Aggregator
Слепая зона ChatGPT: чат-бот ведется на уловки, которые давно не работают с Google
8 months 1 week ago
Новое расследование раскрывает главный недостаток ИИ-поисковиков.
Reverse Engineering The Stream Deck Plus
8 months 1 week ago
Navigating the Pixel Minefield: Strategies for Risk Mitigation
8 months 1 week ago
In the previous posts, we explored the world of web pixels, uncovering potential privacy risks and highlighting the importance of a thorough audit. Now, let’s shift our focus to actionable strategies for mitigating these risks and ensuring your web pixel usage is both effective and ethical. 1. Embrace Transparency and Control: Users are increasingly concerned […]
The post Navigating the Pixel Minefield: Strategies for Risk Mitigation appeared first on Feroot Security.
The post Navigating the Pixel Minefield: Strategies for Risk Mitigation appeared first on Security Boulevard.
mykola myroniuk
Navigating the Pixel Minefield: Strategies for Risk Mitigation
8 months 1 week ago
In the previous posts, we exp
Море в 140 триллионов раз больше всех земных океанов бушует у далекого квазара
8 months 1 week ago
Откуда в молодой Вселенной столько воды?
CVE-2024-56507 | Kovah LinkAce up to 1.15.5 Edit Link Module URL cross site scripting (GHSA-cjcg-wj4p-pgc5)
8 months 1 week ago
A vulnerability has been found in Kovah LinkAce up to 1.15.5 and classified as problematic. This vulnerability affects unknown code of the component Edit Link Module. The manipulation of the argument URL leads to cross site scripting.
This vulnerability was named CVE-2024-56507. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-56508 | Kovah LinkAce up to 1.15.5 File Upload cross site scripting (GHSA-2wvv-4576-8862)
8 months 1 week ago
A vulnerability, which was classified as problematic, was found in Kovah LinkAce up to 1.15.5. This affects an unknown part of the component File Upload. The manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2024-56508. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-56509 | dgtlmoon changedetection.io up to 0.48.04 path traversal (GHSA-j5vv-6wjg-cfr8)
8 months 1 week ago
A vulnerability, which was classified as critical, has been found in dgtlmoon changedetection.io up to 0.48.04. Affected by this issue is some unknown functionality. The manipulation leads to path traversal.
This vulnerability is handled as CVE-2024-56509. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-12856 | Four-Faith F3x24/F3x36 2.0 apply.cgi os command injection
8 months 1 week ago
A vulnerability classified as critical was found in Four-Faith F3x24 and F3x36 2.0. Affected by this vulnerability is an unknown functionality of the file apply.cgi. The manipulation leads to os command injection.
This vulnerability is known as CVE-2024-12856. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-56627 | Linux Kernel up to 6.1.119/6.6.65/6.12.4 Setting ksmbd.conf ksmbd_vfs_stream_read streams_xattr out-of-bounds
8 months 1 week ago
A vulnerability classified as problematic has been found in Linux Kernel up to 6.1.119/6.6.65/6.12.4. Affected is the function ksmbd_vfs_stream_read of the file ksmbd.conf of the component Setting Handler. The manipulation of the argument streams_xattr leads to out-of-bounds read.
This vulnerability is traded as CVE-2024-56627. The attack can only be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Прямота против природы: битва, где нет победителей
8 months 1 week ago
От галактик до атомов — все отклоняется от идеала.
CVE-2024-56622 | Linux Kernel up to 5.15.173/6.1.119/6.6.65/6.12.4 sysfs divide by zero
8 months 1 week ago
A vulnerability was found in Linux Kernel up to 5.15.173/6.1.119/6.6.65/6.12.4. It has been rated as critical. This issue affects some unknown processing of the component sysfs. The manipulation leads to divide by zero.
The identification of this vulnerability is CVE-2024-56622. The attack can only be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-56619 | Linux Kernel up to 6.12.4 nilfs_find_entry use after free
8 months 1 week ago
A vulnerability was found in Linux Kernel up to 6.12.4. It has been declared as critical. This vulnerability affects the function nilfs_find_entry. The manipulation leads to use after free.
This vulnerability was named CVE-2024-56619. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-56609 | Linux Kernel up to 6.12.4 net/mac80211/main.c ieee80211_purge_tx_queue Privilege Escalation
8 months 1 week ago
A vulnerability was found in Linux Kernel up to 6.12.4. It has been classified as critical. This affects the function ieee80211_purge_tx_queue of the file net/mac80211/main.c. The manipulation leads to Privilege Escalation.
This vulnerability is uniquely identified as CVE-2024-56609. Access to the local network is required for this attack to succeed. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-56629 | Linux Kernel up to 6.12.4 wacom null pointer dereference
8 months 1 week ago
A vulnerability was found in Linux Kernel up to 6.12.4 and classified as critical. Affected by this issue is some unknown functionality of the component wacom. The manipulation leads to null pointer dereference.
This vulnerability is handled as CVE-2024-56629. Access to the local network is required for this attack. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-56626 | Linux Kernel up to 6.1.119/6.6.65/6.12.4 ksmbd.conf ksmbd_vfs_stream_write out-of-bounds write
8 months 1 week ago
A vulnerability has been found in Linux Kernel up to 6.1.119/6.6.65/6.12.4 and classified as critical. Affected by this vulnerability is the function ksmbd_vfs_stream_write of the file ksmbd.conf. The manipulation leads to out-of-bounds write.
This vulnerability is known as CVE-2024-56626. The attack needs to be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-56624 | Linux Kernel up to 6.12.4 lib/refcount.c iommufd_fault_alloc reference count
8 months 1 week ago
A vulnerability, which was classified as problematic, was found in Linux Kernel up to 6.12.4. Affected is the function iommufd_fault_alloc in the library lib/refcount.c. The manipulation leads to improper update of reference count.
This vulnerability is traded as CVE-2024-56624. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-56621 | Linux Kernel up to 6.12.4 scsi ufshcd_remove null pointer dereference
8 months 1 week ago
A vulnerability, which was classified as critical, has been found in Linux Kernel up to 6.12.4. This issue affects the function ufshcd_remove of the component scsi. The manipulation leads to null pointer dereference.
The identification of this vulnerability is CVE-2024-56621. The attack can only be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-56620 | Linux Kernel up to 6.12.4 qcom null pointer dereference
8 months 1 week ago
A vulnerability classified as critical was found in Linux Kernel up to 6.12.4. This vulnerability affects unknown code of the component qcom. The manipulation leads to null pointer dereference.
This vulnerability was named CVE-2024-56620. The attack can only be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com