Aggregator
CVE-2024-9037 | Codezips Internal Marks Calculation 1.0 index.php tid sql injection
4 months 1 week ago
A vulnerability classified as critical has been found in Codezips Internal Marks Calculation 1.0. Affected is an unknown function of the file index.php. The manipulation of the argument tid leads to sql injection.
This vulnerability is traded as CVE-2024-9037. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2024-45489 | Arc up to 31.0.101.5081 access control
4 months 1 week ago
A vulnerability was found in Arc. It has been rated as critical. Affected by this issue is some unknown functionality. The manipulation leads to improper access controls.
This vulnerability is handled as CVE-2024-45489. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-47480 | Pure Data 0.54-0 return value (ID 2063)
4 months 1 week ago
A vulnerability, which was classified as problematic, has been found in Pure Data 0.54-0. This issue affects some unknown processing. The manipulation leads to unchecked return value.
The identification of this vulnerability is CVE-2023-47480. It is possible to launch the attack on the local host. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-42697 | LeoTheme Leo Product Search Module up to 2.1.6 q cross site scripting
4 months 1 week ago
A vulnerability, which was classified as problematic, was found in LeoTheme Leo Product Search Module up to 2.1.6. Affected is an unknown function of the component Product Search. The manipulation of the argument q leads to cross site scripting.
This vulnerability is traded as CVE-2024-42697. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-46654 | MacCMS 2024.1000.4040 Add Scheduled Task Module cross site scripting (Issue 1183)
4 months 1 week ago
A vulnerability classified as problematic has been found in MacCMS 2024.1000.4040. Affected is an unknown function of the component Add Scheduled Task Module. The manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2024-46654. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
OP KAERB: Europol dismantled phishing scheme targeting mobile users
4 months 1 week ago
A joint international law enforcement operation led by Europol dismantled a major phishing scheme targeting mobile users. Europol supported European and Latin American law enforcement agencies in dismantling an international criminal network that unlocks stolen or lost mobile phones using a phishing platform. The organization operated a phishing-as-a-service (PhaaS) platform called iServer, which had over […]
Pierluigi Paganini
CVE-2024-45523 | Bravura Security Fabric API SOAP resource consumption
4 months 1 week ago
A vulnerability was found in Bravura Security Fabric. It has been classified as problematic. Affected is an unknown function of the component API SOAP. The manipulation leads to resource consumption.
This vulnerability is traded as CVE-2024-45523. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-46959 | Runofast Indoor Security Camera for Baby Monitor Audio Stream /stream1 default password
4 months 1 week ago
A vulnerability classified as problematic was found in Runofast Indoor Security Camera for Baby Monitor. This vulnerability affects unknown code of the file /stream1 of the component Audio Stream Handler. The manipulation leads to use of default password.
This vulnerability was named CVE-2024-46959. The attack can be initiated remotely. There is no exploit available.
It is recommended to apply restrictive firewalling.
vuldb.com
CVE-2024-9032 | SourceCodester Simple Forum-Discussion System 1.0 /index.php page path traversal
4 months 1 week ago
A vulnerability, which was classified as critical, was found in SourceCodester Simple Forum-Discussion System 1.0. Affected is an unknown function of the file /index.php. The manipulation of the argument page leads to path traversal.
This vulnerability is traded as CVE-2024-9032. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2024-9034 | code-projects Patient Record Management System 1.0 login.php username sql injection
4 months 1 week ago
A vulnerability was found in code-projects Patient Record Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file login.php. The manipulation of the argument username leads to sql injection.
This vulnerability is handled as CVE-2024-9034. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2024-9035 | code-projects Blood Bank Management System 1.0 Admin Login /admin/login.php username/password sql injection
4 months 1 week ago
A vulnerability was found in code-projects Blood Bank Management System 1.0. It has been classified as critical. This affects an unknown part of the file /admin/login.php of the component Admin Login. The manipulation of the argument username/password leads to sql injection.
This vulnerability is uniquely identified as CVE-2024-9035. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2024-9036 | itsourcecode Online Bookstore 1.0 admin_add.php image unrestricted upload
4 months 1 week ago
A vulnerability was found in itsourcecode Online Bookstore 1.0. It has been rated as critical. This issue affects some unknown processing of the file admin_add.php. The manipulation of the argument image leads to unrestricted upload.
The identification of this vulnerability is CVE-2024-9036. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2024-9008 | SourceCodester Best Online News Portal 1.0 Comment Section /news-details.php name sql injection
4 months 1 week ago
A vulnerability classified as critical was found in SourceCodester Best Online News Portal 1.0. This vulnerability affects unknown code of the file /news-details.php of the component Comment Section. The manipulation of the argument name leads to sql injection.
This vulnerability was named CVE-2024-9008. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2024-41721 | FreeBSD bhyve out-of-bounds
4 months 1 week ago
A vulnerability has been found in FreeBSD and classified as critical. This vulnerability affects unknown code of the component bhyve. The manipulation leads to out-of-bounds read.
This vulnerability was named CVE-2024-41721. The attack can be initiated remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
Today I Learned - NSG Flow Log
4 months 1 week ago
IntroductionAzure flow logs are a feature in Azure that allows you to capture and
情报分析的关键工具:情报报告与情报简报
4 months 1 week ago
在国家安全领域,情报报告和情报简报扮演着至关重要的角色。它们为决策者提供了及时且深入的战略规划信息,帮助决策人理解、预测并有效应对新出现的威胁与挑战。
以色列与真主党如何为战争做准备及双方军事实力
4 months 1 week ago
CVE-2024-31188 | Open Networking Foundation libfluid 0.1.0 unpack out-of-bounds
4 months 1 week ago
A vulnerability was found in Open Networking Foundation libfluid 0.1.0 and classified as critical. Affected by this issue is the function fluid_msg::of13::MultipartReplyTableFeatures::unpack. The manipulation leads to out-of-bounds read.
This vulnerability is handled as CVE-2024-31188. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-31187 | Open Networking Foundation libfluid 0.1.0 unpack out-of-bounds
4 months 1 week ago
A vulnerability was found in Open Networking Foundation libfluid 0.1.0. It has been classified as critical. This affects the function fluid_msg::of13::MultipartReplyPortDescription::unpack. The manipulation leads to out-of-bounds read.
This vulnerability is uniquely identified as CVE-2024-31187. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com