Aggregator
CVE-2024-41515 | CADClick up to 1.11.0 ccHandlerResource.ashx res_url cross site scripting
3 months 4 weeks ago
A vulnerability was found in CADClick up to 1.11.0. It has been classified as problematic. This affects an unknown part of the file ccHandlerResource.ashx. The manipulation of the argument res_url leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2024-41515. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-41514 | CADClick up to 1.11.0 PrevPgGroup.aspx wer cross site scripting
3 months 4 weeks ago
A vulnerability was found in CADClick up to 1.11.0. It has been rated as problematic. This issue affects some unknown processing of the file PrevPgGroup.aspx. The manipulation of the argument wer leads to cross site scripting.
The identification of this vulnerability is CVE-2024-41514. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-41516 | CADClick up to 1.11.0 ccHandler.aspx bomid cross site scripting
3 months 4 weeks ago
A vulnerability classified as problematic has been found in CADClick up to 1.11.0. Affected is an unknown function of the file ccHandler.aspx. The manipulation of the argument bomid leads to cross site scripting.
This vulnerability is traded as CVE-2024-41516. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-41512 | CADClick up to 1.11.0 ccHandler.aspx bomid sql injection
3 months 4 weeks ago
A vulnerability was found in CADClick up to 1.11.0. It has been classified as critical. Affected is an unknown function of the file ccHandler.aspx. The manipulation of the argument bomid leads to sql injection.
This vulnerability is traded as CVE-2024-41512. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-41513 | CADClick up to 1.11.0 Artikel.aspx searchindex cross site scripting
3 months 4 weeks ago
A vulnerability was found in CADClick up to 1.11.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file Artikel.aspx. The manipulation of the argument searchindex leads to cross site scripting.
This vulnerability is known as CVE-2024-41513. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-44439 | Shanghai Zhouma Network Technology IMS Intelligent Manufacturing Collaborative Internet of Things System Privilege Escalation
3 months 4 weeks ago
A vulnerability was found in Shanghai Zhouma Network Technology IMS Intelligent Manufacturing Collaborative Internet of Things System 1.9.1. It has been rated as critical. Affected by this issue is some unknown functionality. The manipulation leads to Privilege Escalation.
This vulnerability is handled as CVE-2024-44439. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-38040 | Esri Portal for ArcGIS up to 10.8.1/10.9.1/11.1/11.2 File file inclusion
3 months 4 weeks ago
A vulnerability classified as problematic was found in Esri Portal for ArcGIS up to 10.8.1/10.9.1/11.1/11.2. This vulnerability affects unknown code of the component File Handler. The manipulation leads to file inclusion.
This vulnerability was named CVE-2024-38040. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2023-26770 | Taskcafe Project Management Tool 0.3.2 Cookie improper authorization
3 months 4 weeks ago
A vulnerability was found in Taskcafe Project Management Tool 0.3.2. It has been rated as problematic. Affected by this issue is some unknown functionality. The manipulation of the argument Cookie leads to improper authorization.
This vulnerability is handled as CVE-2023-26770. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2023-26771 | Taskcafe Project Management Tool 0.3.2 SVG Profile Picture cross site scripting
3 months 4 weeks ago
A vulnerability classified as problematic has been found in Taskcafe Project Management Tool 0.3.2. This affects an unknown part of the component SVG Profile Picture Handler. The manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2023-26771. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-41511 | CADClick up to 1.11.0 BinaryFileRedirector.ashx path path traversal
3 months 4 weeks ago
A vulnerability has been found in CADClick up to 1.11.0 and classified as critical. This vulnerability affects unknown code of the file BinaryFileRedirector.ashx. The manipulation of the argument path leads to path traversal.
This vulnerability was named CVE-2024-41511. The attack can be initiated remotely. There is no exploit available.
vuldb.com
Kill
3 months 4 weeks ago
cohenido
媒体称“希音赖以崛起的魔法将失灵”,创始人许仰天火速赴美灭火,高管撇清“希音不是中国公司”
3 months 4 weeks ago
带子9月30日,国外媒体发表长篇报道,《赖以崛起的魔法即将失灵,shein将如何面对》。文中称,创立于中国的低价电商Shein利用灵活供应链和免税发货迅速崛起。如今,不仅美国即将堵上小额豁免的贸易漏洞
新型僵尸网络针对 100 个国家发起 30 万次 DDoS 攻击
3 months 4 weeks ago
除了支持 ARM、MIPS、x86_64和 x86等多种 CPU 架构外,僵尸网络还具备与五个预定义命令与控制服务器之一连接的功能。
CVE-2003-0706 | Nicolas Boullis mah-jong 1.4 infinite loop (EDB-23116 / Nessus ID 15215)
3 months 4 weeks ago
A vulnerability, which was classified as problematic, was found in Nicolas Boullis mah-jong 1.4. Affected is an unknown function. The manipulation leads to infinite loop.
This vulnerability is traded as CVE-2003-0706. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
一次解决Go编译问题的经过
3 months 4 weeks ago
在服务器上执行go run运行时,程序没有任何响应和回显,甚至main函数一开始的fmt.Println()都没有任何输出。
JVN: CUPSにおける複数の脆弱性
3 months 4 weeks ago
CUPSにおいて、任意のコードあるいはコマンド実行につながる複数の脆弱性が公表されています。
CVE-2013-4985 | Vivotek IP Camera authorization (EDB-29516 / BID-63541)
3 months 4 weeks ago
A vulnerability, which was classified as critical, has been found in Vivotek IP Camera. This issue affects some unknown processing. The manipulation leads to incorrect authorization.
The identification of this vulnerability is CVE-2013-4985. The attack may be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2005-4334 | John Andersson ZixForum 1.12 zixforum/forum.asp H_ID sql injection (EDB-27143 / BID-16406)
3 months 4 weeks ago
A vulnerability was found in John Andersson ZixForum 1.12. It has been classified as critical. Affected is an unknown function of the file zixforum/forum.asp. The manipulation of the argument H_ID leads to sql injection.
This vulnerability is traded as CVE-2005-4334. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2008-3722 | Fipsasp fipsCMS 2.1 kat sql injection (EDB-32255 / XFDB-44522)
3 months 4 weeks ago
A vulnerability, which was classified as critical, has been found in Fipsasp fipsCMS 2.1. Affected by this issue is some unknown functionality. The manipulation of the argument kat leads to sql injection.
This vulnerability is handled as CVE-2008-3722. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com