Aggregator
CVE-2021-3538 | Satori go.uuid g.rand.Read weak prng
11 months ago
A vulnerability, which was classified as problematic, has been found in Satori go.uuid. Affected by this issue is the function g.rand.Read. The manipulation leads to cryptographically weak prng.
This vulnerability is handled as CVE-2021-3538. The attack can only be done within the local network. There is no exploit available.
vuldb.com
CVE-2024-2928 | MLflow up to 2.11.2 Query String path traversal
11 months ago
A vulnerability was found in MLflow up to 2.11.2. It has been classified as problematic. Affected is an unknown function of the component Query String Handler. The manipulation leads to path traversal: '\..\filename'.
This vulnerability is traded as CVE-2024-2928. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-3099 | MLflow up to 2.11.1 undefined behavior for input to api
11 months ago
A vulnerability, which was classified as problematic, was found in MLflow up to 2.11.1. Affected is an unknown function. The manipulation leads to undefined behavior for input to api.
This vulnerability is traded as CVE-2024-3099. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-9707 | Hunk Companion Plugin up to 1.8.4 on WordPress Plugin Installation authorization
11 months ago
A vulnerability was found in Hunk Companion Plugin up to 1.8.4 on WordPress. It has been rated as problematic. This issue affects some unknown processing of the component Plugin Installation Handler. The manipulation leads to missing authorization.
The identification of this vulnerability is CVE-2024-9707. The attack may be initiated remotely. There is no exploit available.
vuldb.com
指针分析与Java反序列化利用链挖掘实践(一)
11 months ago
360安全应急响应中心
第三周奖励情况|2024双11安全保卫战倒计时三天!
11 months ago
活动倒计时三天,冲刺!
Gevechtsinsignes voor door go-fast geramde militairen
11 months ago
Het gebeurt niet dagelijks dat er bij Defensie Gevechtsinsignes worden uitgereikt. Vandaag zelfs 2 keer. Militairen die in juni betrokken waren bij een drugsonderschepping in het Caribisch gebied ontvingen ze. Ze werden tijdens deze counterdrugsoperatie zeker 2 keer geramd door de go-fast van de verdachten. Vanuit zelfverdediging en om de boot te stoppen zagen zij zich genoodzaakt om te vuren.
Mozilla security advisory (AV24-581)
11 months ago
Canadian Centre for Cyber Security
CVE-2014-7572 | fallacystudios Stoner's Handbook L- Bud Guide 7.2 X.509 Certificate cryptographic issues (VU#582497)
11 months ago
A vulnerability classified as critical was found in fallacystudios Stoner's Handbook L- Bud Guide 7.2. Affected by this vulnerability is an unknown functionality of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
This vulnerability is known as CVE-2014-7572. The attack needs to be initiated within the local network. There is no exploit available.
vuldb.com
Хакеры усиливают натиск на высшие учебные заведения
11 months ago
Кибератаки на университеты учащаются каждую неделю. Что делать?
CVE-2024-9234 | GutenKit Plugin up to 2.1.0 on WordPress unrestricted upload
11 months ago
A vulnerability, which was classified as critical, has been found in GutenKit Plugin up to 2.1.0 on WordPress. This issue affects some unknown processing. The manipulation leads to unrestricted upload.
The identification of this vulnerability is CVE-2024-9234. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-9587 | Linkz.ai Plugin up to 1.1.8 on WordPress Setting authorization
11 months ago
A vulnerability was found in Linkz.ai Plugin up to 1.1.8 on WordPress. It has been declared as problematic. This vulnerability affects unknown code of the component Setting Handler. The manipulation leads to missing authorization.
This vulnerability was named CVE-2024-9587. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-9586 | Linkz.ai Plugin up to 1.1.8 on WordPress Setting authorization
11 months ago
A vulnerability classified as problematic has been found in Linkz.ai Plugin up to 1.1.8 on WordPress. Affected is an unknown function of the component Setting Handler. The manipulation leads to missing authorization.
This vulnerability is traded as CVE-2024-9586. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-9538 | ShopLentor Plugin up to 2.9.8 on WordPress FAQ Widget Elementor Template information disclosure
11 months ago
A vulnerability was found in ShopLentor Plugin up to 2.9.8 on WordPress. It has been classified as problematic. Affected is an unknown function of the component FAQ Widget Elementor Template. The manipulation leads to information disclosure.
This vulnerability is traded as CVE-2024-9538. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
网信办展开规范网络语言文字专项行动
11 months ago
中央网信办和教育部宣布部署开展“清朗·规范网络语言文字使用”专项行动。专项行动聚焦部分网站平台在热搜榜单、首页首屏、发现精选等重点环节呈现的语言文字不规范、不文明现象,重点整治歪曲音、形、义,编造网络黑话烂梗,滥用隐晦表达等突出问题。专项行动要求,各地网信、教育部门要强化协同联动...集中清理不规范、不文明网络语言文字相关信息...
CVE-2016-1866 | Salt up to 2015.8.3 access control (Nessus ID 88570 / ID 168638)
11 months ago
A vulnerability was found in Salt up to 2015.8.3 and classified as critical. Affected by this issue is some unknown functionality. The manipulation leads to improper access controls.
This vulnerability is handled as CVE-2016-1866. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2016-1925 | LHA Archive header.c integer underflow (Nessus ID 93184 / ID 169011)
11 months ago
A vulnerability classified as critical was found in LHA. This vulnerability affects unknown code of the file header.c of the component Archive Handler. The manipulation leads to integer underflow.
This vulnerability was named CVE-2016-1925. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
NHS England Warns of Critical Veeam Vulnerability Under Active Exploitation
11 months ago
NHS England has issued an alert regarding a critical Veeam Backup & Replication vulnerability that is being actively exploited, potentially leading to remote code execution
Mariniers terug uit Bosnië-Herzegovina
11 months ago
De laatste eenheid van het Korps Mariniers in Bosnië-Herzegovina is terug. Circa 150 mariniers leverden in het land gedurende 1 jaar een bijdrage aan de EU-missie EUFOR Althea. Doel hiervan is de stabiliteit in de westelijke Balkan te bewaken. Roemeense militairen hebben die rol inmiddels overgenomen.