Aggregator
「众智维科技」获数千万B1轮融资
9 months ago
南京众智维信息科技有限公司完成数千万B1轮融资。
Ultralytics 人工智能模型被劫持 利用加密货币挖矿程序感染数千人
9 months ago
有用户报告 PyPI 上有新的木马版本,因此攻击似乎会持续到新的软件包版本 8.345 和 8.3.46。
What is Category Theory?
9 months ago
What is Category Theory?
ZDI-CAN-25406: Delta Electronics
9 months ago
A CVSS score 7.8 AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H severity vulnerability discovered by 'kimiya' was reported to the affected vendor on: 2024-12-12, 78 days ago. The vendor is given until 2025-04-11 to publish a fix or workaround. Once the vendor has created and tested a patch we will coordinate the release of a public advisory.
ZDI-CAN-25848: Lexmark
9 months ago
A CVSS score 6.3 AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L severity vulnerability discovered by 'nella17 (@nella17tw), working with DEVCORE Internship Program, and DEVCORE Research Team' was reported to the affected vendor on: 2024-12-12, 78 days ago. The vendor is given until 2025-04-11 to publish a fix or workaround. Once the vendor has created and tested a patch we will coordinate the release of a public advisory.
ZDI-CAN-25970: Autodesk
9 months ago
A CVSS score 7.8 AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H severity vulnerability discovered by 'Mat Powell of Trend Micro Zero Day Initiative' was reported to the affected vendor on: 2024-12-12, 78 days ago. The vendor is given until 2025-04-11 to publish a fix or workaround. Once the vendor has created and tested a patch we will coordinate the release of a public advisory.
ZDI-CAN-25966: Autodesk
9 months ago
A CVSS score 7.8 AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H severity vulnerability discovered by 'Vladislav Berghici of Trend Micro Research & Mat Powell of Trend Micro Zero Day Initiative' was reported to the affected vendor on: 2024-12-12, 7 days ago. The vendor is given until 2025-04-11 to publish a fix or workaround. Once the vendor has created and tested a patch we will coordinate the release of a public advisory.
ZDI-CAN-25971: Autodesk
9 months ago
A CVSS score 7.8 AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H severity vulnerability discovered by 'Mat Powell of Trend Micro Zero Day Initiative' was reported to the affected vendor on: 2024-12-12, 78 days ago. The vendor is given until 2025-04-11 to publish a fix or workaround. Once the vendor has created and tested a patch we will coordinate the release of a public advisory.
ZDI-CAN-25965: Autodesk
9 months ago
A CVSS score 7.8 AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H severity vulnerability discovered by 'Vladislav Berghici of Trend Micro Research & Mat Powell of Trend Micro Zero Day Initiative' was reported to the affected vendor on: 2024-12-12, 7 days ago. The vendor is given until 2025-04-11 to publish a fix or workaround. Once the vendor has created and tested a patch we will coordinate the release of a public advisory.
ZDI-CAN-25968: Autodesk
9 months ago
A CVSS score 7.8 AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H severity vulnerability discovered by 'Mat Powell of Trend Micro Zero Day Initiative' was reported to the affected vendor on: 2024-12-12, 78 days ago. The vendor is given until 2025-04-11 to publish a fix or workaround. Once the vendor has created and tested a patch we will coordinate the release of a public advisory.
ZDI-CAN-25967: Autodesk
9 months ago
A CVSS score 7.8 AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H severity vulnerability discovered by 'Mat Powell of Trend Micro Zero Day Initiative' was reported to the affected vendor on: 2024-12-12, 7 days ago. The vendor is given until 2025-04-11 to publish a fix or workaround. Once the vendor has created and tested a patch we will coordinate the release of a public advisory.
Getting Better: Evolving Practices in API Security
9 months ago
Getting Better: Evolving Practices in API Security
Safe Handling of Data: Why Secrets Sprawl is a Risk
9 months ago
Safe Handling of Data: Why Secrets Sprawl is a Risk
Building Confidence with Strategic Secrets Management
9 months ago
Building Confidence with Strategic Secrets Management
Is Hackerone good?
9 months ago
Is Hackerone good?
CVE-2021-46360 | Composr CMS up to 10.0.39 index.php?page=admin-commandr unrestricted upload (EDB-51060)
9 months ago
A vulnerability, which was classified as critical, was found in Composr CMS up to 10.0.39. Affected is an unknown function of the file /adminzone/index.php?page=admin-commandr. The manipulation leads to unrestricted upload.
This vulnerability is traded as CVE-2021-46360. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
Paxton Net2 Information Disclosure / Incorrect Access Control
9 months ago
Paxton Net2 Information Disclosure / Incorrect Access Control
How Cryptocurrency Turns to Cash in Russian Banks
9 months ago
How Cryptocurrency Turns to Cash in Russian Banks
JVN: Apache Struts 2のファイルアップロード処理に不備(S2-067)
9 months ago
The Apache Software Foundationが提供するApache Struts 2には、ファイルアップロード処理に不備が存在します。