Aggregator
CVE-2014-7072 | Offertaviaggi Venezia map 0.1 X.509 Certificate cryptographic issues (VU#582497)
9 months 2 weeks ago
A vulnerability was found in Offertaviaggi Venezia map 0.1. It has been classified as critical. Affected is an unknown function of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
This vulnerability is traded as CVE-2014-7072. Access to the local network is required for this attack. There is no exploit available.
vuldb.com
RansomHub
9 months 2 weeks ago
cohenido
“噪音风暴”伪造大量互联网流量
9 months 2 weeks ago
胡金鱼
Охотник становится жертвой: как Sniper Dz обманывает фишеров
9 months 2 weeks ago
Платформа скрывает свои действия за публичными серверами.
CVE-2016-1863 | Apple iOS up to 9.3.2 Kernel memory corruption (HT206902 / EDB-40652)
9 months 2 weeks ago
A vulnerability was found in Apple iOS up to 9.3.2. It has been classified as critical. This affects an unknown part of the component Kernel. The manipulation leads to memory corruption.
This vulnerability is uniquely identified as CVE-2016-1863. An attack has to be approached locally. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2007-4171 | auraCMS Modul Forum Sederhana komentar.php id sql injection (EDB-4254 / XFDB-35814)
9 months 2 weeks ago
A vulnerability, which was classified as critical, was found in auraCMS Modul Forum Sederhana. This affects an unknown part of the file komentar.php. The manipulation of the argument id leads to sql injection.
This vulnerability is uniquely identified as CVE-2007-4171. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
以明文形式存储数亿个密码,Meta被罚1亿美元
9 months 2 weeks ago
主站 分类 漏洞 工具 极客
CVE-2007-4183 | PHP Arena paBugs 2.0 Beta 3 main.php cid sql injection (EDB-4253 / XFDB-35758)
9 months 2 weeks ago
A vulnerability classified as critical has been found in PHP Arena paBugs 2.0 Beta 3. Affected is an unknown function of the file main.php. The manipulation of the argument cid leads to sql injection.
This vulnerability is traded as CVE-2007-4183. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2007-4140 | LFS Live For Speed S2 Alpha_patch_0.5 memory corruption (EDB-4252 / XFDB-35729)
9 months 2 weeks ago
A vulnerability was found in LFS Live For Speed S2 Alpha_patch_0.5 and classified as critical. This issue affects some unknown processing. The manipulation leads to memory corruption.
The identification of this vulnerability is CVE-2007-4140. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2024-36929 | Linux Kernel up to 5.10.216/5.15.158/6.1.90/6.6.30/6.8.9 skb_copy_expand denial of service (Nessus ID 207884)
9 months 2 weeks ago
A vulnerability was found in Linux Kernel up to 5.10.216/5.15.158/6.1.90/6.6.30/6.8.9. It has been rated as critical. Affected by this issue is the function skb_copy_expand. The manipulation leads to denial of service.
This vulnerability is handled as CVE-2024-36929. Access to the local network is required for this attack to succeed. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-6923 | Python Software CPython up to 3.13.0rc2 Email Module deserialization (Nessus ID 207883)
9 months 2 weeks ago
A vulnerability has been found in Python Software CPython up to 3.13.0rc2 and classified as problematic. Affected by this vulnerability is an unknown functionality of the component Email Module. The manipulation leads to deserialization.
This vulnerability is known as CVE-2024-6923. The attack can only be done within the local network. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2023-3610 | Linux Kernel Netfilter nf_tables use after free (DLA 3512-1 / Nessus ID 207884)
9 months 2 weeks ago
A vulnerability, which was classified as critical, was found in Linux Kernel. Affected is the function nf_tables of the component Netfilter. The manipulation leads to use after free.
This vulnerability is traded as CVE-2023-3610. It is possible to launch the attack on the local host. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-38602 | Linux Kernel up to 6.1.92/6.6.32/6.8.11/6.9.2 ax25_addr_ax25dev reference count (Nessus ID 207884)
9 months 2 weeks ago
A vulnerability has been found in Linux Kernel up to 6.1.92/6.6.32/6.8.11/6.9.2 and classified as critical. This vulnerability affects the function ax25_addr_ax25dev. The manipulation leads to improper update of reference count.
This vulnerability was named CVE-2024-38602. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-38554 | Linux Kernel up to 6.1.92/6.6.32/6.8.11/6.9.2 ax25_dev_device_down reference count (Nessus ID 207884)
9 months 2 weeks ago
A vulnerability has been found in Linux Kernel up to 6.1.92/6.6.32/6.8.11/6.9.2 and classified as critical. Affected by this vulnerability is the function ax25_dev_device_down. The manipulation leads to improper update of reference count.
This vulnerability is known as CVE-2024-38554. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-41042 | Linux Kernel up to 6.9.9 netfilter nf_tables_check_loops stack-based overflow (9df785aeb7dc/cff3bd012a95 / Nessus ID 207884)
9 months 2 weeks ago
A vulnerability, which was classified as critical, was found in Linux Kernel up to 6.9.9. This affects the function nf_tables_check_loops of the component netfilter. The manipulation leads to stack-based buffer overflow.
This vulnerability is uniquely identified as CVE-2024-41042. The attack needs to be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-42082 | Linux Kernel up to 5.10.220/5.15.161/6.1.96/6.6.36/6.9.7 net/core/xdp.c __xdp_reg_mem_model initialization (Nessus ID 207884)
9 months 2 weeks ago
A vulnerability was found in Linux Kernel up to 5.10.220/5.15.161/6.1.96/6.6.36/6.9.7. It has been classified as problematic. This affects the function __xdp_reg_mem_model of the file net/core/xdp.c. The manipulation leads to improper initialization.
This vulnerability is uniquely identified as CVE-2024-42082. Access to the local network is required for this attack to succeed. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
All in Windows 的失败,是傲慢还是必然?
9 months 2 weeks ago
All in Windows 的失败,是傲慢还是必然?Matrix 首页推荐 Matrix 是少数派的写作社区,我们主张分享真实的产品体验,有实用价值的经验与思考。我们会不定期挑选 Matrix 最优
HookChain: A New Approach to Bypassing EDR Solutions
9 months 2 weeks ago
Background Cybersecurity risks in today’s quickly changing digital environment are getting more complex and challenging to identify. As organizations strengthen […]
The post HookChain: A New Approach to Bypassing EDR Solutions appeared first on HawkEye.
HawkEye
CVE-2024-9323 | SourceCodester Inventory Management System 1.0 add_staff.php cross site scripting
9 months 2 weeks ago
A vulnerability was found in SourceCodester Inventory Management System 1.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /app/action/add_staff.php. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2024-9323. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com