Aggregator
CVE-2006-5386 | NuralStorm NuralStorm Webmail up to 0.98b process.php DEFAULT_SKIN file inclusion (EDB-2561 / XFDB-29553)
7 months ago
A vulnerability was found in NuralStorm NuralStorm Webmail up to 0.98b. It has been rated as critical. Affected by this issue is some unknown functionality of the file process.php. The manipulation of the argument DEFAULT_SKIN leads to file inclusion.
This vulnerability is handled as CVE-2006-5386. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2006-5419 | University of Glasgow Specimen Image Database client.php dir file inclusion (EDB-2576 / XFDB-29589)
7 months ago
A vulnerability, which was classified as critical, has been found in University of Glasgow Specimen Image Database. Affected by this issue is some unknown functionality of the file client.php. The manipulation of the argument dir leads to file inclusion.
This vulnerability is handled as CVE-2006-5419. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2006-5421 | WSN Forum up to 1.3.4 prestart.php pathtoconfig file inclusion (EDB-2583 / XFDB-29635)
7 months ago
A vulnerability has been found in WSN Forum up to 1.3.4 and classified as critical. This vulnerability affects unknown code of the file prestart.php. The manipulation of the argument pathtoconfig leads to file inclusion.
This vulnerability was named CVE-2006-5421. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2006-5426 | LoCal Calendar System 1.1 lib/lcuser.php LIBDIR file inclusion (EDB-2595 / XFDB-29665)
7 months ago
A vulnerability classified as critical has been found in LoCal Calendar System 1.1. This affects an unknown part in the library lib/lcuser.php. The manipulation of the argument LIBDIR leads to file inclusion.
This vulnerability is uniquely identified as CVE-2006-5426. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2006-5427 | Php AMX 0.9.0 plug_path file inclusion (EDB-2591 / XFDB-29649)
7 months ago
A vulnerability classified as critical was found in Php AMX 0.9.0. This vulnerability affects unknown code. The manipulation of the argument plug_path leads to file inclusion.
This vulnerability was named CVE-2006-5427. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2006-5384 | CDS Software Consortium CDS Agenda up to 4.2.9 AGE file inclusion (EDB-2540 / XFDB-29519)
7 months ago
A vulnerability was found in CDS Software Consortium CDS Agenda up to 4.2.9. It has been classified as critical. Affected is an unknown function. The manipulation of the argument AGE leads to file inclusion.
This vulnerability is traded as CVE-2006-5384. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
Fog
7 months ago
cohenido
Kill
7 months ago
cohenido
Sophos security advisory (AV24-725)
7 months ago
Canadian Centre for Cyber Security
Everest
7 months ago
cohenido
Will AI Drive Efficiency and Budget Growth? Risks, Rewards & Reality
7 months ago
The post Will AI Drive Efficiency and Budget Growth? Risks, Rewards & Reality appeared first on AI-Enhanced Security Automation.
The post Will AI Drive Efficiency and Budget Growth? Risks, Rewards & Reality appeared first on Security Boulevard.
Maycie Belmore
CVE-2014-0899 | IBM AIX 7.1.1/7.1.2 FTP Command access control (Nessus ID 72926 / ID 121882)
7 months ago
A vulnerability has been found in IBM AIX 7.1.1/7.1.2 and classified as critical. Affected by this vulnerability is an unknown functionality of the component FTP Command. The manipulation leads to improper access controls.
This vulnerability is known as CVE-2014-0899. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2014-0895 | IBM SPSS SamplePower 3.0/3.0.0.0 ActiveX Control memory corruption (Nessus ID 73102 / ID 121865)
7 months ago
A vulnerability was found in IBM SPSS SamplePower 3.0/3.0.0.0. It has been classified as critical. Affected is an unknown function of the component ActiveX Control. The manipulation leads to memory corruption.
This vulnerability is traded as CVE-2014-0895. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2014-0904 | IBM Security AppScan up to 7.9 input validation (ID 124201 / XFDB-91536)
7 months ago
A vulnerability was found in IBM Security AppScan up to 7.9. It has been declared as critical. This vulnerability affects unknown code. The manipulation leads to improper input validation.
This vulnerability was named CVE-2014-0904. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2014-0930 | IBM AIX 5.3/6.1/7.1 Virtual I/O Server ptrace denial of service (Nessus ID 73837 / ID 122066)
7 months ago
A vulnerability classified as problematic has been found in IBM AIX 5.3/6.1/7.1. This affects the function ptrace of the component Virtual I/O Server. The manipulation leads to denial of service.
This vulnerability is uniquely identified as CVE-2014-0930. It is possible to launch the attack on the local host. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2014-0964 | IBM WebSphere Application Server up to 6.1.0.47/6.0.2.43 TLS resource management (swg21671835 / ID 87258)
7 months ago
A vulnerability classified as critical has been found in IBM WebSphere Application Server up to 6.1.0.47/6.0.2.43. Affected is an unknown function of the component TLS Handler. The manipulation leads to improper resource management.
This vulnerability is traded as CVE-2014-0964. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2014-0953 | IBM WebSphere Portal 6.1/7.0/8.0/8.5.0 cross site scripting (swg21680230 / PI16127)
7 months ago
A vulnerability was found in IBM WebSphere Portal 6.1/7.0/8.0/8.5.0. It has been rated as problematic. Affected by this issue is some unknown functionality. The manipulation leads to cross site scripting.
This vulnerability is handled as CVE-2014-0953. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2014-0977 | Sixapart Movabletype up to 6.0 Rich Text Editor cross site scripting (Nessus ID 71911 / ID 175256)
7 months ago
A vulnerability has been found in Sixapart Movabletype up to 6.0 and classified as problematic. This vulnerability affects unknown code of the component Rich Text Editor. The manipulation leads to cross site scripting.
This vulnerability was named CVE-2014-0977. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
LockBit Ransomware Developer Arrested in Israel
7 months ago
Dual Russian-Israeli national Rostislav Panev was arrested last August and is facing extradition to the US for playing a critical role in LockBit's RaaS activities, dating back to the ransomware gang's origins.
Becky Bracken, Senior Editor, Dark Reading