Aggregator
FreeBuf早报 | 美国保险巨头遭数据勒索攻击;E2EE 云存储平台曝出严重安全漏洞
10 months 3 weeks ago
尽管此次事件未对公司的运营造成重大影响,Globe Life仍对可能被窃取的数据表示担忧,因为这一事件有可能波及数百万人。
CVE-2008-2069 | Novell GroupWise 7.0 memory corruption (EDB-5515 / XFDB-42052)
10 months 3 weeks ago
A vulnerability was found in Novell GroupWise 7.0. It has been rated as very critical. Affected by this issue is some unknown functionality. The manipulation leads to memory corruption.
This vulnerability is handled as CVE-2008-2069. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-2083 | Prozilla Hosting Index directory.php cat_id sql injection (EDB-5516 / XFDB-42269)
10 months 3 weeks ago
A vulnerability, which was classified as critical, has been found in Prozilla Hosting Index. Affected by this issue is some unknown functionality of the file directory.php. The manipulation of the argument cat_id leads to sql injection.
This vulnerability is handled as CVE-2008-2083. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-2390 | Hp Software Update 4.0.0.1 hpufunction.dll first code injection (EDB-5511 / XFDB-42249)
10 months 3 weeks ago
A vulnerability was found in Hp Software Update 4.0.0.1. It has been declared as critical. This vulnerability affects unknown code in the library hpufunction.dll of the component Software Update. The manipulation of the argument first leads to code injection.
This vulnerability was named CVE-2008-2390. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-6642 | DotContent FluentCMS 4.0/4.1 view.php sid sql injection (EDB-5509 / XFDB-42048)
10 months 3 weeks ago
A vulnerability was found in DotContent FluentCMS 4.0/4.1. It has been declared as critical. This vulnerability affects unknown code of the file view.php. The manipulation of the argument sid leads to sql injection.
This vulnerability was named CVE-2008-6642. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-2065 | YourFreeWorld Jokes Site Script jokes.php catagorie sql injection (EDB-5508 / XFDB-42047)
10 months 3 weeks ago
A vulnerability has been found in YourFreeWorld Jokes Site Script and classified as critical. This vulnerability affects unknown code of the file jokes.php. The manipulation of the argument catagorie leads to sql injection.
This vulnerability was named CVE-2008-2065. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-2217 | Mario Valdez Content Management System 0.6.1 cm_imgpath path traversal (EDB-5510 / XFDB-42510)
10 months 3 weeks ago
A vulnerability classified as critical has been found in Mario Valdez Content Management System 0.6.1. This affects an unknown part. The manipulation of the argument cm_imgpath leads to path traversal.
This vulnerability is uniquely identified as CVE-2008-2217. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-2023 | PD9 MegaBBS 2.2 attachmentid sql injection (EDB-5507 / XFDB-42044)
10 months 3 weeks ago
A vulnerability was found in PD9 MegaBBS 2.2. It has been rated as critical. Affected by this issue is some unknown functionality. The manipulation of the argument attachmentid leads to sql injection.
This vulnerability is handled as CVE-2008-2023. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2001-0915 | Berkeley Pmake 2.1.33 check format string (XFDB-7602 / BID-3572)
10 months 3 weeks ago
A vulnerability was found in Berkeley Pmake 2.1.33. It has been rated as critical. Affected by this issue is some unknown functionality. The manipulation of the argument check leads to format string.
This vulnerability is handled as CVE-2001-0915. Local access is required to approach this attack. Furthermore, there is an exploit available.
vuldb.com
在致命车祸后美国调查特斯拉的 Full Self-Driving 软件
10 months 3 weeks ago
在四起车祸其中包括一次致命车祸之后,汽车安全监管机构美国国家公路交通安全管理局(NHTSA)开始调查特斯拉的 Full Self-Driving(FSD)软件。Full Self-Driving 并不是其名字意义上的全自动驾驶软件,它仍然是辅助驾驶软件,且其在功能上受限于使用的硬件(它主要依赖于摄像头而没有使用激光雷达等其它传感器)。NHTSA 表示,四起车祸中 FSD 都启用了,事故发生时天气处于太阳眩光、雾或灰尘等低能见度状况下。2023 年 11 月,亚利桑那州 Rimrock 市的一名行人在被一辆 2021 年型号的特斯拉 Model Y 撞倒后死亡。另一起正在调查的车祸据报发生了受伤状况。
架设IT社会信任的桥梁 | FCIS 2024议题前瞻
10 months 3 weeks ago
随着移动互联网的发展,线上认证手段趋向多元化并正在向更便捷、更安全的方向迭代。
Nobel Prize Winner Geoffrey Hinton Explores Two Paths to Intelligence in AI Lecture
10 months 3 weeks ago
On October 8, 2024, Geoffrey Hinton was awarded the Nobel Prize in Physics, along with John J. Hopfi
CVE-2001-0903 | Intel High-bandwidth Digital Content Protection 1.0 Linear Key Exchange cleartext storage (XFDB-7612 / BID-3558)
10 months 3 weeks ago
A vulnerability classified as critical was found in Intel High-bandwidth Digital Content Protection 1.0. Affected by this vulnerability is an unknown functionality of the component Linear Key Exchange Handler. The manipulation leads to cleartext storage of sensitive information.
This vulnerability is known as CVE-2001-0903. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2008-2018 | PHPizabi 0.848b template.class.php assignuser information disclosure (EDB-5506 / XFDB-42143)
10 months 3 weeks ago
A vulnerability, which was classified as problematic, was found in PHPizabi 0.848b. This affects the function assignuser of the file template.class.php. The manipulation leads to information disclosure.
This vulnerability is uniquely identified as CVE-2008-2018. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-2022 | PD9 MegaBBS 2.2 send-private-message.asp redirect cross site scripting (EDB-5507 / XFDB-42042)
10 months 3 weeks ago
A vulnerability was found in PD9 MegaBBS 2.2. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file send-private-message.asp. The manipulation of the argument redirect leads to cross site scripting.
This vulnerability is known as CVE-2008-2022. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-2048 | Aspindir Angelo-Emlak 1.0 sayfa cross site scripting (EDB-5503 / XFDB-42155)
10 months 3 weeks ago
A vulnerability was found in Aspindir Angelo-Emlak 1.0 and classified as problematic. Affected by this issue is some unknown functionality. The manipulation of the argument sayfa leads to cross site scripting.
This vulnerability is handled as CVE-2008-2048. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-2084 | RunCMS Myarticles Module 0.6 topics.php topic_id sql injection (EDB-5505 / XFDB-42016)
10 months 3 weeks ago
A vulnerability, which was classified as critical, was found in RunCMS Myarticles Module 0.6. This affects an unknown part of the file topics.php. The manipulation of the argument topic_id leads to sql injection.
This vulnerability is uniquely identified as CVE-2008-2084. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-2088 | Phpforge PHP Forge 3.0 id sql injection (EDB-5504 / XFDB-42017)
10 months 3 weeks ago
A vulnerability was found in Phpforge PHP Forge 3.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality. The manipulation of the argument id leads to sql injection.
This vulnerability is known as CVE-2008-2088. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-2047 | Aspindir Angelo-Emlak 1.0 id sql injection (EDB-5503 / XFDB-42018)
10 months 3 weeks ago
A vulnerability has been found in Aspindir Angelo-Emlak 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality. The manipulation of the argument id leads to sql injection.
This vulnerability is known as CVE-2008-2047. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com