Aggregator
Daniel Stori’s Turnoff.US: ‘Python Robots’
9 months 3 weeks ago
via the inimitable Daniel Stori at turnoff.us
via the inimitable Daniel Stori at turnoff.us (Extra_Panel)
The post Daniel Stori’s Turnoff.US: ‘Python Robots’ appeared first on Security Boulevard.
Marc Handelman
CVE-2001-0827 | Grant Averett Ceberus FTP Server up to 1.5 Command PASV denial of service (BID-2976)
9 months 3 weeks ago
A vulnerability classified as problematic has been found in Grant Averett Ceberus FTP Server up to 1.5. This affects an unknown part of the component Command Handler. The manipulation of the argument PASV leads to denial of service.
This vulnerability is uniquely identified as CVE-2001-0827. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to apply restrictive firewalling.
vuldb.com
CVE-2008-0642 | Adobe RoboHelp 6/7 cross site scripting (BID-27763 / SA28945)
9 months 3 weeks ago
A vulnerability was found in Adobe RoboHelp 6/7. It has been declared as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2008-0642. The attack can be launched remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2008-2991 | Adobe RoboHelp Server 6 cross site scripting (Nessus ID 33476 / XFDB-43651)
9 months 3 weeks ago
A vulnerability classified as problematic has been found in Adobe RoboHelp Server 6. This affects an unknown part. The manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2008-2991. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2009-3791 | Adobe Flash Media Server up to 3.0.0 denial of service (Nessus ID 43390 / ID 116773)
9 months 3 weeks ago
A vulnerability was found in Adobe Flash Media Server up to 3.0.0 and classified as problematic. Affected by this issue is some unknown functionality. The manipulation leads to denial of service.
This vulnerability is handled as CVE-2009-3791. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2015-8104 | XenSource Xen Debug Exception resource management (XSA-156 / Nessus ID 87012)
9 months 3 weeks ago
A vulnerability classified as problematic has been found in XenSource Xen. This affects an unknown part of the component Debug Exception Handler. The manipulation leads to improper resource management.
This vulnerability is uniquely identified as CVE-2015-8104. Access to the local network is required for this attack. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2015-8104 | Oracle VM VirtualBox up to 4.0.36/4.1.44/4.2.36/4.3.34/5.0.10 resource management (Nessus ID 87281 / ID 370034)
9 months 3 weeks ago
A vulnerability, which was classified as problematic, was found in Oracle VM VirtualBox up to 4.0.36/4.1.44/4.2.36/4.3.34/5.0.10. Affected is an unknown function. The manipulation leads to improper resource management.
This vulnerability is traded as CVE-2015-8104. The attack needs to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2015-8104 | Oracle Solaris 11.3 Kernel Zones resource management (Nessus ID 87835 / ID 370034)
9 months 3 weeks ago
A vulnerability has been found in Oracle Solaris 11.3 and classified as critical. This vulnerability affects unknown code of the component Kernel Zones. The manipulation leads to improper resource management.
This vulnerability was named CVE-2015-8104. It is possible to launch the attack on the local host. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2017-18591 | gd-rating-system Plugin up to 2.0 on WordPress log.php cross site scripting
9 months 3 weeks ago
A vulnerability, which was classified as problematic, was found in gd-rating-system Plugin up to 2.0 on WordPress. This affects an unknown part of the file log.php. The manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2017-18591. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-3711 | Sophos Firewall up to 19.4 User Portal sql injection
9 months 3 weeks ago
A vulnerability has been found in Sophos Firewall up to 19.4 and classified as critical. Affected by this vulnerability is an unknown functionality of the component User Portal. The manipulation leads to sql injection.
This vulnerability is known as CVE-2022-3711. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-45667 | Tenda i22 1.0.0.3 fromSysToolRestoreSet cross-site request forgery
9 months 3 weeks ago
A vulnerability, which was classified as problematic, was found in Tenda i22 1.0.0.3. Affected is the function fromSysToolRestoreSet. The manipulation leads to cross-site request forgery.
This vulnerability is traded as CVE-2022-45667. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2022-1540 | PostmagThemes Demo Import Plugin up to 1.0.7 on WordPress Imported File unrestricted upload
9 months 3 weeks ago
A vulnerability classified as problematic was found in PostmagThemes Demo Import Plugin up to 1.0.7 on WordPress. Affected by this vulnerability is an unknown functionality of the component Imported File Handler. The manipulation leads to unrestricted upload.
This vulnerability is known as CVE-2022-1540. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2009-2541 | Sony Playstation 3 Web Browser resource management (EDB-9160 / XFDB-52875)
9 months 3 weeks ago
A vulnerability, which was classified as critical, has been found in Sony Playstation 3. This issue affects some unknown processing of the component Web Browser. The manipulation leads to improper resource management.
The identification of this vulnerability is CVE-2009-2541. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
Чёрные дыры-близнецы больше не обманут астрофизиков: у компьютера теперь есть ИИ-шпаргалка
9 months 3 weeks ago
Нейросеть решила проблему, над которой учёные ломали голову с 2015 года.
Catawba Two Kings Casino Falls Victim to ANUBIS Ransomware
9 months 3 weeks ago
Catawba Two Kings Casino Falls Victim to ANUBIS Ransomware
Dark Web Informer - Cyber Threat Intelligence
Один файл — и сгорел весь сервер: что случилось с American Megatrends
9 months 3 weeks ago
Прошивка от ASUS теперь важнее, чем антивирус.
No Hidden Trade-Offs: Why Measuring False Positives & Negatives Is the Only Way to Assess AI Bot Protection
9 months 3 weeks ago
The only way to assess AI bot protection? Measure both false positives and false negatives. Anything less risks security gaps or user disruption.
The post No Hidden Trade-Offs: Why Measuring False Positives & Negatives Is the Only Way to Assess AI Bot Protection appeared first on Security Boulevard.
Benjamin Fabre
«Advanced Chat Privacy»: WhatsApp запретил выносить сообщения из чатов
9 months 3 weeks ago
Слухи о том, что переписка может «утечь», больше не актуальны. Хотя есть нюанс.
Node.js Test CI Security Incident
9 months 3 weeks ago