Aggregator
CVE-2022-37139 | SourceCodester Loan Management System 1.0 cross site scripting
CVE-2023-33466 | Orthanc up to 1.11.x API Privilege Escalation
CVE-2024-35669 | Bowo Debug Log Manager Plugin up to 2.3.1 on WordPress authorization
CVE-2024-23356 | Qualcomm Snapdragon Auto up to WCN3950 HLOS Call memory corruption
CVE-2024-23382 | Qualcomm Snapdragon Auto up to WSA8845H Graphics Kernel Driver Request use after free
CVE-2024-23383 | Qualcomm Snapdragon Auto up to WSA8845H Kernel Driver use after free
CVE-2024-23381 | Qualcomm Snapdragon Auto up to WSA8845H GPU SMMU use after free
CVE-2023-34410 | Qt up to 5.15.14/6.2.8/6.5.1 TLS certificate validation (FEDORA-2023-0d4b3316f6 / Nessus ID 211880)
CVE-2024-52308 | cli up to 2.61.0 command injection (GHSA-p2h2-3vg9-4p87 / Nessus ID 211885)
CVE-2024-10240 | GitLab Enterprise Edition up to 17.3.6/17.4.3/17.5.1 Private Project exposure of sensitive system information to an unauthorized control sphere (Issue 493188 / Nessus ID 211882)
Cape: l’operatore telefonico incentrato sulla privacy
CVE-2003-0611 | Xtokkaetama 1.0 B6 memory corruption (EDB-72 / Nessus ID 15193)
Supply chain managers underestimate cybersecurity risks in warehouses
32% of warehouse respondents report that social engineering is one of the most-used entry points in warehouse cyberattacks – tied with software vulnerabilities (32%) and followed by devices (19%), according to Ivanti. Cyberattacks on warehouses threaten supply chain stability As the backbone of the supply chain, a cyberattack on a warehouse can result in major consequences such as significant operational downtime, damage to a company’s reputation and financial losses. Given the vast amount of data … More →
The post Supply chain managers underestimate cybersecurity risks in warehouses appeared first on Help Net Security.
CVE-2006-0532 | Media2 Cms Shop resultat.asp strSok cross site scripting (EDB-27160 / XFDB-24451)
CVE-2022-47876 | Jedox 2020.2.5 Groovy Script Privilege Escalation (ID 172155 / EDB-51427)
NordVPN Black Friday Deal: Save up to 74% on yearly subscriptions
[Guest Diary] Using Zeek, Snort, and Grafana to Detect Crypto Mining Malware, (Tue, Nov 26th)
CVE-2009-4610 | Mortbay Jetty up to 7.0.0 Value cross site scripting (EDB-9887 / ID 800798)
Ulfberht: Shellcode loader
Ulfberht Shellcode loader Features : Indirect syscall. Module stomping. Load a stomped module using APC. Execute the payload with a direct jump (jmp) without creating a new thread. API hashing implemented using the DJB2...
The post Ulfberht: Shellcode loader appeared first on Penetration Testing Tools.