Aggregator
懒猫微服外挂虚拟机管理器启动方法说明
10 months 2 weeks ago
前言 懒猫微服用着还.. 阅读更多
glzjin
CVE-2000-0656 | AnalogX Proxy 4.4 FTP USER memory corruption (EDB-20099 / ID 62006)
10 months 2 weeks ago
A vulnerability was found in AnalogX Proxy 4.4. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component FTP Handler. The manipulation of the argument USER leads to memory corruption.
This vulnerability is known as CVE-2000-0656. The attack can be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2018-8897 | Microsoft Windows up to Server 2016 Kernel race condition (RHSA-2018:1318 / VU#631579)
10 months 2 weeks ago
A vulnerability has been found in Microsoft Windows and classified as critical. This vulnerability affects unknown code of the component Kernel. The manipulation leads to race condition.
This vulnerability was named CVE-2018-8897. Attacking locally is a requirement. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2018-8897 | Linux/FreeBSD/Xen Intel Architecture Development access control (RHSA-2018:1318 / VU#631579)
10 months 2 weeks ago
A vulnerability classified as critical has been found in Linux, FreeBSD and Xen. This affects an unknown part of the component Intel Architecture Development. The manipulation leads to improper access controls.
This vulnerability is uniquely identified as CVE-2018-8897. An attack has to be approached locally. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2015-7254 | Huawei HG532e/HG532n/HG532s icon/ path traversal (VU#438928 / EDB-45991)
10 months 2 weeks ago
A vulnerability, which was classified as critical, has been found in Huawei HG532e, HG532n and HG532s. This issue affects some unknown processing of the file icon/. The manipulation with the input .. leads to path traversal.
The identification of this vulnerability is CVE-2015-7254. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2018-12038 | Samsung 840 EVO Encryption Key key management (VU#395981 / BID-105841)
10 months 2 weeks ago
A vulnerability, which was classified as problematic, has been found in Samsung 840 EVO. This issue affects some unknown processing of the component Encryption Key. The manipulation leads to key management error.
The identification of this vulnerability is CVE-2018-12038. It is possible to launch the attack on the physical device. There is no exploit available.
vuldb.com
CVE-2018-5411 | Pixar Tractor software up to 2.2 Request Stored cross site scripting (VU#756913 / BID-106209)
10 months 2 weeks ago
A vulnerability was found in Pixar Tractor software up to 2.2. It has been classified as problematic. This affects an unknown part. The manipulation as part of Request leads to cross site scripting (Stored).
This vulnerability is uniquely identified as CVE-2018-5411. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
CVE-2015-8283 | SeaWell Networks Spectrum SDC 02.05.00 configure_manage.php path traversal (EDB-39266)
10 months 2 weeks ago
A vulnerability classified as critical has been found in SeaWell Networks Spectrum SDC 02.05.00. Affected is an unknown function of the file configure_manage.php. The manipulation leads to path traversal.
This vulnerability is traded as CVE-2015-8283. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2012-4252 | MySQLDumper 1.24.4 deletehtaccess sql_statement cross-site request forgery (EDB-37131 / XFDB-75285)
10 months 2 weeks ago
A vulnerability has been found in MySQLDumper 1.24.4 and classified as problematic. This vulnerability affects unknown code of the component deletehtaccess. The manipulation of the argument sql_statement leads to cross-site request forgery.
This vulnerability was named CVE-2012-4252. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
Kill
10 months 2 weeks ago
cohenido
CVE-2018-15379 | Cisco Prime Infrastructure HTTP Web Server permission (cisco-sa-20181003-pi-tftp / EDB-45555)
10 months 2 weeks ago
A vulnerability was found in Cisco Prime Infrastructure. It has been classified as critical. Affected is an unknown function of the component HTTP Web Server. The manipulation leads to permission issues.
This vulnerability is traded as CVE-2018-15379. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2016-3694 | eCommerce Shopsoftware 2.0.0.0 rev 9678 easybillcsv.php customers_status/customers_status sql injection (EDB-39710)
10 months 2 weeks ago
A vulnerability classified as critical has been found in eCommerce Shopsoftware 2.0.0.0 rev 9678. Affected is an unknown function of the file api/easybill/easybillcsv.php. The manipulation of the argument customers_status/customers_status leads to sql injection.
This vulnerability is traded as CVE-2016-3694. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2017-2988 | Adobe Flash Player up to 24.0.0.194 memory corruption (APSB17-04 / EDB-41421)
10 months 2 weeks ago
A vulnerability was found in Adobe Flash Player up to 24.0.0.194. It has been classified as critical. This affects an unknown part. The manipulation leads to memory corruption.
This vulnerability is uniquely identified as CVE-2017-2988. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Rhysida
10 months 2 weeks ago
cohenido
CVE-2000-1021 | Alt-N MDaemon 3.1.1 WebConfig URL memory corruption (EDB-20225 / ID 86023)
10 months 2 weeks ago
A vulnerability has been found in Alt-N MDaemon 3.1.1 and classified as critical. This vulnerability affects unknown code of the component WebConfig. The manipulation as part of URL leads to memory corruption.
This vulnerability was named CVE-2000-1021. The attack can be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Zero-click terror: израильские шпионы взломали WhatsApp без единого клика
10 months 2 weeks ago
Шпионское ПО атаковало 90 человек.
CVE-2016-4337 | Ktools.net PhotoStore up to 4.7.4 mgr.login.php email sql injection (EDB-40046)
10 months 2 weeks ago
A vulnerability classified as critical has been found in Ktools.net PhotoStore up to 4.7.4. Affected is an unknown function of the file mgr.login.php. The manipulation of the argument email leads to sql injection.
This vulnerability is traded as CVE-2016-4337. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2002-0961 | Voxel CBMS 0.7 dltclnt.php sql injection (EDB-21517 / XFDB-9295)
10 months 2 weeks ago
A vulnerability was found in Voxel CBMS 0.7. It has been classified as critical. This affects an unknown part of the file dltclnt.php. The manipulation leads to sql injection.
This vulnerability is uniquely identified as CVE-2002-0961. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2017-3064 | Adobe Flash Player up to 25.0.0.127 Shape Outline Parser memory corruption (RHSA-2017:0934 / EDB-42019)
10 months 2 weeks ago
A vulnerability was found in Adobe Flash Player up to 25.0.0.127. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component Shape Outline Parser. The manipulation leads to memory corruption.
This vulnerability is known as CVE-2017-3064. The attack can be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com