Aggregator
OpenAI o1 - Questoinable Empathy
1 year 5 months ago
OpenAI o1 came out just in time for me to add it to my 2024 Q3 benchmarks on AI empathy (to be publi
RSTCON 2024 CTF (Online/Hybrid)
1 year 5 months ago
Name: RSTCON 2024 CTF (Online/Hybrid) (an RSTCON CTF event.)
Date: Sept. 13, 2024, 7:45 p.m. — 15 Sept. 2024, 16:45 UTC [add to calendar]
Format: Jeopardy
On-site
Location: Savannah, Georgia, USA
Offical URL: https://metactf.com/join/rstcon24
Rating weight: 24.00
Event organizers: RSTCON
Date: Sept. 13, 2024, 7:45 p.m. — 15 Sept. 2024, 16:45 UTC [add to calendar]
Format: Jeopardy
On-site
Location: Savannah, Georgia, USA
Offical URL: https://metactf.com/join/rstcon24
Rating weight: 24.00
Event organizers: RSTCON
TO DELETE - Event: https://ctftime.org/event/2520
1 year 5 months ago
Name: TO DELETE - Event: https://ctftime.org/event/2520 (an Securinets CTF event.)
Date: Sept. 14, 2024, 7 p.m. — 15 Sept. 2024, 19:00 UTC [add to calendar]
Format: Jeopardy
On-line
Offical URL: https://ctf.securinets.tn/
Rating weight: 95.59
Event organizers: Securinets
Date: Sept. 14, 2024, 7 p.m. — 15 Sept. 2024, 19:00 UTC [add to calendar]
Format: Jeopardy
On-line
Offical URL: https://ctf.securinets.tn/
Rating weight: 95.59
Event organizers: Securinets
CVE-2021-36942 | Microsoft Windows Server 20H2 up to Server 2016 LSA information disclosure
1 year 5 months ago
A vulnerability classified as problematic has been found in Microsoft Windows. Affected is an unknown function of the component LSA. The manipulation leads to information disclosure.
This vulnerability is traded as CVE-2021-36942. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2021-35395 | Realtek Jungle SDK up to 3.4.14B HTTP Web Server url stack-based overflow
1 year 5 months ago
A vulnerability was found in Realtek Jungle SDK up to 3.4.14B and classified as critical. This issue affects some unknown processing of the component HTTP Web Server. The manipulation of the argument url leads to stack-based buffer overflow.
The identification of this vulnerability is CVE-2021-35395. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2021-38003 | Google Chrome up to 95.0.4638.54 V8 exceptional condition
1 year 5 months ago
A vulnerability was found in Google Chrome. It has been classified as critical. This affects an unknown part of the component V8. The manipulation leads to handling of exceptional conditions.
This vulnerability is uniquely identified as CVE-2021-38003. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-35464 | ForgeRock Access Management up to 6.5.3 Privilege Escalation (a47894244 / EDB-50131)
1 year 5 months ago
A vulnerability classified as critical has been found in ForgeRock Access Management up to 6.5.3. This affects an unknown part. The manipulation leads to Privilege Escalation.
This vulnerability is uniquely identified as CVE-2021-35464. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-8875 | vedees wcms up to 0.3.2 /wex/finder.php path traversal
1 year 5 months ago
A vulnerability classified as critical was found in vedees wcms up to 0.3.2. Affected by this vulnerability is an unknown functionality of the file /wex/finder.php. The manipulation of the argument p leads to path traversal.
This vulnerability is known as CVE-2024-8875. The attack can be launched remotely. Furthermore, there is an exploit available.
The vendor was contacted early about this disclosure but did not respond in any way.
vuldb.com
CVE-2024-8876 | xiaohe4966 TpMeCMS up to 1.3.3.1 /index/ajax/lang path traversal
1 year 5 months ago
A vulnerability, which was classified as problematic, has been found in xiaohe4966 TpMeCMS up to 1.3.3.1. Affected by this issue is some unknown functionality of the file /index/ajax/lang. The manipulation of the argument lang leads to path traversal.
