽,导致程序无法正常处理请求,甚至完全卡死。「在这种情况下,重启系统可以清理内存,释放被占用的资源,从而让系统恢复正常。这种现象在较老的系统中更为常见,因为它们的内存管理和资源调配机制相对简单,不如现代操作系统那样高效。」这位专业人士说,可以增加几条简单的操作系统命令,将缓存中的数据写入硬盘,释放内存空间。上交所的交易系统源自德意志交易所的 Xetra 交易系统,而该系统是基于一款 VAX/VMS 的操作系统,由 DEC 在 1970 年代末推出,DEC 早已停止开发,了解该系统的专业人士也非常少。
Microsoft deprecates PPTP and L2TP VPN protocols in Windows Server
9 months 2 weeks ago
Microsoft has officially deprecated the Point-to-Point Tunneling Protocol (PPTP) and Layer 2 Tunneling Protocol (L2TP) in future versions of Windows Server, recommending admins switch to different protocols that offer increased security. [...]
Lawrence Abrams
CVE-2018-4343 | Apple macOS up to 10.13 memory corruption (Nessus ID 118178 / ID 371218)
9 months 2 weeks ago
A vulnerability has been found in Apple macOS up to 10.13 and classified as critical. This vulnerability affects unknown code. The manipulation leads to memory corruption.
This vulnerability was named CVE-2018-4343. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2020-6529 | Google Chrome up to 83.0.4103.116 WebRTC HTML Page input validation (Nessus ID 208631)
9 months 2 weeks ago
A vulnerability was found in Google Chrome. It has been rated as problematic. Affected by this issue is some unknown functionality of the component WebRTC. The manipulation as part of HTML Page leads to improper input validation.
This vulnerability is handled as CVE-2020-6529. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2020-6528 | Google Chrome up to 83.0.4103.116 on iOS Security UI HTML Page authorization (Nessus ID 208631)
9 months 2 weeks ago
A vulnerability was found in Google Chrome on iOS. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component Security UI. The manipulation as part of HTML Page leads to incorrect authorization.
This vulnerability is known as CVE-2020-6528. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2020-6527 | Google Chrome up to 83.0.4103.116 Content Security Policy HTML Page default permission (Nessus ID 208631)
9 months 2 weeks ago
A vulnerability was found in Google Chrome. It has been classified as critical. Affected is an unknown function of the component Content Security Policy. The manipulation as part of HTML Page leads to incorrect default permissions.
This vulnerability is traded as CVE-2020-6527. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2020-6526 | Google Chrome up to 83.0.4103.116 Sandbox HTML Page privileges management (Nessus ID 208631)
9 months 2 weeks ago
A vulnerability was found in Google Chrome and classified as critical. This issue affects some unknown processing of the component Sandbox. The manipulation as part of HTML Page leads to improper privilege management.
The identification of this vulnerability is CVE-2020-6526. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2020-6525 | Google Chrome up to 83.0.4103.116 Skia HTML Page out-of-bounds write (Nessus ID 208631)
9 months 2 weeks ago
A vulnerability has been found in Google Chrome and classified as critical. This vulnerability affects unknown code of the component Skia. The manipulation as part of HTML Page leads to out-of-bounds write.
This vulnerability was named CVE-2020-6525. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2020-6524 | Google Chrome up to 83.0.4103.116 WebAudio HTML Page out-of-bounds write (Nessus ID 208631)
9 months 2 weeks ago
A vulnerability, which was classified as critical, was found in Google Chrome. This affects an unknown part of the component WebAudio. The manipulation as part of HTML Page leads to out-of-bounds write.
This vulnerability is uniquely identified as CVE-2020-6524. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2020-6523 | Google Chrome up to 83.0.4103.116 Skia HTML Page out-of-bounds write (Nessus ID 208631)
9 months 2 weeks ago
A vulnerability, which was classified as critical, has been found in Google Chrome. Affected by this issue is some unknown functionality of the component Skia. The manipulation as part of HTML Page leads to out-of-bounds write.
This vulnerability is handled as CVE-2020-6523. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2020-6522 | Google Chrome up to 83.0.4103.116 Protocol HTML Page privileges management (Nessus ID 208631)
9 months 2 weeks ago
A vulnerability classified as critical was found in Google Chrome. Affected by this vulnerability is an unknown functionality of the component Protocol Handler. The manipulation as part of HTML Page leads to improper privilege management.
This vulnerability is known as CVE-2020-6522. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2020-6521 | Google Chrome up to 83.0.4103.116 Autofill HTML Page information disclosure (Nessus ID 208631)
9 months 2 weeks ago
A vulnerability classified as problematic has been found in Google Chrome. Affected is an unknown function of the component Autofill. The manipulation as part of HTML Page leads to information disclosure.
This vulnerability is traded as CVE-2020-6521. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com