Aggregator
黑客在新的 WikiLoader 恶意软件攻击中使用伪造的 GlobalProtect VPN 软件
1 year 9 months ago
安全客
Zyxel 修复了多个路由器中的关键 OS 命令注入漏洞
1 year 9 months ago
安全客
研究人员发现超过 2.2 万个被删除的 PyPI 软件包存在复活劫持的风险
1 year 9 months ago
安全客
谷歌发布Android月度安全更新,修复正被积极利用的高危漏洞
1 year 9 months ago
安全客
Palo Alto 5亿美元收购IBM的QRadar业务
1 year 9 months ago
安全客
朝鲜黑客利用伪造的 FreeConference 应用程序瞄准求职者
1 year 9 months ago
安全客
英国三人认罪,涉嫌经营1000万美元的多因素认证绕过业务
1 year 9 months ago
安全客
渠道精英训练营——技术大比武荣誉榜
1 year 9 months ago
安全客
Trackd 发布了强大的规则引擎 推动行业更积极地使用自动补丁
1 year 9 months ago
安全客
ISC Stormcast For Thursday, September 5th, 2024 https://isc.sans.edu/podcastdetail/9126, (Thu, Sep 5th)
1 year 9 months ago
Defensienota 2024: Sterk, slim en samen (video)
1 year 9 months ago
Om Nederland veilig te houden investeren we fors in onze bijdrage aan het NAVO-bondgenootschap. Zo krijgt de landmacht weer tanks, de luchtmacht extra F-35’s en de marine kan rekenen op extra fregatten voor onderzeebootbestrijding. Ook wordt de militaire politie versterkt en trekt Defensie structureel 260 miljoen extra uit om personeel te behouden en binnen te halen. Er wordt geïnvesteerd in innovatie en de defensie-industrie, om de productie van militair materieel van vandaag en morgen te stimuleren. Het is slechts een greep aan maatregelen uit de vandaag verschenen Defensienota.
CVE-2014-5893 | Shinsegaemall froyo 5.1.3 X.509 Certificate cryptographic issues (VU#582497)
1 year 9 months ago
A vulnerability was found in Shinsegaemall froyo 5.1.3. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
This vulnerability is known as CVE-2014-5893. Access to the local network is required for this attack. There is no exploit available.
vuldb.com
Researcher Finds Unfixable Yet Tricky to Exploit Flaw in Yubikeys
1 year 9 months ago
A security flaw exploiting side channel attacks means some Yubikeys can be cloned
Вызывают ли смартфоны рак мозга? ARPANSA ставит точку в многолетнем споре
1 year 9 months ago
Поддавшись панике, мы десятилетиями игнорировали факты.
CVE-2024-44821 | ZZCMS up to 2023 CAPTCHA Page /inc/function.php captcha information exposure
1 year 9 months ago
A vulnerability was found in ZZCMS up to 2023. It has been classified as problematic. Affected is an unknown function of the file /inc/function.php of the component CAPTCHA Page Handler. The manipulation of the argument captcha leads to information exposure through error message.
This vulnerability is traded as CVE-2024-44821. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-44817 | ZZCMS up to 2023 adv2.php id sql injection
1 year 9 months ago
A vulnerability has been found in ZZCMS up to 2023 and classified as critical. Affected by this vulnerability is an unknown functionality of the file adv2.php. The manipulation of the argument id leads to sql injection.
This vulnerability is known as CVE-2024-44817. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-45076 | IBM webMethods Integration 10.15 unrestricted upload
1 year 9 months ago
A vulnerability was found in IBM webMethods Integration 10.15. It has been classified as very critical. This affects an unknown part. The manipulation leads to unrestricted upload.
This vulnerability is uniquely identified as CVE-2024-45076. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-44808 | Vypor Attack API System 1.0 GET Parameter user input validation
1 year 9 months ago
A vulnerability was found in Vypor Attack API System 1.0. It has been declared as critical. This vulnerability affects unknown code of the component GET Parameter Handler. The manipulation of the argument user leads to improper input validation.
This vulnerability was named CVE-2024-44808. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-44818 | ZZCMS up to 2023 Header caina.php HTTP_Referer cross site scripting
1 year 9 months ago
A vulnerability was found in ZZCMS up to 2023. It has been rated as problematic. This issue affects some unknown processing of the file caina.php of the component Header Handler. The manipulation of the argument HTTP_Referer leads to cross site scripting.
The identification of this vulnerability is CVE-2024-44818. The attack may be initiated remotely. There is no exploit available.
vuldb.com