Aggregator
SonicWall SSL VPN曝出高危漏洞,可能导致防火墙崩溃
1 year 9 months ago
该安全漏洞还影响了防火墙的SSLVPN功能,且已被黑客用以网络攻击。该公司提醒客户尽快为受影响的产品打上补丁。
iPhone 16 系列发布,AI 功能明年进中国;百度辟谣放弃通用大模型研发;快手贾樟柯共创 AI 电影 | 极客早知道
1 year 9 months ago
华为三折叠手机预约量突破 300 万人;美的集团有望成为香港股市三年来最大上市项目;盖茨: AI 比电动汽车用电量小得多。
.NET 一款无Python环境下支持运行脚本的渗透工具
1 year 9 months ago
.NET内网实战:通过命令行解密Web.config
1 year 9 months ago
.NET 一款白名单编译器执行负载的工具
1 year 9 months ago
Kimsuky-linked hackers use similar tactics to attack Russia and South Korea, researchers say
1 year 9 months ago
The threat actor known as Konni, which has been previously linked to the North Korean state-sponsor
第四届“长城杯”网络安全大赛暨京津冀网络安全技能竞赛(初赛)by Mini-Venom
1 year 9 months ago
CVE-2007-2485 | Ruben Boelinger myflash 1.00 on WordPress myflash-button.php wpPATH file inclusion (EDB-3828 / XFDB-34000)
1 year 9 months ago
A vulnerability classified as critical has been found in Ruben Boelinger myflash 1.00 on WordPress. Affected is an unknown function of the file myflash-button.php. The manipulation of the argument wpPATH leads to file inclusion.
This vulnerability is traded as CVE-2007-2485. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2021-20123, CVE-2021-20124: DrayTek Vulnerabilities Discovered by Tenable Research Added to CISA KEV
1 year 9 months ago
苹果可能会结束EarPods有线耳机的历史 不再继续生产此类有线耳机
1 year 9 months ago
AI 时代首款 iPhone 发布,意味着 AiPhone 时代到来了吗?
1 year 9 months ago
iPhone 16 的发布,意味着苹果迈入 AiPhone 时代。
Official: DHS cyber review board will announce next investigation ‘soon’
1 year 9 months ago
A review board of federal and industry officials led by the Homeland Security Department is readyin
谛听 工控安全月报 | 8月
1 year 9 months ago
8月│月报 谛听工控安全月报上线了,工信部的最新政策,8月发生的多起工控安全事件,谛听团队收集的最新攻击教据......更多安全资讯,请关注“谛听ditecting",每月更新!
谛听 工控安全月报 | 8月
1 year 9 months ago
8月│月报 谛听工控安全月报上线了,工信部的最新政策,8月发生的多起工控安全事件,谛听团队收集的最新攻击教据......更多安全资讯,请关注“谛听ditecting",每月更新!
CVE-2022-39172 | mb Support openVIVA prior 20220801 Vorgang Name/Hauptverantwortlicher cross site scripting
1 year 9 months ago
A vulnerability was found in mb Support openVIVA. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component Vorgang Handler. The manipulation of the argument Name/Hauptverantwortlicher leads to cross site scripting.
This vulnerability is known as CVE-2022-39172. The attack can be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-46570 | radare2 up to 5.8.9 nds32-dis.h print_insn32 out-of-bounds (Issue 22333)
1 year 9 months ago
A vulnerability classified as problematic has been found in radare2 up to 5.8.9. This affects the function print_insn32 in the library libr/arch/p/nds32/nds32-dis.h. The manipulation leads to out-of-bounds read.
This vulnerability is uniquely identified as CVE-2023-46570. The attack can only be done within the local network. There is no exploit available.
vuldb.com
CVE-2023-46569 | radare2 up to 5.8.9 nds32-dis.h print_insn32_fpu out-of-bounds (Issue 22334)
1 year 9 months ago
A vulnerability, which was classified as problematic, has been found in radare2 up to 5.8.9. This issue affects the function print_insn32_fpu in the library libr/arch/p/nds32/nds32-dis.h. The manipulation leads to out-of-bounds read.
The identification of this vulnerability is CVE-2023-46569. The attack needs to be done within the local network. There is no exploit available.
vuldb.com
CVE-2023-40140 | Google Android android_view_InputDevice.cpp android_view_InputDevice_create use after free
1 year 9 months ago
A vulnerability classified as problematic has been found in Google Android. Affected is the function android_view_InputDevice_create of the file android_view_InputDevice.cpp. The manipulation leads to use after free.
This vulnerability is traded as CVE-2023-40140. Local access is required to approach this attack. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2023-47101 | Securepoint SSL VPN Client 2.0.28/2.0.32 Installer Local Privilege Escalation (CYADV-2023-012)
1 year 9 months ago
A vulnerability, which was classified as problematic, was found in Securepoint SSL VPN Client 2.0.28/2.0.32. This affects an unknown part of the component Installer. The manipulation leads to Local Privilege Escalation.
This vulnerability is uniquely identified as CVE-2023-47101. Attacking locally is a requirement. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com