Aggregator
古尔曼:苹果AI将在18号推出;传英伟达4090显卡已停产;宋紫薇已从理想汽车离职 | 极客早知道
11 months ago
NVIDIA CEO 黄仁勋身价已超过英特尔公司总市值;消息称特斯拉计划以优质租赁为抵押,发行 7.83 亿美元的债券;美团联合创始人穆荣均套现 3.44 亿港元
CVE-2016-3140 | Linux Kernel up to 4.5.0 USB Descriptor digi_acceleport.c digi_port_init null pointer dereference (FEDORA-2016-81fd1b03aa / EDB-39537)
11 months ago
A vulnerability was found in Linux Kernel up to 4.5.0 and classified as critical. This issue affects the function digi_port_init of the file drivers/usb/serial/digi_acceleport.c of the component USB Descriptor Handler. The manipulation leads to null pointer dereference.
The identification of this vulnerability is CVE-2016-3140. Local access is required to approach this attack. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-1999-1477 | GNOME 1.0.8 --espeaker memory corruption (EDB-19512 / XFDB-3349)
11 months ago
A vulnerability was found in GNOME 1.0.8. It has been declared as critical. Affected by this vulnerability is an unknown functionality. The manipulation of the argument --espeaker as part of Long Argument leads to memory corruption.
This vulnerability is known as CVE-1999-1477. Local access is required to approach this attack. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2009-4607 | Overlandstorage GuardianOS 5.1.041 Command Line Interface access control (EDB-9955 / XFDB-53881)
11 months ago
A vulnerability was found in Overlandstorage GuardianOS 5.1.041. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component Command Line Interface. The manipulation leads to improper access controls.
This vulnerability is known as CVE-2009-4607. Attacking locally is a requirement. Furthermore, there is an exploit available.
vuldb.com
CVE-2016-3453 | Oracle Solaris 10 Kernel denial of service (Nessus ID 92452 / ID 296004)
11 months ago
A vulnerability classified as critical was found in Oracle Solaris 10. This vulnerability affects unknown code of the component Kernel. The manipulation leads to denial of service.
This vulnerability was named CVE-2016-3453. The attack needs to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
RuCTF Finals 2024
11 months ago
Name: RuCTF Finals 2024 (an RuCTF Finals event.)
Date: Oct. 5, 2024, 5 a.m. — 06 Oct. 2024, 19:00 UTC [add to calendar]
Format: Attack-Defense
On-site
Location: Russia, Yekaterinburg
Offical URL: http://ructf.org/
Rating weight: 25.00
Event organizers: HackerDom
Date: Oct. 5, 2024, 5 a.m. — 06 Oct. 2024, 19:00 UTC [add to calendar]
Format: Attack-Defense
On-site
Location: Russia, Yekaterinburg
Offical URL: http://ructf.org/
Rating weight: 25.00
Event organizers: HackerDom
王平回忆录
11 months ago
原中国人民志愿军政治委员,中国人民解放军军事学院政治委员,炮兵政治委员,武汉军区第一政治委员,中国人民解放军总后勤部政治委员
CVE-2014-7447 | Dattch Dattch - The Lesbian App 0.3 X.509 Certificate cryptographic issues (VU#582497)
11 months ago
A vulnerability classified as critical has been found in Dattch Dattch - The Lesbian App 0.3. This affects an unknown part of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
This vulnerability is uniquely identified as CVE-2014-7447. The attack can only be initiated within the local network. There is no exploit available.
vuldb.com
CVE-2013-3098 | TRENDnet TEW-812DRU -/1.0.8.0 Request Validation cross-site request forgery (Exploit 27177 / EDB-27177)
11 months ago
A vulnerability has been found in TRENDnet TEW-812DRU -/1.0.8.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the component Request Validation. The manipulation leads to cross-site request forgery.
This vulnerability is known as CVE-2013-3098. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2016-9538 | Apple macOS up to 10.12.3 tiffutil integer overflow (HT207615 / Nessus ID 96704)
11 months ago
A vulnerability classified as problematic was found in Apple macOS up to 10.12.3. This vulnerability affects unknown code of the component tiffutil. The manipulation leads to integer overflow.
This vulnerability was named CVE-2016-9538. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-9560 | ESAFENET CDG V5 Catelogs;logindojojs delCatelogs id sql injection
11 months ago
A vulnerability was found in ESAFENET CDG V5. It has been rated as critical. Affected by this issue is the function delCatelogs of the file /CDGServer3/document/Catelogs;logindojojs?command=DelCatelogs. The manipulation of the argument id leads to sql injection.
This vulnerability is handled as CVE-2024-9560. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
Enhance your website's security with Cloudflare’s free security.txt generator
11 months ago
Introducing Cloudflare’s free security.txt generator, empowering all users to easily create and manage their security.txt files. This feature enhances vulnerability disclosure processes, aligns with industry standards, and is integrated into the dashboard for seamless access. Strengthen your website's security today!
Alexandra Moraru
CVE-2016-9538 | LibTIFF 4.0.6 tools/tiffcrop.c readContigStripsIntoBuffer integer overflow (MSVR 35100 / Nessus ID 96495)
11 months ago
A vulnerability was found in LibTIFF 4.0.6. It has been declared as very critical. Affected by this vulnerability is the function readContigStripsIntoBuffer of the file tools/tiffcrop.c. The manipulation leads to integer overflow.
This vulnerability is known as CVE-2016-9538. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2016-9532 | LibTIFF up to 4.0.6 TIFF File tiffcrop.c writeBufferToSeparateStrips out-of-bounds (Nessus ID 96373 / ID 175938)
11 months ago
A vulnerability classified as problematic has been found in LibTIFF up to 4.0.6. This affects the function writeBufferToSeparateStrips of the file tiffcrop.c of the component TIFF File Handler. The manipulation leads to out-of-bounds read.
This vulnerability is uniquely identified as CVE-2016-9532. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Kill
11 months ago
cohenido
CVE-2014-7446 | Bilingual Magic Ball 0.1 X.509 Certificate cryptographic issues (VU#582497)
11 months ago
A vulnerability was found in Bilingual Magic Ball 0.1. It has been rated as critical. Affected by this issue is some unknown functionality of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
This vulnerability is handled as CVE-2014-7446. The attack can only be done within the local network. There is no exploit available.
vuldb.com
CVE-2007-3997 | PHP 4.4.7/5.2.3 mysqli access control (EDB-4392 / Nessus ID 26038)
11 months ago
A vulnerability was found in PHP 4.4.7/5.2.3. It has been rated as critical. Affected by this issue is some unknown functionality of the component mysqli. The manipulation leads to improper access controls.
This vulnerability is handled as CVE-2007-3997. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2007-4908 | AuraCMS up to 2.1 index.php pilih path traversal (EDB-4390 / XFDB-36541)
11 months ago
A vulnerability was found in AuraCMS up to 2.1. It has been classified as critical. Affected is an unknown function of the file index.php. The manipulation of the argument pilih leads to path traversal.
This vulnerability is traded as CVE-2007-4908. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2007-4891 | Microsoft Visual Studio up to 6.0 ActiveX Control pdwizard.ocx os command injection (EDB-4393 / XFDB-36572)
11 months ago
A vulnerability classified as critical was found in Microsoft Visual Studio up to 6.0. This vulnerability affects unknown code of the file pdwizard.ocx of the component ActiveX Control. The manipulation leads to os command injection.
This vulnerability was named CVE-2007-4891. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com