Aggregator
OpenAI 发最强新模型 o1,推理能力大幅增强;网友晒辛巴赔付收款截图;人类实现首次商业太空行走 | 极客早知道
1 year 9 months ago
拼多多 Temu 超越 eBay 成为全球第二大电子商务网站;《黑神话:悟空》总收入近 65 亿;谷歌和 OpenAI 高管据悉今将在白宫参会讨论人工智能
CVE-2017-1002008 | membership-simplified-for-oap-members-only 1.58 on WordPress File Download download.php unrestricted upload (EDB-41622 / ID 11777)
1 year 9 months ago
A vulnerability was found in membership-simplified-for-oap-members-only 1.58 on WordPress and classified as critical. This issue affects some unknown processing of the file membership-simplified-for-oap-members-only/download.php of the component File Download. The manipulation leads to unrestricted upload.
The identification of this vulnerability is CVE-2017-1002008. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2024-3986 | SportsPress Plugin up to 2.7.21 on WordPress Setting cross site scripting
1 year 9 months ago
A vulnerability was found in SportsPress Plugin up to 2.7.21 on WordPress and classified as problematic. Affected by this issue is some unknown functionality of the component Setting Handler. The manipulation leads to cross site scripting.
This vulnerability is handled as CVE-2024-3986. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-42469 | openhab-webui up to 4.2.0 path traversal (GHSA-f729-58x4-gqgf)
1 year 9 months ago
A vulnerability was found in openhab-webui up to 4.2.0 and classified as critical. This issue affects some unknown processing. The manipulation leads to path traversal.
The identification of this vulnerability is CVE-2024-42469. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-42470 | openhab-webui up to 4.2.0 authorization (GHSA-3g4c-hjhr-73rj)
1 year 9 months ago
A vulnerability was found in openhab-webui up to 4.2.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to missing authorization.
This vulnerability is known as CVE-2024-42470. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-42468 | openhab-webui up to 4.2.0 path traversal (GHSA-pcwp-26pw-j98w)
1 year 9 months ago
A vulnerability, which was classified as critical, was found in openhab-webui up to 4.2.0. Affected is an unknown function. The manipulation leads to path traversal.
This vulnerability is traded as CVE-2024-42468. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-38382 | IBM QRadar Suite Software/Cloud Pak for Security session expiration (XFDB-233672)
1 year 9 months ago
A vulnerability classified as problematic was found in IBM QRadar Suite Software and Cloud Pak for Security. This vulnerability affects unknown code. The manipulation leads to session expiration.
This vulnerability was named CVE-2022-38382. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-41734 | SAP NetWeaver Application Server ABAP and ABAP Platform authorization
1 year 9 months ago
A vulnerability, which was classified as problematic, has been found in SAP NetWeaver Application Server ABAP and ABAP Platform up to 912. This issue affects some unknown processing. The manipulation leads to missing authorization.
The identification of this vulnerability is CVE-2024-41734. The attack may be initiated remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-42377 | SAP Shared Service Framework 731/746/747/748 authorization
1 year 9 months ago
A vulnerability was found in SAP Shared Service Framework 731/746/747/748. It has been declared as problematic. This vulnerability affects unknown code. The manipulation leads to missing authorization.
This vulnerability was named CVE-2024-42377. The attack can be initiated remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-42376 | SAP Shared Service Framework 731/746/747/748 authorization
1 year 9 months ago
A vulnerability, which was classified as problematic, was found in SAP Shared Service Framework 731/746/747/748. This affects an unknown part. The manipulation leads to missing authorization.
This vulnerability is uniquely identified as CVE-2024-42376. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-42373 | SAP Student Life Cycle Management up to 808 authorization
1 year 9 months ago
A vulnerability was found in SAP Student Life Cycle Management up to 808. It has been rated as problematic. Affected by this issue is some unknown functionality. The manipulation leads to missing authorization.
This vulnerability is handled as CVE-2024-42373. The attack may be launched remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-37930 | ThemeSphere SmartMag Plugin up to 9.3.0 on WordPress information disclosure
1 year 9 months ago
A vulnerability has been found in ThemeSphere SmartMag Plugin up to 9.3.0 on WordPress and classified as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to information disclosure.
This vulnerability is known as CVE-2024-37930. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-39591 | SAP Document Builder S4FND 102 up to SAP_BS_FND 747 authorization
1 year 9 months ago
A vulnerability classified as problematic was found in SAP Document Builder. This vulnerability affects unknown code. The manipulation leads to missing authorization.
This vulnerability was named CVE-2024-39591. The attack can be initiated remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-43129 | WPDeveloper BetterDocs Plugin up to 3.5.8 on WordPress path traversal
1 year 9 months ago
A vulnerability has been found in WPDeveloper BetterDocs Plugin up to 3.5.8 on WordPress and classified as critical. This vulnerability affects unknown code. The manipulation leads to path traversal.
This vulnerability was named CVE-2024-43129. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-43135 | Themewinter WPCafe Plugin up to 2.2.28 on WordPress path traversal
1 year 9 months ago
A vulnerability was found in Themewinter WPCafe Plugin up to 2.2.28 on WordPress. It has been classified as critical. Affected is an unknown function. The manipulation leads to path traversal.
This vulnerability is traded as CVE-2024-43135. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
.NET攻防实战 | 一键开启Python运行环境的工具
1 year 9 months ago
.NET 安全基础入门学习知识库
1 year 9 months ago
.NET 一款执行F#代码的免杀白名单工具
1 year 9 months ago
Breach Roundup: Mexico in Hacker Spotlight
1 year 9 months ago
Also: Critical WHOIS Vulnerability Exposes Internet Security Flaw in .mobi Domains
This week, cyberthreats rising in Mexico; FBI warned of BEC scams; U.K. police arrested hacking suspect; Avis, Slim CD, Medicare and Fortinet disclosed breaches; Highline public schools reopened after cyberattack; a critical flaw was found in WHOIS; and Konni upped attacks on Russia, South Korea.
This week, cyberthreats rising in Mexico; FBI warned of BEC scams; U.K. police arrested hacking suspect; Avis, Slim CD, Medicare and Fortinet disclosed breaches; Highline public schools reopened after cyberattack; a critical flaw was found in WHOIS; and Konni upped attacks on Russia, South Korea.