A vulnerability, which was classified as critical, has been found in Zope ZODB 3.8/3.8.0/3.8.1. This issue affects some unknown processing. The manipulation leads to improper authentication.
The identification of this vulnerability is CVE-2009-0669. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as problematic, was found in Merak Mail Server 5.2.7. Affected is an unknown function of the file address.html. The manipulation leads to basic cross site scripting.
This vulnerability is traded as CVE-2004-1719. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
A vulnerability classified as critical has been found in Linux Kernel 2.6.0. This affects an unknown part of the component CPUFREQ Proc Handler. The manipulation leads to integer coercion error.
This vulnerability is uniquely identified as CVE-2004-0228. Attacking locally is a requirement. Furthermore, there is an exploit available.
A vulnerability has been found in PHP up to 5.2.10 and classified as critical. This vulnerability affects the function php_openssl_apply_verification_policy of the component Certificates. The manipulation leads to improper input validation.
This vulnerability was named CVE-2009-3291. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Cisco IOS 12.1xu/12.1yd/12.2b. It has been declared as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to improper resource management.
This vulnerability is known as CVE-2010-0583. The attack can be launched remotely. There is no exploit available.
A major retailer has just suffered a massive data breach. Customer credit card information is circulating on the dark web, fraudulent transactions are skyrocketing, and consumer trust is rapidly eroding. The attack was stealthy, persistent, and devastating. But how did it happen? To fully understand, we must retrace...
A vulnerability was found in Spectra Plugin up to 2.10.3 on WordPress. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component Custom CSS Handler. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2023-6486. The attack can be launched remotely. There is no exploit available.
A vulnerability was found in Concrete CMS up to 8.5.15/9.2.7 and classified as problematic. Affected by this issue is some unknown functionality of the component Calendar Color Settings Screen. The manipulation leads to cross site scripting.
This vulnerability is handled as CVE-2024-2753. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Concrete CMS up to 8.5.15/9.2.7. It has been classified as problematic. This affects an unknown part of the component Advanced File Search Filter. The manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2024-3178. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in VeridiumID up to 3.4.x and classified as problematic. This issue affects some unknown processing. The manipulation leads to cross site scripting.
The identification of this vulnerability is CVE-2023-44040. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as problematic has been found in Concrete CMS up to 8.5.15/9.2.7. Affected is an unknown function. The manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2024-3180. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as problematic was found in Concrete CMS up to 8.5.15/9.2.7. Affected by this vulnerability is an unknown functionality of the component Custom Class Page. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2024-3179. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Concrete CMS up to 8.5.15/9.2.7. It has been declared as critical. This vulnerability affects unknown code of the component Search Field. The manipulation leads to os command injection.
This vulnerability was named CVE-2024-3181. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as problematic has been found in devitemsllc ShopLentor Plugin up to 2.8.3 on WordPress. This affects an unknown part. The manipulation of the argument slitems leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2024-2868. It is possible to initiate the attack remotely. There is no exploit available.
WhatsApp addressed a flaw, tracked as CVE-2025-30401, that could allow attackers to trick users and enable remote code execution. WhatsApp released a security update to address a vulnerability, tracked as CVE-2025-30401, that could let attackers trick users and enable remote code execution. The spoofing flaw impacts WhatsApp for Windows before version 2.2450.6. An attacker could […]
The malware's creators insist a new open source version of Neptune is for educational use by pen testers, but a raft of sophisticated backdoor and evasion capabilities says otherwise.