Aggregator
eBPF开发指南从原理到应用如何学习
5 months ago
eBPF开发指南从原理到应用如何学习
5 months ago
在现代 Linux 生态系统中,eBPF(Extended Berkeley Packet Filter)已经成为一项炙手可热的技术。从网络性能优化、系统追踪到安全监控,eBPF 的应用领域不断扩大,
CVE-2024-12568 | Icegram Express Email Subscribers Plugin up to 5.7.44 on WordPress Workflow Setting cross site scripting
5 months ago
A vulnerability classified as problematic was found in Icegram Express Email Subscribers Plugin up to 5.7.44 on WordPress. Affected by this vulnerability is an unknown functionality of the component Workflow Setting Handler. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2024-12568. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-12567 | Icegram Express Email Subscribers Plugin up to 5.7.44 on WordPress Form Setting cross site scripting
5 months ago
A vulnerability classified as problematic has been found in Icegram Express Email Subscribers Plugin up to 5.7.44 on WordPress. Affected is an unknown function of the component Form Setting Handler. The manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2024-12567. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
IBM Robotic Process Automation Vulnerability Let Attackers Obtain Sensitive Data
5 months ago
A newly disclosed security vulnerability in IBM Robotic Process Automation (RPA) has raised concerns about potential data breaches. The vulnerability, tracked as CVE-2024-51456, could allow remote attackers to exploit cryptographic weaknesses and access sensitive information. IBM has released a security bulletin detailing the issue, alongside remediation measures to address the risk. IBM Robotic Process Automation Vulnerability The vulnerability […]
The post IBM Robotic Process Automation Vulnerability Let Attackers Obtain Sensitive Data appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Divya
CVE-2024-12566 | Icegram Express Email Subscribers Plugin up to 5.7.44 on WordPress Form Setting cross site scripting
5 months ago
A vulnerability was found in Icegram Express Email Subscribers Plugin up to 5.7.44 on WordPress. It has been rated as problematic. This issue affects some unknown processing of the component Form Setting Handler. The manipulation leads to cross site scripting.
The identification of this vulnerability is CVE-2024-12566. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-11636 | Icegram Express Email Subscribers Plugin up to 5.7.44 on WordPress Text Block Option cross site scripting
5 months ago
A vulnerability was found in Icegram Express Email Subscribers Plugin up to 5.7.44 on WordPress. It has been declared as problematic. This vulnerability affects unknown code of the component Text Block Option Handler. The manipulation leads to cross site scripting.
This vulnerability was named CVE-2024-11636. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-42180 | HCL DRYiCE MyXalytics 6.3 unrestricted upload (KB0118149)
5 months ago
A vulnerability was found in HCL DRYiCE MyXalytics 6.3. It has been classified as problematic. This affects an unknown part. The manipulation leads to unrestricted upload.
This vulnerability is uniquely identified as CVE-2024-42180. It is possible to launch the attack on the physical device. There is no exploit available.
vuldb.com
CVE-2024-42181 | HCL DRYiCE MyXalytics 6.3 Communication Channel cleartext transmission (KB0118149)
5 months ago
A vulnerability was found in HCL DRYiCE MyXalytics 6.3 and classified as problematic. Affected by this issue is some unknown functionality of the component Communication Channel Handler. The manipulation leads to cleartext transmission of sensitive information.
This vulnerability is handled as CVE-2024-42181. It is possible to launch the attack on the physical device. There is no exploit available.
vuldb.com
CVE-2025-0412 | Luxion KeyShot Viewer 12.1.1.11 KSP File Parser memory corruption (ZDI-23-1716)
5 months ago
A vulnerability has been found in Luxion KeyShot Viewer 12.1.1.11 and classified as critical. Affected by this vulnerability is an unknown functionality of the component KSP File Parser. The manipulation leads to memory corruption.
This vulnerability is known as CVE-2025-0412. The attack can be launched remotely. There is no exploit available.
vuldb.com
The TechBeat: AI Is Making it Easier to Engineer Better Products—Here's How (1/13/2025)
5 months ago
CVE-2024-12274 | Appointment Booking Calendar Plugin and Scheduling Plugin Export Setting information disclosure
5 months ago
A vulnerability, which was classified as problematic, was found in Appointment Booking Calendar Plugin and Scheduling Plugin up to 1.1.22 on WordPress. Affected is an unknown function of the component Export Setting Handler. The manipulation leads to information disclosure.
This vulnerability is traded as CVE-2024-12274. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-42179 | HCL DRYiCE MyXalytics 6.3 HTTP Response Header information disclosure (KB0118149)
5 months ago
A vulnerability, which was classified as problematic, has been found in HCL DRYiCE MyXalytics 6.3. This issue affects some unknown processing of the component HTTP Response Header Handler. The manipulation leads to information disclosure.
The identification of this vulnerability is CVE-2024-42179. The attack may be initiated remotely. There is no exploit available.
vuldb.com
Looking for high-signal cybersecurity content? Check out my “Cyber” list. I try to keep it tight - no noise, just valuable posts. Bonus: pin it to y...
5 months ago
2024年度智能网联汽车重点安全漏洞盘点
5 months ago
01Telsa TMPS(胎压监测系统)远程命令执行漏洞事件概述在2024年Pwn2Own黑客大赛上,Synacktiv的网络安全研究人员David Berard和Thomas Imbert发现了特斯
2024年度智能网联汽车重点安全漏洞盘点
5 months ago
山石网科安全技术研究院2024年度全球重点安全漏洞与事件盘点第四篇
Техас против IT-гигантов: 15 платформ ответят за безопасность детей
5 months ago
Генпрокурор начал масштабное расследование работы ведущих сервисов.
总要有个冬天留给北海道:12 天走过京都、东京与札幌
5 months ago
总要有个冬天留给北海道:12 天走过京都、东京与札幌 写在前面对我来说,我的旅行是从做攻略开始的,所以在确定了目的地日本之后,我的漫步就开始了。我们初步计划 12 天,由于这次我们一行四人均是初次抵
Impact of Packet Loss on OpenVPN Detection Accuracy and Censoring
5 months ago
Authors:(1) Diwen Xue, University of Michigan;(2) Reethika Ramesh, University of Michigan;(3) Ar