Aggregator
Clop
2 months 3 weeks ago
cohenido
Clop
2 months 3 weeks ago
cohenido
CVE-2025-23039 | Caido 0.45.0 HTTP Request cross site scripting
2 months 3 weeks ago
A vulnerability was found in Caido 0.45.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component HTTP Request Handler. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2025-23039. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Clop
2 months 3 weeks ago
cohenido
Clop
2 months 3 weeks ago
cohenido
Clop
2 months 3 weeks ago
cohenido
Clop
2 months 3 weeks ago
cohenido
Clop
2 months 3 weeks ago
cohenido
Clop
2 months 3 weeks ago
cohenido
Clop
2 months 3 weeks ago
cohenido
Clop
2 months 3 weeks ago
cohenido
Handala Claims to have Breached Israel Police
2 months 3 weeks ago
Handala Claims to have Breached Israel Police
Dark Web Informer - Cyber Threat Intelligence
CVE-2024-53586 | WebFileSys 2.31.0 relPath path traversal
2 months 3 weeks ago
A vulnerability was found in WebFileSys 2.31.0. It has been rated as critical. Affected by this issue is some unknown functionality. The manipulation of the argument relPath leads to path traversal.
This vulnerability is handled as CVE-2024-53586. The attack needs to be done within the local network. Furthermore, there is an exploit available.
vuldb.com
CVE-2023-50898 | Sirv Plugin up to 7.1.2 on WordPress authorization
2 months 3 weeks ago
A vulnerability classified as problematic was found in Sirv Plugin up to 7.1.2 on WordPress. Affected by this vulnerability is an unknown functionality. The manipulation leads to missing authorization.
This vulnerability is known as CVE-2023-50898. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2023-51522 | Cozmoslabs Paid Member Subscriptions Plugin up to 2.10.4 on WordPress cross-site request forgery
2 months 3 weeks ago
A vulnerability classified as problematic has been found in Cozmoslabs Paid Member Subscriptions Plugin up to 2.10.4 on WordPress. Affected is an unknown function. The manipulation leads to cross-site request forgery.
This vulnerability is traded as CVE-2023-51522. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-25918 | InstaWP Connect Plugin up to 0.1.0.8 on WordPress unrestricted upload
2 months 3 weeks ago
A vulnerability was found in InstaWP Connect Plugin up to 0.1.0.8 on WordPress. It has been classified as critical. This affects an unknown part. The manipulation leads to unrestricted upload.
This vulnerability is uniquely identified as CVE-2024-25918. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
CVE-2012-1782 | OSQA 3b cross site scripting (EDB-36886 / BID-52184)
2 months 3 weeks ago
A vulnerability was found in OSQA 3b. It has been classified as problematic. This affects an unknown part. The manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2012-1782. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2004-1782 | David Maciejak Athena Web Registration athenareg.php pass privileges management (EDB-23513 / Nessus ID 18376)
2 months 3 weeks ago
A vulnerability classified as critical has been found in David Maciejak Athena Web Registration. Affected is an unknown function of the file athenareg.php. The manipulation of the argument pass leads to improper privilege management.
This vulnerability is traded as CVE-2004-1782. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2002-0887 | Caldera OpenServer 5.0.5/5.0.6 scoadmin symlink (EDB-21489 / XFDB-9210)
2 months 3 weeks ago
A vulnerability was found in Caldera OpenServer 5.0.5/5.0.6. It has been declared as problematic. This vulnerability affects unknown code of the component scoadmin. The manipulation leads to symlink following.
This vulnerability was named CVE-2002-0887. An attack has to be approached locally. Furthermore, there is an exploit available.
vuldb.com