Aggregator
RansomHub
9 months 3 weeks ago
cohenido
CVE-2007-4726 | Weboddity 0.09b path traversal (EDB-4362 / XFDB-36427)
9 months 3 weeks ago
A vulnerability was found in Weboddity 0.09b and classified as problematic. Affected by this issue is some unknown functionality. The manipulation leads to path traversal.
This vulnerability is handled as CVE-2007-4726. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2014-7414 | magzter CLEO Malaysia 3.01 X.509 Certificate cryptographic issues (VU#582497)
9 months 3 weeks ago
A vulnerability was found in magzter CLEO Malaysia 3.01. It has been rated as critical. This issue affects some unknown processing of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
The identification of this vulnerability is CVE-2014-7414. The attack can only be initiated within the local network. There is no exploit available.
vuldb.com
CVE-2014-7413 | nakodabhairav Rajendra Suriji 1.1 X.509 Certificate cryptographic issues (VU#582497)
9 months 3 weeks ago
A vulnerability was found in nakodabhairav Rajendra Suriji 1.1. It has been declared as critical. This vulnerability affects unknown code of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
This vulnerability was named CVE-2014-7413. The attack can only be done within the local network. There is no exploit available.
vuldb.com
Ruby-SAML / GitLab Authentication Bypass (CVE-2024-45409)
9 months 3 weeks ago
IntroductionIn this blog post, we will analyze CVE-2024-45409, a critical vulnerabi
CVE-2016-4154 | Adobe Flash Player up to 21.0.0.242 privileges management (MS16-083 / Nessus ID 91671)
9 months 3 weeks ago
A vulnerability classified as critical was found in Adobe Flash Player up to 21.0.0.242. This vulnerability affects unknown code. The manipulation leads to improper privilege management.
This vulnerability was named CVE-2016-4154. The attack can be initiated remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
Weer Nederlanders uit Libanon gehaald met militair toestel (update)
9 months 3 weeks ago
Voor de tweede opeenvolgende dag heeft een militair toestel Nederlanders uit Libanon naar Eindhoven gebracht. De Airbus A330 landde vanavond rond 20.45 uur op Vliegbasis Eindhoven.
CVE-2024-45022 | Linux Kernel up to 6.1.106/6.6.47/6.10.6 vm_area_alloc_pages memory corruption (Nessus ID 208099)
9 months 3 weeks ago
A vulnerability was found in Linux Kernel up to 6.1.106/6.6.47/6.10.6. It has been declared as critical. This vulnerability affects the function vm_area_alloc_pages. The manipulation leads to memory corruption.
This vulnerability was named CVE-2024-45022. Access to the local network is required for this attack. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-45019 | Linux Kernel up to 6.1.106/6.6.47/6.10.6 mlx5e_safe_reopen_channels deadlock (Nessus ID 208099)
9 months 3 weeks ago
A vulnerability, which was classified as critical, has been found in Linux Kernel up to 6.1.106/6.6.47/6.10.6. Affected by this issue is the function mlx5e_safe_reopen_channels. The manipulation leads to deadlock.
This vulnerability is handled as CVE-2024-45019. The attack can only be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-45021 | Linux Kernel up to 6.10.6 memcg_write_event_control initialization (Nessus ID 208099)
9 months 3 weeks ago
A vulnerability has been found in Linux Kernel up to 6.10.6 and classified as problematic. This vulnerability affects the function memcg_write_event_control. The manipulation leads to improper initialization.
This vulnerability was named CVE-2024-45021. The attack needs to be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-45025 | Linux Kernel up to 6.10.6 close_range memory corruption (Nessus ID 208099)
9 months 3 weeks ago
A vulnerability was found in Linux Kernel up to 6.10.6 and classified as critical. This issue affects the function close_range. The manipulation leads to memory corruption.
The identification of this vulnerability is CVE-2024-45025. Access to the local network is required for this attack. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-45026 | Linux Kernel up to 6.10.6 ESE dasd_ese_needs_format out-of-bounds write (Nessus ID 208099)
9 months 3 weeks ago
A vulnerability was found in Linux Kernel up to 6.10.6. It has been classified as problematic. Affected is the function dasd_ese_needs_format of the component ESE Handler. The manipulation leads to out-of-bounds write.
This vulnerability is traded as CVE-2024-45026. Access to the local network is required for this attack to succeed. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-45016 | Linux Kernel up to 6.10.6 netem_enqueue use after free (Nessus ID 208099)
9 months 3 weeks ago
A vulnerability classified as critical was found in Linux Kernel up to 6.10.6. Affected by this vulnerability is the function netem_enqueue. The manipulation leads to use after free.
This vulnerability is known as CVE-2024-45016. The attack needs to be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-45011 | Linux Kernel up to 5.15.165/6.1.106/6.6.47/6.10.6 xillybus xillyusb_setup_base_eps Privilege Escalation (Nessus ID 208099)
9 months 3 weeks ago
A vulnerability was found in Linux Kernel up to 5.15.165/6.1.106/6.6.47/6.10.6 and classified as problematic. This issue affects the function xillyusb_setup_base_eps of the component xillybus. The manipulation leads to Privilege Escalation.
The identification of this vulnerability is CVE-2024-45011. The attack can only be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-45018 | Linux Kernel up to 5.10.224/5.15.165/6.1.106/6.6.47/6.10.6 flowtable initialization (Nessus ID 208099)
9 months 3 weeks ago
A vulnerability classified as problematic was found in Linux Kernel up to 5.10.224/5.15.165/6.1.106/6.6.47/6.10.6. This vulnerability affects unknown code of the component flowtable. The manipulation leads to improper initialization.
This vulnerability was named CVE-2024-45018. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-45010 | Linux Kernel up to 6.1.107/6.6.47/6.10.6 mptcp_join.sh mptcp_pm_nl_rm_addr_or_subflow Privilege Escalation (Nessus ID 208099)
9 months 3 weeks ago
A vulnerability was found in Linux Kernel up to 6.1.107/6.6.47/6.10.6. It has been declared as problematic. Affected by this vulnerability is the function mptcp_pm_nl_rm_addr_or_subflow of the file mptcp_join.sh. The manipulation leads to Privilege Escalation.
This vulnerability is known as CVE-2024-45010. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-9014 | pgAdmin up to 8.11 OAuth2 Authentication insufficiently protected credentials (Issue 7945 / Nessus ID 208122)
9 months 3 weeks ago
A vulnerability was found in pgAdmin up to 8.11. It has been rated as critical. This issue affects some unknown processing of the component OAuth2 Authentication Handler. The manipulation leads to insufficiently protected credentials.
The identification of this vulnerability is CVE-2024-9014. The attack may be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-33698 | Siemens SIMATIC Information Server 2022 UMC heap-based overflow (ssa-039007 / Nessus ID 208190)
9 months 3 weeks ago
A vulnerability was found in Siemens SIMATIC Information Server 2022, SIMATIC Information Server 2024, SIMATIC PCS neo, SINEC NMS and Totally Integrated Automation Portal and classified as very critical. Affected by this issue is some unknown functionality of the component UMC. The manipulation leads to heap-based buffer overflow.
This vulnerability is handled as CVE-2024-33698. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2014-7410 | Aliakay Aptallik Testi 4 X.509 Certificate cryptographic issues (VU#582497)
9 months 3 weeks ago
A vulnerability was found in Aliakay Aptallik Testi 4. It has been classified as critical. This affects an unknown part of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
This vulnerability is uniquely identified as CVE-2014-7410. The attack needs to be approached within the local network. There is no exploit available.
vuldb.com