Aggregator
CVE-2024-43466 | Microsoft SharePoint Server deserialization
1 year 9 months ago
A vulnerability has been found in Microsoft SharePoint Server and classified as critical. This vulnerability affects unknown code. The manipulation leads to deserialization.
This vulnerability was named CVE-2024-43466. The attack can be initiated remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
How to Actually Learn Hacking in 2024–25 : A Practical Guide
1 year 9 months ago
社区速递 061 | 你没见过的社区文章、一周最热评、派友拍的《黑神话》
1 year 9 months ago
社区速递 061 | 你没见过的社区文章、一周最热评、派友拍的《黑神话》 除了首页时间流和侧栏的精选展位,少数派 Matrix 社区还有很多优秀内容因条件所限无法得到有效曝光,因此我们决定重启 Ma
My recon methodology for hunting CVE-2021–42063 led to discovering an RXSS vulnerability in the…
1 year 9 months ago
CVE-2024-43465 | Microsoft Excel use after free
1 year 9 months ago
A vulnerability, which was classified as critical, was found in Microsoft Excel. This affects an unknown part. The manipulation leads to use after free.
This vulnerability is uniquely identified as CVE-2024-43465. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
Unauthorized Deletion of Forms by Low-Level Unlicensed Users: A 500$ Access Control Bug
1 year 9 months ago
Everything You Need to Know Before Building on the Stellar Blockchain
1 year 9 months ago
"Why do I have to transfer my crypto to a CEX account before I can get fiat and pay for something?"
CVE-2024-43464 | Microsoft SharePoint Server deserialization
1 year 9 months ago
A vulnerability, which was classified as critical, has been found in Microsoft SharePoint Server. Affected by this issue is some unknown functionality. The manipulation leads to deserialization.
This vulnerability is handled as CVE-2024-43464. The attack may be launched remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
PIXHELL: как злоумышленники используют ваш монитор для кражи данных
1 year 9 months ago
Безмолвный крик пикселей позволяет обойти любые воздушные зазоры.
CVE-2024-43463 | Microsoft Visio use after free
1 year 9 months ago
A vulnerability classified as critical was found in Microsoft Visio. Affected by this vulnerability is an unknown functionality. The manipulation leads to use after free.
This vulnerability is known as CVE-2024-43463. The attack can be launched remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-43461 | Microsoft Windows up to Server 2022 23H2 MSHTML Platform clickjacking
1 year 9 months ago
A vulnerability classified as critical has been found in Microsoft Windows. Affected is an unknown function of the component MSHTML Platform. The manipulation leads to clickjacking.
This vulnerability is traded as CVE-2024-43461. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-43458 | Microsoft Windows 10 1607/Server 2016 Networking uninitialized resource
1 year 9 months ago
A vulnerability was found in Microsoft Windows 10 1607/Server 2016. It has been rated as problematic. This issue affects some unknown processing of the component Networking. The manipulation leads to uninitialized resource.
The identification of this vulnerability is CVE-2024-43458. The attack may be initiated remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-43457 | Microsoft Windows 11 24H2 Setup/Deployment unquoted search path
1 year 9 months ago
A vulnerability was found in Microsoft Windows 11 24H2. It has been declared as critical. This vulnerability affects unknown code of the component Setup/Deployment. The manipulation leads to unquoted search path.
This vulnerability was named CVE-2024-43457. Local access is required to approach this attack. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-43455 | Microsoft Windows Server 2008 R2 SP1 up to Server 2022 Remote Desktop Licensing Service input validation
1 year 9 months ago
A vulnerability was found in Microsoft Windows. It has been classified as critical. This affects an unknown part of the component Remote Desktop Licensing Service. The manipulation leads to improper input validation.
This vulnerability is uniquely identified as CVE-2024-43455. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-43454 | Microsoft Windows Server 2008 R2 SP1 up to Server 2022 Remote Desktop Licensing Service path traversal
1 year 9 months ago
A vulnerability was found in Microsoft Windows and classified as problematic. Affected by this issue is some unknown functionality of the component Remote Desktop Licensing Service. The manipulation leads to relative path traversal.
This vulnerability is handled as CVE-2024-43454. The attack may be launched remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-38263 | Microsoft Windows Server 2008 R2 SP1 up to Server 2022 Remote Desktop Licensing Service sensitive data storage in improperly locked memory
1 year 9 months ago
A vulnerability has been found in Microsoft Windows and classified as critical. Affected by this vulnerability is an unknown functionality of the component Remote Desktop Licensing Service. The manipulation leads to sensitive data storage in improperly locked memory.
This vulnerability is known as CVE-2024-38263. The attack can be launched remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-38260 | Microsoft Windows Server 2008 R2 SP1 up to Server 2022 Remote Desktop Licensing Service uninitialized resource
1 year 9 months ago
A vulnerability, which was classified as critical, was found in Microsoft Windows Server 2008 R2 SP1 up to Server 2022. Affected is an unknown function of the component Remote Desktop Licensing Service. The manipulation leads to uninitialized resource.
This vulnerability is traded as CVE-2024-38260. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-38259 | Microsoft Windows up to Server 2022 23H2 Management Console use after free
1 year 9 months ago
A vulnerability, which was classified as critical, has been found in Microsoft Windows up to Server 2022 23H2. This issue affects some unknown processing of the component Management Console. The manipulation leads to use after free.
The identification of this vulnerability is CVE-2024-38259. The attack may be initiated remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-38258 | Microsoft Windows Server 2008 R2 SP1 up to Server 2022 Remote Desktop Licensing Service path traversal
1 year 9 months ago
A vulnerability classified as problematic was found in Microsoft Windows. This vulnerability affects unknown code of the component Remote Desktop Licensing Service. The manipulation leads to relative path traversal.
This vulnerability was named CVE-2024-38258. The attack can be initiated remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com