Aggregator
先知安全沙龙 - 北京站 11月9日开启!
2 months 2 weeks ago
快来报名~
Dark Matter Announced a Harm Reduction Campaign
2 months 2 weeks ago
Dark Matter Announced a Harm Reduction Campaign
Dark Web Informer
El Dorado
2 months 2 weeks ago
cohenido
CVE-2008-2838 | Traindepot 0.1 index.php module path traversal (EDB-5848 / XFDB-43159)
2 months 2 weeks ago
A vulnerability was found in Traindepot 0.1. It has been declared as problematic. This vulnerability affects unknown code of the file index.php. The manipulation of the argument module leads to path traversal.
This vulnerability was named CVE-2008-2838. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-2839 | Traindepot 0.1 Search Module index.php query cross site scripting (EDB-5848 / XFDB-43160)
2 months 2 weeks ago
A vulnerability was found in Traindepot 0.1. It has been rated as problematic. This issue affects some unknown processing of the file index.php of the component Search Module. The manipulation of the argument query leads to cross site scripting.
The identification of this vulnerability is CVE-2008-2839. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-2792 | eroCMS 1.4 index.php site sql injection (EDB-5846 / XFDB-43157)
2 months 2 weeks ago
A vulnerability was found in eroCMS 1.4. It has been rated as critical. This issue affects some unknown processing of the file index.php. The manipulation of the argument site leads to sql injection.
The identification of this vulnerability is CVE-2008-2792. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-2836 | K5n WebCalendar 1.0.4 send_reminders.php noSet code injection (EDB-5847 / XFDB-43156)
2 months 2 weeks ago
A vulnerability was found in K5n WebCalendar 1.0.4 and classified as critical. Affected by this issue is some unknown functionality of the file send_reminders.php. The manipulation of the argument noSet leads to code injection.
This vulnerability is handled as CVE-2008-2836. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2008-2865 | Kalptaru Infotech PHP Site Lock 2.0 index.php articleid sql injection (EDB-5842 / XFDB-43147)
2 months 2 weeks ago
A vulnerability was found in Kalptaru Infotech PHP Site Lock 2.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file index.php. The manipulation of the argument articleid leads to sql injection.
This vulnerability is handled as CVE-2008-2865. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-6738 | Mark Girling MyShoutPro 1.2 improper authentication (EDB-5845 / XFDB-43145)
2 months 2 weeks ago
A vulnerability was found in Mark Girling MyShoutPro 1.2 and classified as critical. Affected by this issue is some unknown functionality. The manipulation leads to improper authentication.
This vulnerability is handled as CVE-2008-6738. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-6742 | Gofoxy Foxy input validation (EDB-5843 / XFDB-43146)
2 months 2 weeks ago
A vulnerability classified as problematic has been found in Gofoxy Foxy. Affected is an unknown function. The manipulation leads to improper input validation.
This vulnerability is traded as CVE-2008-6742. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
El Dorado
2 months 2 weeks ago
cohenido
Empire is Allegedly Selling Multiple Databases From the UK and USA
2 months 2 weeks ago
Empire is Allegedly Selling Multiple Databases From the UK and USA
Dark Web Informer
CVE-2003-0074 | plptools 0.6 plpnfsd mpmain.c debuglog/errorlog/infolog format string (XFDB-11193 / BID-6715)
2 months 2 weeks ago
A vulnerability, which was classified as critical, has been found in plptools 0.6. Affected by this issue is the function debuglog/errorlog/infolog of the file mpmain.c of the component plpnfsd. The manipulation leads to format string.
This vulnerability is handled as CVE-2003-0074. It is possible to launch the attack on the local host. There is no exploit available.
vuldb.com
US says Chinese hackers breached multiple telecom providers
2 months 2 weeks ago
The FBI and the U.S. Cybersecurity & Infrastructure Security Agency (CISA) have disclosed that Chinese hackers breached commercial telecommunication service providers in the United States. [...]
Bill Toulas
Docker, Sliver и AnonDNS – чем опасна новая кампания TeamTNT?
2 months 2 weeks ago
Злоумышленники осваивают новые схемы монетизации на захваченных серверах.
漫画版|数据安全外包人员篇
2 months 2 weeks ago
别让TA成为企业的“定时炸弹”
AI来了:巨头尝试打造一个集成网络和安全的统一平台
2 months 2 weeks ago
AI来了,多家安全厂商尝试打造一个集成网络与安全管理的“统一平台”,来解决复杂管理难题。
A Threat Actor is Allegedly Selling the Data of SumUp
2 months 2 weeks ago
A Threat Actor is Allegedly Selling the Data of SumUp
Dark Web Informer
SecWiki News 2024-10-28 Review
2 months 2 weeks ago
SecWiki周刊(第556期) by ourren
应用配置信息的安全管理实践 by 洞源实验室
俄乌冲突下网络运营商如何加强数字主权 by Avenger
鸿蒙生态应用安全技术白皮书 by ourren
更多最新文章,请访问SecWiki
应用配置信息的安全管理实践 by 洞源实验室
俄乌冲突下网络运营商如何加强数字主权 by Avenger
鸿蒙生态应用安全技术白皮书 by ourren
更多最新文章,请访问SecWiki