Aggregator
暗网毒市 “Archetyp” 被端!累计交易额超 2.5 亿欧元,抓捕管理员及核心卖家
2 months 2 weeks ago
多国警方联合,成功捣毁运营 5 年、用户超 60 万的暗网毒市 “Archetyp”,抓捕管理员及核心卖家,冻结千万欧元资产。
Linux 3.10 版本编译 qemu仿真 busybox
2 months 2 weeks ago
看雪论坛作者ID:GotEOF
Мы — не просто тела. Мы — маяки. Свет разума проходит сквозь череп, даже когда мы молчим
2 months 2 weeks ago
Оказывается, наш мозг умеет излучать фотоны… и кому же это выгодно?
报告:以色列对伊朗发动军事行动以来面临的网络攻击激增700%
2 months 2 weeks ago
以色列网络安全公司称以色列面临的网络威胁形势急剧升级
神秘厂商可以获得谷歌、脸书、币安等知名服务的短信验证码
2 months 2 weeks ago
短信验证码不安全
«Мы здесь, чтобы мстить»: Telegram-группа CyberAv3ngers вышла за пределы Израиля
2 months 2 weeks ago
Он управлял насосами США с другого континента — и только сейчас его ник появился в списках Госдепа.
【已复现】泛微 E-cology SQL注入漏洞
2 months 2 weeks ago
检测业务是否受到此漏洞影响,请联系长亭应急服务团队!
CVE-2024-47196 | Siemens ModelSim/Questa prior 2024.3 vsimk.exe uncontrolled search path (ssa-426509)
2 months 2 weeks ago
A vulnerability classified as critical was found in Siemens ModelSim and Questa. Affected by this vulnerability is an unknown functionality of the file vsimk.exe. The manipulation leads to uncontrolled search path.
This vulnerability is known as CVE-2024-47196. Attacking locally is a requirement. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-6141 | GNU ncurses up to 6.5-20250322 tinfo/parse_entry.c postprocess_termcap stack-based overflow
2 months 2 weeks ago
A vulnerability has been found in GNU ncurses up to 6.5-20250322 and classified as problematic. This vulnerability affects the function postprocess_termcap of the file tinfo/parse_entry.c. The manipulation leads to stack-based buffer overflow.
This vulnerability was named CVE-2025-6141. The attack needs to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-6142 | Intera InHire up to 20250530 29chcotoo9 server-side request forgery
2 months 2 weeks ago
A vulnerability was found in Intera InHire up to 20250530. It has been declared as critical. Affected by this vulnerability is an unknown functionality. The manipulation of the argument 29chcotoo9 leads to server-side request forgery.
This vulnerability is known as CVE-2025-6142. The attack can be launched remotely. Furthermore, there is an exploit available.
The vendor was contacted early about this disclosure but did not respond in any way.
vuldb.com
CVE-2025-6143 | TOTOLINK EX1200T 4.1.2cu.5232_B20210713 HTTP POST Request /boafrm/formNtp submit-url buffer overflow
2 months 2 weeks ago
A vulnerability, which was classified as critical, was found in TOTOLINK EX1200T 4.1.2cu.5232_B20210713. Affected is an unknown function of the file /boafrm/formNtp of the component HTTP POST Request Handler. The manipulation of the argument submit-url leads to buffer overflow.
This vulnerability is traded as CVE-2025-6143. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-6144 | TOTOLINK EX1200T 4.1.2cu.5232_B20210713 HTTP POST Request /boafrm/formSysCmd submit-url buffer overflow
2 months 2 weeks ago
A vulnerability has been found in TOTOLINK EX1200T 4.1.2cu.5232_B20210713 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /boafrm/formSysCmd of the component HTTP POST Request Handler. The manipulation of the argument submit-url leads to buffer overflow.
This vulnerability is known as CVE-2025-6144. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-6145 | TOTOLINK EX1200T 4.1.2cu.5232_B20210713 HTTP POST Request /boafrm/formSysLog submit-url buffer overflow
2 months 2 weeks ago
A vulnerability was found in TOTOLINK EX1200T 4.1.2cu.5232_B20210713 and classified as critical. Affected by this issue is some unknown functionality of the file /boafrm/formSysLog of the component HTTP POST Request Handler. The manipulation of the argument submit-url leads to buffer overflow.
This vulnerability is handled as CVE-2025-6145. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-6147 | TOTOLINK A702R 4.0.0-B20230721.1521 HTTP POST Request /boafrm/formSysLog submit-url buffer overflow
2 months 2 weeks ago
A vulnerability was found in TOTOLINK A702R 4.0.0-B20230721.1521. It has been declared as critical. This vulnerability affects unknown code of the file /boafrm/formSysLog of the component HTTP POST Request Handler. The manipulation of the argument submit-url leads to buffer overflow.
This vulnerability was named CVE-2025-6147. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-6149 | TOTOLINK A3002R 4.0.0-B20230531.1404 HTTP POST Request /boafrm/formSysLog submit-url buffer overflow
2 months 2 weeks ago
A vulnerability classified as critical has been found in TOTOLINK A3002R 4.0.0-B20230531.1404. Affected is an unknown function of the file /boafrm/formSysLog of the component HTTP POST Request Handler. The manipulation of the argument submit-url leads to buffer overflow.
This vulnerability is traded as CVE-2025-6149. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-6150 | TOTOLINK X15 1.0.0-B20230714.1105 HTTP POST Request /boafrm/formMultiAP submit-url buffer overflow
2 months 2 weeks ago
A vulnerability classified as critical was found in TOTOLINK X15 1.0.0-B20230714.1105. Affected by this vulnerability is an unknown functionality of the file /boafrm/formMultiAP of the component HTTP POST Request Handler. The manipulation of the argument submit-url leads to buffer overflow.
This vulnerability is known as CVE-2025-6150. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-48797 | GIMP TGA Image Parser heap-based overflow (EUVD-2025-16288 / Nessus ID 237912)
2 months 2 weeks ago
A vulnerability classified as critical was found in GIMP. Affected by this vulnerability is an unknown functionality of the component TGA Image Parser. The manipulation leads to heap-based buffer overflow.
This vulnerability is known as CVE-2025-48797. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2025-48798 | GIMP XCF Image Parser use after free (EUVD-2025-16287 / Nessus ID 237912)
2 months 2 weeks ago
A vulnerability, which was classified as critical, has been found in GIMP. Affected by this issue is some unknown functionality of the component XCF Image Parser. The manipulation leads to use after free.
This vulnerability is handled as CVE-2025-48798. The attack may be launched remotely. There is no exploit available.
vuldb.com
英特尔将裁减 15%-20% 的芯片工厂员工
2 months 2 weeks ago
根据英特尔制造业务副总裁 Naga Chandrasekaran 上周六发给员工的备忘录,该公司将从七月起裁减 15%-20% 的工厂员工,裁员规模可能逾万人。截至 2024 年底,英特尔共有 10.9 万名员工,但制造业务的员工总数没有披露。英特尔其它业务部门也在大裁员,员工表示公司没有具体说明每个业务部门将裁减多少个岗位。