Aggregator
Palo Alto 5亿美元收购IBM的QRadar业务
2 months 2 weeks ago
安全客
朝鲜黑客利用伪造的 FreeConference 应用程序瞄准求职者
2 months 2 weeks ago
安全客
英国三人认罪,涉嫌经营1000万美元的多因素认证绕过业务
2 months 2 weeks ago
安全客
渠道精英训练营——技术大比武荣誉榜
2 months 2 weeks ago
安全客
Trackd 发布了强大的规则引擎 推动行业更积极地使用自动补丁
2 months 2 weeks ago
安全客
ISC Stormcast For Thursday, September 5th, 2024 https://isc.sans.edu/podcastdetail/9126, (Thu, Sep 5th)
2 months 2 weeks ago
Defensienota 2024: Sterk, slim en samen (video)
2 months 2 weeks ago
Om Nederland veilig te houden investeren we fors in onze bijdrage aan het NAVO-bondgenootschap. Zo krijgt de landmacht weer tanks, de luchtmacht extra F-35’s en de marine kan rekenen op extra fregatten voor onderzeebootbestrijding. Ook wordt de militaire politie versterkt en trekt Defensie structureel 260 miljoen extra uit om personeel te behouden en binnen te halen. Er wordt geïnvesteerd in innovatie en de defensie-industrie, om de productie van militair materieel van vandaag en morgen te stimuleren. Het is slechts een greep aan maatregelen uit de vandaag verschenen Defensienota.
CVE-2014-5893 | Shinsegaemall froyo 5.1.3 X.509 Certificate cryptographic issues (VU#582497)
2 months 2 weeks ago
A vulnerability was found in Shinsegaemall froyo 5.1.3. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
This vulnerability is known as CVE-2014-5893. Access to the local network is required for this attack. There is no exploit available.
vuldb.com
Researcher Finds Unfixable Yet Tricky to Exploit Flaw in Yubikeys
2 months 2 weeks ago
A security flaw exploiting side channel attacks means some Yubikeys can be cloned
Вызывают ли смартфоны рак мозга? ARPANSA ставит точку в многолетнем споре
2 months 2 weeks ago
Поддавшись панике, мы десятилетиями игнорировали факты.
CVE-2024-44821 | ZZCMS up to 2023 CAPTCHA Page /inc/function.php captcha information exposure
2 months 2 weeks ago
A vulnerability was found in ZZCMS up to 2023. It has been classified as problematic. Affected is an unknown function of the file /inc/function.php of the component CAPTCHA Page Handler. The manipulation of the argument captcha leads to information exposure through error message.
This vulnerability is traded as CVE-2024-44821. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-44817 | ZZCMS up to 2023 adv2.php id sql injection
2 months 2 weeks ago
A vulnerability has been found in ZZCMS up to 2023 and classified as critical. Affected by this vulnerability is an unknown functionality of the file adv2.php. The manipulation of the argument id leads to sql injection.
This vulnerability is known as CVE-2024-44817. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-45076 | IBM webMethods Integration 10.15 unrestricted upload
2 months 2 weeks ago
A vulnerability was found in IBM webMethods Integration 10.15. It has been classified as very critical. This affects an unknown part. The manipulation leads to unrestricted upload.
This vulnerability is uniquely identified as CVE-2024-45076. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-44808 | Vypor Attack API System 1.0 GET Parameter user input validation
2 months 2 weeks ago
A vulnerability was found in Vypor Attack API System 1.0. It has been declared as critical. This vulnerability affects unknown code of the component GET Parameter Handler. The manipulation of the argument user leads to improper input validation.
This vulnerability was named CVE-2024-44808. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-44818 | ZZCMS up to 2023 Header caina.php HTTP_Referer cross site scripting
2 months 2 weeks ago
A vulnerability was found in ZZCMS up to 2023. It has been rated as problematic. This issue affects some unknown processing of the file caina.php of the component Header Handler. The manipulation of the argument HTTP_Referer leads to cross site scripting.
The identification of this vulnerability is CVE-2024-44818. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-44859 | Tenda FH1201 1.2.0.14 formWrlExtraGet stack-based overflow
2 months 2 weeks ago
A vulnerability, which was classified as critical, has been found in Tenda FH1201 1.2.0.14. Affected by this issue is the function formWrlExtraGet. The manipulation leads to stack-based buffer overflow.
This vulnerability is handled as CVE-2024-44859. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-45050 | Lif-Platforms New-Ringer-Server up to 1.3.0 authorization
2 months 2 weeks ago
A vulnerability has been found in Lif-Platforms New-Ringer-Server up to 1.3.0 and classified as critical. This vulnerability affects unknown code. The manipulation leads to missing authorization.
This vulnerability was named CVE-2024-45050. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-45074 | IBM webMethods Integration 10.15 URL path traversal
2 months 2 weeks ago
A vulnerability was found in IBM webMethods Integration 10.15 and classified as critical. This issue affects some unknown processing of the component URL Handler. The manipulation leads to path traversal: '/../filedir'.
The identification of this vulnerability is CVE-2024-45074. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-45075 | IBM webMethods Integration 10.15 single-factor authentication
2 months 2 weeks ago
A vulnerability was found in IBM webMethods Integration 10.15. It has been classified as very critical. Affected is an unknown function. The manipulation leads to use of single-factor authentication.
This vulnerability is traded as CVE-2024-45075. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com