This vulnerability is handled as CVE-2024-8876. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Discovering Human Factories: A Personal Reflection on Modern Work, AI, and Creativity
1 year 5 months ago
To write in public or not...Note: This piece is intentionally raw and unpolished, reflecting a direc
CVE-2014-6769 | mobilesoft Meteo Belgique 3.2 X.509 Certificate cryptographic issues (VU#582497)
1 year 5 months ago
A vulnerability, which was classified as critical, was found in mobilesoft Meteo Belgique 3.2. This affects an unknown part of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
This vulnerability is uniquely identified as CVE-2014-6769. The attack needs to be approached within the local network. There is no exploit available.
vuldb.com
CVE-2007-2755 | PrecisionID Barcode 1.9 ActiveX Control precisionid_barcode.dll savetofile privileges management (EDB-3938 / XFDB-34337)
1 year 5 months ago
A vulnerability was found in PrecisionID Barcode 1.9. It has been rated as very critical. This issue affects the function savetofile in the library precisionid_barcode.dll of the component ActiveX Control. The manipulation leads to improper privilege management.
The identification of this vulnerability is CVE-2007-2755. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2014-6768 | Anywhere Anytime Yoga Workout 1 X.509 Certificate cryptographic issues (VU#582497)
1 year 5 months ago
A vulnerability, which was classified as critical, has been found in Anywhere Anytime Yoga Workout 1. Affected by this issue is some unknown functionality of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
This vulnerability is handled as CVE-2014-6768. Access to the local network is required for this attack to succeed. There is no exploit available.
vuldb.com
CVE-2014-4155 | ZTE ZXV10 W300 cross-site request forgery (ID 127129 / EDB-33803)
1 year 5 months ago
A vulnerability classified as critical was found in ZTE ZXV10 W300. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross-site request forgery.
This vulnerability is known as CVE-2014-4155. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2017-2447 | Apple iOS up to 10.2 WebKit Bound memory corruption (HT207617 / EDB-41743)
1 year 5 months ago
A vulnerability has been found in Apple iOS up to 10.2 and classified as problematic. This vulnerability affects the function Bound of the component WebKit. The manipulation leads to memory corruption.
This vulnerability was named CVE-2017-2447. The attack can be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2007-2752 | RunawaySoft Haber portal 1.0 devami.asp id sql injection (EDB-3936 / XFDB-34491)
1 year 5 months ago
A vulnerability was found in RunawaySoft Haber portal 1.0. It has been classified as critical. This affects an unknown part of the file devami.asp. The manipulation of the argument id leads to sql injection.
This vulnerability is uniquely identified as CVE-2007-2752. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2017-2447 | Apple Safari up to 10.0 WebKit Bound memory corruption (HT207600 / EDB-41743)
1 year 5 months ago
A vulnerability classified as critical has been found in Apple Safari up to 10.0. This affects the function Bound of the component WebKit. The manipulation leads to memory corruption.
This vulnerability is uniquely identified as CVE-2017-2447. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2007-2753 | RunawaySoft Haber portal 1.0 data/xice.mdb information disclosure (EDB-3936 / OSVDB-41976)
1 year 5 months ago
A vulnerability was found in RunawaySoft Haber portal 1.0. It has been declared as problematic. This vulnerability affects unknown code of the file data/xice.mdb. The manipulation leads to information disclosure.
This vulnerability was named CVE-2007-2753. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2004-2132 | PJ CGI Neo Review pjreview_neo.cgi p path traversal (EDB-23615 / Nessus ID 12035)
1 year 5 months ago
A vulnerability was found in PJ CGI Neo Review. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file pjreview_neo.cgi. The manipulation of the argument p leads to path traversal.
This vulnerability is known as CVE-2004-2132. The attack can be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com