Aggregator
The AI Hype Cycle 2024: What’s Next for GenAI
11 months ago
Overhauling Government Technology During Perpetual Change
11 months ago
CVE-2007-2736 | Achievo 1.1.0 index.php config_atkroot file inclusion (EDB-3928 / XFDB-34305)
11 months ago
A vulnerability was found in Achievo 1.1.0. It has been declared as very critical. This vulnerability affects unknown code of the file index.php. The manipulation of the argument config_atkroot leads to file inclusion.
This vulnerability was named CVE-2007-2736. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2016-9878 | Oracle Retail Point-of-Sale 14.0/14.1 Transaction path traversal (Nessus ID 111600 / ID 276356)
11 months ago
A vulnerability, which was classified as critical, was found in Oracle Retail Point-of-Sale 14.0/14.1. This affects an unknown part of the component Transaction. The manipulation leads to path traversal.
This vulnerability is uniquely identified as CVE-2016-9878. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
SkylineWebcams – 来自 60 多个国家、热门旅游地点的高清实况摄像头
11 months ago
Home在线应用SkylineWebcams – 来自 60 多个国家、热门旅游地点的高清实况摄像头
Linux 6.11 释出
11 months ago
Linus Torvalds 在内核邮件列表上宣布释出 Linux 6.11,6.12 合并窗口开启,Linux 6.12 有望成为新的长期支持版本(LTS)。Linux 6.11主要新特性包括:io_uring 子系统支持 bind() 和 listen()操作,针对实时内核减少延迟的新锁定机制,减少文本占用错误信息 ETXTBSY,支持用 Rust 开发块驱动程序,支持块层的原子写入操作、专用 bucket slab 分配器加固内核防御堆喷射(heap spraying)攻击、getrandom() 的 vDSO 实现,等等。
CVE-2016-9878 | Oracle Retail Integration Bus 14.0.x/14.1.x/15.0.x/16.0.x Install path traversal (Nessus ID 111600 / ID 276356)
11 months ago
A vulnerability, which was classified as critical, has been found in Oracle Retail Integration Bus 14.0.x/14.1.x/15.0.x/16.0.x. Affected by this issue is some unknown functionality of the component Install. The manipulation leads to path traversal.
This vulnerability is handled as CVE-2016-9878. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-8880 | playSMS 1.4.4/1.4.5/1.4.6/1.4.7 Template index.php username/email/captcha code injection
11 months ago
A vulnerability classified as critical has been found in playSMS 1.4.4/1.4.5/1.4.6/1.4.7. Affected is an unknown function of the file /playsms/index.php?app=main&inc=core_auth&route=forgot&op=forgot of the component Template Handler. The manipulation of the argument username/email/captcha leads to code injection.
This vulnerability is traded as CVE-2024-8880. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
The project maintainer was informed early about the issue. Investigation shows that playSMS up to 1.4.3 contained a fix but later versions re-introduced the flaw. As long as the latest version of the playsms/tpl package is used, the software is not affected. Version >=1.4.4 shall fix this issue for sure.
It is recommended to upgrade the affected component.
vuldb.com
Submit #406153: playSMS 1.4.3 playSMS 1.4.3 Unauthenticated RCE through captcha [Duplicate]
11 months ago
Submit #406153 / VDB-277524
Dhimitri
Submit #406115: playSMS 1.4.3 PlaySMS 1.4.3 Unauthenticated RCE through SSTI [Duplicate]
11 months ago
Submit #406115 / VDB-277524
Dhimitri
Submit #406095: playSMS 1.4.3 Improper Handling of Parameters [Accepted]
11 months ago
Submit #406095 / VDB-277524
Dhimitri
CVE-2016-9878 | Oracle Retail Central Office 14.0/14.1 Security path traversal (Nessus ID 111600 / ID 276356)
11 months ago
A vulnerability was found in Oracle Retail Central Office 14.0/14.1. It has been rated as critical. This issue affects some unknown processing of the component Security. The manipulation leads to path traversal.
The identification of this vulnerability is CVE-2016-9878. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2007-2711 | Tinyirc TinyIdentD 2.2 stack-based overflow (EDB-3925 / XFDB-34298)
11 months ago
A vulnerability, which was classified as very critical, was found in Tinyirc TinyIdentD 2.2. This affects an unknown part. The manipulation leads to stack-based buffer overflow.
This vulnerability is uniquely identified as CVE-2007-2711. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
Lockbit
11 months ago
cohenido
Qilin
11 months ago
cohenido
CVE-2006-6805 | Enthrallweb eJobs newsdetail.asp ID sql injection (EDB-2988 / SA23520)
11 months ago
A vulnerability was found in Enthrallweb eJobs. It has been declared as critical. This vulnerability affects unknown code of the file newsdetail.asp. The manipulation of the argument ID leads to sql injection.
This vulnerability was named CVE-2006-6805. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
SecWiki News 2024-09-15 Review
11 months ago
CVE-2016-9878 | Oracle Retail Back Office 14.0/14.1 Security path traversal (Nessus ID 111600 / ID 276356)
11 months ago
A vulnerability was found in Oracle Retail Back Office 14.0/14.1. It has been declared as critical. This vulnerability affects unknown code of the component Security. The manipulation leads to path traversal.
This vulnerability was named CVE-2016-9878. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
目录更新!《安卓系统定制实战》
11 months ago
最新版目录:在这个移动互联网时代,安卓系统已经成为了手机操作系统的主流。作为一名开发人员,您是否曾想能定制自己的安卓系统,让它更符合您的需求?或者想深入了解安卓系统的内部机制,提升自己的技术能力?通过