Aggregator
CVE-2014-5919 | SurDoc 100GB+ FREE storage 1.3.4.0 X.509 Certificate cryptographic issues (VU#582497)
2 months 1 week ago
A vulnerability classified as critical has been found in SurDoc 100GB+ FREE storage 1.3.4.0. Affected is an unknown function of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
This vulnerability is traded as CVE-2014-5919. The attack needs to be done within the local network. There is no exploit available.
vuldb.com
Windows再现高危漏洞?!你的“两高一弱”安全问题短板,是时候补齐了!
2 months 1 week ago
盛邦安全
本周看什么 | 最近值得一看的 7 部作品
2 months 1 week ago
☕️ TL;DR近期佳作推荐:[英剧] 流人 第四季、[美剧] 弹子球游戏 第二季、[日剧] À Table!~怀旧的假日~、[印度] 科塔工厂 第三季、[电影] 过季、[动画] 义妹生活、[真人秀]
The Critical Role of Data Annotation in Shaping the Future of Generative AI
2 months 1 week ago
Generative AI is reshaping various industries, driving advancements in content creation, healthcare,
Теория групп: как простая математика объясняет устройство вселенной
2 months 1 week ago
Простая идея, ставшая основой современной математики.
Mapping IT System Capabilities: The Key to Unlocking Valuable Business Data
2 months 1 week ago
Organizations rely on various IT systems to manage customer engagement, facilitate their operations,
CVE-2014-5918 | Secret Circle talk freely 2.2.00.26 X.509 Certificate cryptographic issues (VU#582497)
2 months 1 week ago
A vulnerability was found in Secret Circle talk freely 2.2.00.26. It has been rated as critical. This issue affects some unknown processing of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
The identification of this vulnerability is CVE-2014-5918. Access to the local network is required for this attack. There is no exploit available.
vuldb.com
SafeBreach Coverage for AA24-249A (GRU Unit 29155)
2 months 1 week ago
GRU Unit 29155 is well known for carrying out cyber attacks with the sole purpose of espionage, sabotage, and reputational harm.
The post SafeBreach Coverage for AA24-249A (GRU Unit 29155) appeared first on SafeBreach.
The post SafeBreach Coverage for AA24-249A (GRU Unit 29155) appeared first on Security Boulevard.
Kaustubh Jagtap
Understanding FSMO Roles in Active Directory
2 months 1 week ago
This post first appeared on blog.netwrix.com and was written by Jonathan Blackwell.
If your organization runs on Microsoft Active Directory, you rely on one or more domain controllers to keep AD operations going. On the surface, Active Directory seems to run on a peer-to-peer models in which every domain controller (DC) has the authority to create, modify, and delete AD objects. That is because every domain controller holds … Continued
If your organization runs on Microsoft Active Directory, you rely on one or more domain controllers to keep AD operations going. On the surface, Active Directory seems to run on a peer-to-peer models in which every domain controller (DC) has the authority to create, modify, and delete AD objects. That is because every domain controller holds … Continued
Jonathan Blackwell
PhysMem(e): When Kernel Drivers Peek into Memory CVE-2024-41498
2 months 1 week ago
The State of the Virtual CISO Report: MSP/MSSP Security Strategies for 2025
2 months 1 week ago
The 2024 State of the vCISO Report continues Cynomi's tradition of examining the growing popularity
俄罗斯购买有 25 年历史 ASML 机器制造军用芯片
2 months 1 week ago
俄罗斯被发现通过中间商购买有 25 年历史的 ASML 二手机器制造军用无人机使用的芯片。ASML 是世界最先进的光刻机制造商,俄罗斯入侵乌克兰之后,欧洲禁止向其出口先进设备。ASML 表
CVE-2007-3629 | Levent Veysi Portal 1.0 oku.asp id sql injection (EDB-30282 / XFDB-35282)
2 months 1 week ago
A vulnerability classified as very critical was found in Levent Veysi Portal 1.0. This vulnerability affects unknown code of the file oku.asp. The manipulation of the argument id leads to sql injection.
This vulnerability was named CVE-2007-3629. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2020-14864 | Oracle Business Intelligence Enterprise Edition 5.5.0.0.0/12.2.1.3.0/12.2.1.4.0 Installation information disclosure (EDB-48964)
2 months 1 week ago
A vulnerability classified as critical was found in Oracle Business Intelligence Enterprise Edition 5.5.0.0.0/12.2.1.3.0/12.2.1.4.0. This vulnerability affects unknown code of the component Installation. The manipulation leads to information disclosure.
This vulnerability was named CVE-2020-14864. The attack can be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
德银 CEO 督促德国人更努力的工作
2 months 1 week ago
德银 CEO Christian Sewing 本周督促德国人更努力的工作,帮助恢复国家经济。Sewing 在法兰克福举行的德国商报(Handelsblatt)银行峰会上表示,投资者已开始
CVE-2020-24918 | Ambarella Oryx RTSP Server 2020-01-07 RTSP Request libamprotocol-rtsp.so.1 parse_authentication_header buffer overflow
2 months 1 week ago
A vulnerability was found in Ambarella Oryx RTSP Server 2020-01-07. It has been classified as critical. Affected is the function parse_authentication_header of the file libamprotocol-rtsp.so.1 of the component RTSP Request Handler. The manipulation leads to buffer overflow.
This vulnerability is traded as CVE-2020-24918. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2023-34259 | Kyocera TASKalfa 4053ci up to 2VG_S000.002.561 Web Service path traversal
2 months 1 week ago
A vulnerability classified as critical has been found in Kyocera TASKalfa 4053ci up to 2VG_S000.002.561. This affects an unknown part of the component Web Service Handler. The manipulation leads to path traversal: '../filedir'.
This vulnerability is uniquely identified as CVE-2023-34259. Access to the local network is required for this attack. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-31102 | 7-zip up to 18.03 7Z File Parser integer underflow (ZDI-23-1165)
2 months 1 week ago
A vulnerability, which was classified as critical, has been found in 7-zip. This issue affects some unknown processing of the component 7Z File Parser. The manipulation leads to integer underflow.
The identification of this vulnerability is CVE-2023-31102. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-46817 | phpFox up to 4.8.13 Request Parameter /core/redirect unserialize url code injection
2 months 1 week ago
A vulnerability was found in phpFox up to 4.8.13. It has been declared as critical. This vulnerability affects the function unserialize of the file /core/redirect of the component Request Parameter Handler. The manipulation of the argument url leads to code injection.
This vulnerability was named CVE-2023-46817. Access to the local network is required for this attack to succeed. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com