Aggregator
星巴克1.1万家门店受影响!因其第三方软件供应商Blue Yonder遭勒索软件攻击
9 months 3 weeks ago
星巴克因Blue Yonder软件公司遭受黑客攻击,北美1.1万家门店被迫手动管理员工工资工时,影响波及多个行业。
“看雪漏洞小组”集结!组团挖洞,一起冲击华为漏洞更高奖励
9 months 3 weeks ago
组团挖洞,收益更高!
sign参数分析
9 months 3 weeks ago
看雪论坛作者ID:绿豆粥
华科团队发表LLM应用商店研究指南,首届国际研讨会明年挪威启航!
9 months 3 weeks ago
LLMapp2025诚挚邀请学术界和工业界的研究者们积极投稿,共同探讨LLM应用商店生态系统的现状与未来!
10 дней борьбы: как Vossko вернула контроль за производством после кибератаки
9 months 3 weeks ago
Сможет ли компания извлечь из инцидента важный урок, который обезопасит её в будущем?
NVIDIA UFM Vulnerability Leads to Privilege Escalation & Data Tampering
9 months 3 weeks ago
NVIDIA has released a critical security update addressing a significant vulnerability in its Unified Fabric Manager (UFM) products. This flaw, identified as CVE-2024-0130, poses a high-severity risk to users, with a CVSS v3.1 base score of 8.8. The vulnerability could allow attackers to escalate privileges, tamper with data, and even compromise system availability. Analyze cyber threats with […]
The post NVIDIA UFM Vulnerability Leads to Privilege Escalation & Data Tampering appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Divya
How DSPM Helps Businesses Meet Compliance Requirements
9 months 3 weeks ago
Data Security Posture Management (DSPM) helps monitor, secure, and ensure compliance for sensitive data, reducing risks across diverse environments. Complying with cybersecurity regulations can be a source of great pain for organizations, especially those that handle and store particularly valuable and vulnerable information. Organizations in sectors like healthcare, finance, legal, and government often process vast […]
Pierluigi Paganini
CVE-2024-11817 | PHPGurukul User Registration & Login and User Management System /admin/index.php sql injection
9 months 3 weeks ago
A vulnerability was found in PHPGurukul User Registration & Login and User Management System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /admin/index.php. The manipulation of the argument username leads to sql injection.
This vulnerability is handled as CVE-2024-11817. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2024-11818 | PHPGurukul User Registration & Login and User Management System /signup.php sql injection
9 months 3 weeks ago
A vulnerability classified as critical has been found in PHPGurukul User Registration & Login and User Management System 1.0. This affects an unknown part of the file /signup.php. The manipulation of the argument email leads to sql injection.
This vulnerability is uniquely identified as CVE-2024-11818. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2024-11819 | 1000 Projects Portfolio Management System MCA 1.0 forgot_password_process.php username sql injection
9 months 3 weeks ago
A vulnerability classified as critical was found in 1000 Projects Portfolio Management System MCA 1.0. This vulnerability affects unknown code of the file /forgot_password_process.php. The manipulation of the argument username leads to sql injection.
This vulnerability was named CVE-2024-11819. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2024-11219 | Otter Blocks Plugin up to 3.0.6 on WordPress Image View path traversal
9 months 3 weeks ago
A vulnerability was found in Otter Blocks Plugin up to 3.0.6 on WordPress. It has been declared as critical. This vulnerability affects unknown code of the component Image View. The manipulation leads to path traversal.
This vulnerability was named CVE-2024-11219. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-11083 | ProfilePress Plugin up to 4.15.18 on WordPress information disclosure
9 months 3 weeks ago
A vulnerability was found in ProfilePress Plugin up to 4.15.18 on WordPress. It has been rated as problematic. This issue affects some unknown processing. The manipulation leads to information disclosure.
The identification of this vulnerability is CVE-2024-11083. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-10580 | Hustle Plugin up to 7.8.5 on WordPress Form Submission authorization
9 months 3 weeks ago
A vulnerability was found in Hustle Plugin up to 7.8.5 on WordPress. It has been rated as critical. Affected by this issue is some unknown functionality of the component Form Submission Handler. The manipulation leads to missing authorization.
This vulnerability is handled as CVE-2024-10580. The attack may be launched remotely. There is no exploit available.
vuldb.com
Эффект домино в Cloudflare: одно обновление уничтожило более половины данных
9 months 3 weeks ago
Сбой помогает ответить на вопрос – можно ли полностью доверять системам аналитики?
从威胁到风险 微步在线如何定义“下一代威胁情报平台”?
9 months 3 weeks ago
不仅是产品的升级换代,更是行业引领者对威胁情报的全新定义。
Palo Alto 防火墙 0day 由低级开发错误引发
9 months 3 weeks ago
开发安全就找代码卫士
俄黑客组织 RomCom 被指利用火狐和Windows 0day攻击用户
9 months 3 weeks ago
速修复
15 000 000 пострадавших и $9,8 млн компенсаций: суд раскрыл правду о взломе
9 months 3 weeks ago
В Канаде наконец разоблачили тайну, которую пытались похоронить навсегда.
警惕消费技术武器化:热门手游Pokémon Go或危害国家安全
9 months 3 weeks ago