Aggregator
CVE-2007-5222 | MAXdev MDPro 1.0.76 index.php id= sql injection (EDB-4467 / XFDB-36871)
CVE-2007-5173 | phpBB 0.2.0 BBStore.php openid_root_path code injection (EDB-4471 / XFDB-36876)
CVE-2007-5174 | actSite 1.56 /phpinc/news.php do path traversal (EDB-4472 / XFDB-36870)
CVE-2007-5175 | actSite 1.991 Beta lib/base.php BaseCfg[BaseDir] code injection (EDB-4473 / XFDB-36868)
CVE-2007-5230 | Zomplog 3.7/3.7.6/3.8/3.8.1 access control (EDB-4466 / BID-25861)
CVE-2007-5231 | Zomplog 3.7/3.7.6/3.8/3.8.1 File Upload input validation (EDB-4466 / XFDB-36872)
CVE-2007-5278 | Zomplog 3.8.1 Default Configuration upload access control (EDB-4466 / BID-25861)
Critical Apache Avro SDK RCE flaw impacts Java applications
RCE Vulnerability (CVE-2024-30052) Allow Attackers To Exploit Visual Studio via Dump Files
The researcher investigated the potential security risks associated with debugging dump files in Visual Studio by focusing on vulnerabilities that could be exploited without relying on memory corruption or specific PDB file components. After analyzing various libraries used during debug sessions, they discovered a method to execute arbitrary code when debugging managed dump files, which […]
The post RCE Vulnerability (CVE-2024-30052) Allow Attackers To Exploit Visual Studio via Dump Files appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
担心你的 Golang 程序内存泄露?看这一篇就够了!
Cacti Network Monitoring Tool Vulnerability Let Attackers Execute Remote Code
A critical security vulnerability has been identified in the Cacti network monitoring tool that could allow attackers to execute remote code on affected systems. The vulnerability, detailed in the recent release of Cacti version 1.2.28, highlights the need for system administrators to pay immediate attention to this popular open-source software. Remote Code Execution via Log […]
The post Cacti Network Monitoring Tool Vulnerability Let Attackers Execute Remote Code appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.