Aggregator
威胁情报 | 攻击再升级,DarkHotel 组织最新 RPC 攻击组件披露
8 months 2 weeks ago
It’s All in the Cards: Preventing Payment Abuse for Retailers
8 months 2 weeks ago
Carding attacks have become a serious challenge for retailers. Learn how Akamai Account Protector can help organizations defend against payment abuse.
Emily Lyons
CVE-2009-4621 | Patching JiangHu Inn up to 1.1 forummission.php ID sql injection (EDB-9576 / XFDB-52984)
8 months 2 weeks ago
A vulnerability was found in Patching JiangHu Inn up to 1.1. It has been declared as critical. This vulnerability affects unknown code of the file forummission.php. The manipulation of the argument ID leads to sql injection.
This vulnerability was named CVE-2009-4621. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-7252 | phpMyAdmin up to 2.11.9.2 Libraries cryptographic issues (Nessus ID 45556 / ID 165248)
8 months 2 weeks ago
A vulnerability was found in phpMyAdmin up to 2.11.9.2. It has been declared as very critical. Affected by this vulnerability is an unknown functionality of the component Libraries. The manipulation leads to cryptographic issues.
This vulnerability is known as CVE-2008-7252. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2009-3739 | Rockwellautomation Ab Micrologix Controller 1100 denial of service
8 months 2 weeks ago
A vulnerability was found in Rockwellautomation Ab Micrologix Controller 1100. It has been rated as critical. Affected by this issue is some unknown functionality. The manipulation leads to denial of service.
This vulnerability is handled as CVE-2009-3739. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2008-7251 | phpMyAdmin up to 2.11.9.2 Libraries access control (Nessus ID 45556 / ID 165248)
8 months 2 weeks ago
A vulnerability was found in phpMyAdmin up to 2.11.9.2. It has been classified as very critical. Affected is an unknown function of the component Libraries. The manipulation leads to improper access controls.
This vulnerability is traded as CVE-2008-7251. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2009-4012 | Linux.thai LibThai up to 0.1.12 numeric error (Nessus ID 44372 / ID 165237)
8 months 2 weeks ago
A vulnerability classified as very critical has been found in Linux.thai LibThai up to 0.1.12. This affects an unknown part. The manipulation leads to numeric error.
This vulnerability is uniquely identified as CVE-2009-4012. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2009-4141 | Linux Kernel 2.6.23 fasync_helper resource management (EDB-33523 / Nessus ID 47258)
8 months 2 weeks ago
A vulnerability classified as critical was found in Linux Kernel 2.6.23. This vulnerability affects the function fasync_helper. The manipulation leads to improper resource management.
This vulnerability was named CVE-2009-4141. An attack has to be approached locally. Furthermore, there is an exploit available.
vuldb.com
CVE-2009-4624 | Nicecoder iDesk download.php cat_id sql injection (EDB-9631 / XFDB-53139)
8 months 2 weeks ago
A vulnerability classified as critical was found in Nicecoder iDesk. Affected by this vulnerability is an unknown functionality of the file download.php. The manipulation of the argument cat_id leads to sql injection.
This vulnerability is known as CVE-2009-4624. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2009-4622 | Legrinder Drunken:Golem Gaming Portal 0.5.1 root_path code injection (EDB-9635 / XFDB-53136)
8 months 2 weeks ago
A vulnerability was found in Legrinder Drunken:Golem Gaming Portal 0.5.1. It has been rated as critical. This issue affects some unknown processing. The manipulation of the argument root_path leads to code injection.
The identification of this vulnerability is CVE-2009-4622. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2009-4626 | phpNagios 1.2.0 menu.php conf[lang] path traversal (EDB-9611 / XFDB-53119)
8 months 2 weeks ago
A vulnerability, which was classified as critical, was found in phpNagios 1.2.0. This affects an unknown part of the file menu.php. The manipulation of the argument conf[lang] leads to path traversal.
This vulnerability is uniquely identified as CVE-2009-4626. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2009-4623 | Plohni Advanced Comment System 1.0 Installation index.php ACS_path code injection (EDB-9623 / SA36643)
8 months 2 weeks ago
A vulnerability classified as critical has been found in Plohni Advanced Comment System 1.0. Affected is an unknown function of the file index.php of the component Installation. The manipulation of the argument ACS_path leads to code injection.
This vulnerability is traded as CVE-2009-4623. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2009-4628 | TemplatePlaza com TPDugg 1.1 TemplatePlaza.com ID sql injection (EDB-9602 / XFDB-53108)
8 months 2 weeks ago
A vulnerability was found in TemplatePlaza com TPDugg 1.1 and classified as critical. This issue affects some unknown processing of the file TemplatePlaza.com. The manipulation of the argument ID leads to sql injection.
The identification of this vulnerability is CVE-2009-4628. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2009-4625 | Tamlyncreative Com Bfsurvey Profree up to 1.2.3 index.php updateOnePage table sql injection (EDB-9601 / Nessus ID 40988)
8 months 2 weeks ago
A vulnerability, which was classified as critical, has been found in Tamlyncreative Com Bfsurvey Profree up to 1.2.3. Affected by this issue is the function updateOnePage of the file index.php. The manipulation of the argument table leads to sql injection.
This vulnerability is handled as CVE-2009-4625. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2009-4627 | Dan Brown Moa Gallery up to 1.2.0 p_filename path traversal (EDB-9525 / XFDB-52778)
8 months 2 weeks ago
A vulnerability has been found in Dan Brown Moa Gallery up to 1.2.0 and classified as problematic. This vulnerability affects unknown code. The manipulation of the argument p_filename leads to path traversal.
This vulnerability was named CVE-2009-4627. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
Фантомы любви и блокчейна: суд пустил под нож 95 мошеннических компаний
8 months 2 weeks ago
Всё начиналось с лайка, а заканчивалось пустым кошельком.
Когда ИИ встречает ГОСТ: в России пишут закон о будущем
8 months 2 weeks ago
Как власти планируют контролировать искусственный интеллект?
台湾澎湖发现的人骨化石被确认来自丹尼索瓦人
8 months 2 weeks ago
根据发表在《科学》期刊上的一项研究,对一块来自台湾澎湖海峡的古人类下颌骨(Penghu 1)的深入研究得出结论,这块下颌骨属于一名男性丹尼索瓦人个体。这一发现意义非凡,它不仅证实了之前基于现代人类基因组研究的推断,即丹尼索瓦人在东亚广泛分布;还表明丹尼索瓦人具备适应多种地理和气候环境的能力,从寒冷的西伯利亚到高海拔的青藏高原,再到温暖湿润的台湾地区,都有他们的踪迹。此外,该研究为探讨丹尼索瓦人的形态特征提供了新的关键证据,有助于进一步厘清丹尼索瓦人与其他古人类种群的差异,为人类演化研究填补了重要的空白。
SpyNote, BadBazaar, MOONSHINE Malware Target Android and iOS Users via Fake Apps
8 months 2 weeks ago
Cybersecurity researchers have found that threat actors are setting up deceptive websites hosted on newly registered domains to deliver a known Android malware called SpyNote.
These bogus websites masquerade as Google Play Store install pages for apps like the Chrome web browser, indicating an attempt to deceive unsuspecting users into installing the malware instead.
"The threat actor utilized a
The Hacker News