Aggregator
.NET内网实战: 通过 FileSecurity 获取目录及文件控制列表和规则
6 days 17 hours ago
.NET 旧威胁新挑战:2025年 SQL 注入漏洞攻与防
6 days 17 hours ago
当前环境出现异常,请完成验证后继续访问。
.NET 安全攻防知识交流社区
6 days 17 hours ago
当前环境异常需完成验证后继续访问。
.NET内网实战: 通过 FileSecurity 获取目录及文件控制列表和规则
6 days 17 hours ago
当前环境出现异常,需完成验证后方可继续访问。点击“去验证”进行操作。
CROSS-X: Generalized and Stable Cross-Cache Attack on the Linux Kernel (to appear)
6 days 17 hours ago
Dongok Kim、Juhyun Song和Insu Yun的研究探讨了一种新型的安全机制,并分析了其在实际应用中的效果与安全性。
Windows plays Jenga: Uncovering Design Weaknesses in Windows File System Security (to appear)
6 days 17 hours ago
这篇文章探讨了最新的网络安全威胁及其防御策略,并提出了一种创新的隐私保护机制,在计算机和通信安全领域具有重要应用价值。
New AI prompt/data-leak scanner — try to break it (PrivGuard)
6 days 17 hours ago
Reddit及其合作伙伴使用cookies等技术以提升用户体验。接受所有cookies即同意其用于提供服务、个性化内容与广告及衡量广告效果。拒绝非必要cookies仍可能使用部分cookies以确保平台正常运作。更多信息请见隐私政策和Cookie通知。
Formula for persuasive debate?
6 days 18 hours ago
Reddit及其合作伙伴使用cookies等技术提升用户体验。接受所有cookies即同意其用于服务维护、内容优化、个性化广告及广告效果评估。拒绝非必要cookies时,仍会使用部分cookie确保平台正常运行。详情请查阅Cookie Notice和Privacy Policy。
CVE-2025-7953 | Sanluan PublicCMS up to 5.202506.a viewer.html File redirect
6 days 18 hours ago
A vulnerability described as problematic has been identified in Sanluan PublicCMS up to 5.202506.a. Affected by this issue is some unknown functionality of the file publiccms-parent/publiccms/src/main/webapp/resource/plugins/pdfjs/viewer.html. Executing manipulation of the argument File can lead to open redirect.
This vulnerability appears as CVE-2025-7953. The attack may be performed from a remote location. In addition, an exploit is available.
A patch should be applied to remediate this issue.
vuldb.com
CVE-2025-54655 | Huawei HarmonyOS 5.0.1/5.0.2 Virtualization Base toctou
6 days 18 hours ago
A vulnerability was found in Huawei HarmonyOS 5.0.1/5.0.2. It has been classified as critical. The impacted element is an unknown function of the component Virtualization Base Module. Performing manipulation results in time-of-check time-of-use.
This vulnerability is reported as CVE-2025-54655. The attack requires a local approach. No exploit exists.
vuldb.com
CVE-2025-54606 | Huawei HarmonyOS 5.0.1 Lock Screen logic error
6 days 18 hours ago
A vulnerability described as problematic has been identified in Huawei HarmonyOS 5.0.1. Affected by this issue is some unknown functionality of the component Lock Screen Module. Executing manipulation can lead to business logic errors.
This vulnerability is handled as CVE-2025-54606. The physical device can be targeted for the attack. There is not any exploit available.
vuldb.com
CVE-2025-54608 | Huawei HarmonyOS 5.0.1/5.1.0 Screen Management access control
6 days 18 hours ago
A vulnerability was found in Huawei HarmonyOS 5.0.1/5.1.0. It has been rated as critical. Affected is an unknown function of the component Screen Management Module. This manipulation causes improper access controls.
This vulnerability is registered as CVE-2025-54608. The attack needs to be launched locally. No exploit is available.
vuldb.com
CVE-2025-54607 | Huawei HarmonyOS 5.0.1/5.1.0 ArkWeb certificate validation
6 days 18 hours ago
A vulnerability was found in Huawei HarmonyOS 5.0.1/5.1.0. It has been classified as critical. This vulnerability affects unknown code of the component ArkWeb Module. Performing manipulation results in improper certificate validation.
This vulnerability is identified as CVE-2025-54607. The attack can be initiated remotely. There is not any exploit available.
vuldb.com
CVE-2025-53009 | MaterialX MTLX XML Parser stack-based overflow
6 days 18 hours ago
A vulnerability marked as critical has been reported in MaterialX. Affected by this vulnerability is an unknown functionality of the component MTLX XML Parser. Performing manipulation results in stack-based buffer overflow.
This vulnerability was named CVE-2025-53009. The attack may be initiated remotely. In addition, an exploit is available.
vuldb.com
CVE-2025-53011 | MaterialX MaterialXCore Shader Generation implGraphOutput null pointer dereference
6 days 18 hours ago
A vulnerability described as problematic has been identified in MaterialX. Affected by this issue is the function implGraphOutput of the component MaterialXCore Shader Generation. Executing manipulation can lead to null pointer dereference.
The identification of this vulnerability is CVE-2025-53011. The attack may be launched remotely. Furthermore, there is an exploit available.
Upgrading the affected component is recommended.
vuldb.com
CVE-2025-53010 | MaterialX Material.cpp getShaderNodes null pointer dereference
6 days 18 hours ago
A vulnerability classified as problematic has been found in MaterialX. This affects the function getShaderNodes of the file src/MaterialXCore/Material.cpp. The manipulation leads to null pointer dereference.
This vulnerability is referenced as CVE-2025-53010. Remote exploitation of the attack is possible. Furthermore, an exploit is available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-53012 | AcademySoftwareFoundation MaterialX up to 1.39.2 MaterialX File Parser resource consumption (GHSA-qc2h-74x3-4v3w / EUVD-2025-23394)
6 days 18 hours ago
A vulnerability identified as problematic has been detected in AcademySoftwareFoundation MaterialX up to 1.39.2. Affected is an unknown function of the component MaterialX File Parser. Performing manipulation results in resource consumption.
This vulnerability is reported as CVE-2025-53012. The attack is possible to be carried out remotely. No exploit exists.
You should upgrade the affected component.
vuldb.com
CVE-2025-46198 | grav 1.7.46/1.7.47/1.7.48 img Element onerror cross site scripting (EUVD-2025-22750)
6 days 18 hours ago
A vulnerability was found in grav 1.7.46/1.7.47/1.7.48 and classified as problematic. Affected by this vulnerability is an unknown functionality of the component img Element Handler. The manipulation of the argument onerror results in cross site scripting.
This vulnerability is known as CVE-2025-46198. It is possible to launch the attack remotely. No exploit is available.
vuldb.com
CVE-2025-7949 | Sanluan PublicCMS up to 5.202506.a preview.html url redirect (Issue 87 / EUVD-2025-22279)
6 days 18 hours ago
A vulnerability categorized as problematic has been discovered in Sanluan PublicCMS up to 5.202506.a. This affects an unknown function of the file publiccms-parent/publiccms/src/main/resources/templates/admin/cmsDiy/preview.html. The manipulation of the argument url results in open redirect.
This vulnerability is cataloged as CVE-2025-7949. The attack may be launched remotely. Furthermore, there is an exploit available.
It is best practice to apply a patch to resolve this issue.
vuldb.com