Aggregator
CVE-2002-0300 | gnujsp 1.0.0/1.0.1 Servlet privileges management (EDB-21295 / Nessus ID 14951)
1 year 5 months ago
A vulnerability was found in gnujsp 1.0.0/1.0.1. It has been classified as critical. This affects an unknown part of the component Servlet Handler. The manipulation leads to improper privilege management.
This vulnerability is uniquely identified as CVE-2002-0300. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2014-10029 | FluxBB up to 1.5.0 profile.php req_new_email sql injection (ID 129225 / EDB-45595)
1 year 5 months ago
A vulnerability was found in FluxBB up to 1.5.0. It has been classified as critical. This affects an unknown part of the file profile.php. The manipulation of the argument req_new_email leads to sql injection.
This vulnerability is uniquely identified as CVE-2014-10029. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
主板制造商开始向Z890推送0x114微代码更新提升Intel Core Ultra 200S性能
1 year 5 months ago
CVE-2011-5219 | Mpdf1 mPDF 5.2/5.3 filename path traversal (EDB-18248 / XFDB-71862)
1 year 5 months ago
A vulnerability classified as problematic was found in Mpdf1 mPDF 5.2/5.3. Affected by this vulnerability is an unknown functionality. The manipulation of the argument filename leads to path traversal.
This vulnerability is known as CVE-2011-5219. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2002-1220 | FreeBSD 4.4/4.5/4.6/4.7 Subdomain Request denial of service (VU#229595 / EDB-22011)
1 year 5 months ago
A vulnerability classified as problematic was found in FreeBSD 4.4/4.5/4.6/4.7. This vulnerability affects unknown code of the component Subdomain Request Handler. The manipulation leads to denial of service.
This vulnerability was named CVE-2002-1220. The attack can be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2002-1221 | ISC BIND up to 8.3.3 SIG RR Element null pointer dereference (VU#581682 / Nessus ID 10886)
1 year 5 months ago
A vulnerability, which was classified as problematic, has been found in ISC BIND up to 8.3.3. This issue affects some unknown processing of the component SIG RR Element Handler. The manipulation leads to null pointer dereference.
The identification of this vulnerability is CVE-2002-1221. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2001-0551 | HP HP-UX up to 11.11 CDE Print Viewer dtprintinfo memory corruption (VU#860296 / Nessus ID 22382)
1 year 5 months ago
A vulnerability, which was classified as critical, has been found in HP HP-UX up to 11.11. Affected by this issue is some unknown functionality of the file dtprintinfo of the component CDE Print Viewer. The manipulation leads to memory corruption.
This vulnerability is handled as CVE-2001-0551. Attacking locally is a requirement. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2001-1380 | OpenBSD OpenSSH 2.9.9 Key /.ssh/authorized_keys2 from privileges management (VU#905795 / Nessus ID 13894)
1 year 5 months ago
A vulnerability classified as critical has been found in OpenBSD OpenSSH 2.9.9. This affects an unknown part of the file /.ssh/authorized_keys2 of the component Key Handler. The manipulation of the argument from leads to improper privilege management.
This vulnerability is uniquely identified as CVE-2001-1380. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2001-0872 | OpenBSD OpenSSH 3.0.1 UseLogin Option LD_LIBRARY_PATH privileges management (VU#157447 / Nessus ID 14928)
1 year 5 months ago
A vulnerability has been found in OpenBSD OpenSSH 3.0.1 and classified as critical. This vulnerability affects unknown code of the component UseLogin Option. The manipulation of the argument LD_LIBRARY_PATH as part of Environment Variable leads to improper privilege management.
This vulnerability was named CVE-2001-0872. The attack needs to be approached locally. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2002-0059 | GNU zlib up to 1.1.3 Decompression inflateEnd memory corruption (VU#368819 / Nessus ID 13930)
1 year 5 months ago
A vulnerability was found in GNU zlib up to 1.1.3. It has been rated as critical. Affected by this issue is the function inflateEnd of the component Decompression Handler. The manipulation leads to memory corruption.
This vulnerability is handled as CVE-2002-0059. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2002-0566 | Oracle9i 9.0/9.0.1 PL/SQL Module Authorization denial of service (VU#805915 / Nessus ID 57619)
1 year 5 months ago
A vulnerability was found in Oracle9i 9.0/9.0.1. It has been rated as problematic. Affected by this issue is some unknown functionality of the component PL/SQL Module. The manipulation of the argument Authorization leads to denial of service.
This vulnerability is handled as CVE-2002-0566. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2002-1219 | ISC BIND up to 8.3.3 SIG Record memory corruption (VU#852283 / Nessus ID 13765)
1 year 5 months ago
A vulnerability classified as critical has been found in ISC BIND. This affects an unknown part of the component SIG Record Handler. The manipulation leads to memory corruption.
This vulnerability is uniquely identified as CVE-2002-1219. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2001-0550 | University of Washington wu-ftpd 2.5.0/2.6.0/2.6.1 glob CWD memory corruption (VU#886083 / EDB-348)
1 year 5 months ago
A vulnerability was found in University of Washington wu-ftpd 2.5.0/2.6.0/2.6.1. It has been rated as critical. This issue affects the function glob. The manipulation of the argument CWD with the input ~{ leads to memory corruption.
The identification of this vulnerability is CVE-2001-0550. The attack may be initiated remotely. Furthermore, there is an exploit available. Due to its background and reception, this vulnerability has an historic impact.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2001-0522 | GNU Privacy Guard up to 1.05 tty_printf format string (VU#403051 / EDB-20889)
1 year 5 months ago
A vulnerability was found in GNU Privacy Guard up to 1.05. It has been classified as critical. This affects the function tty_printf. The manipulation leads to format string.
This vulnerability is uniquely identified as CVE-2001-0522. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
闲鱼平台频现信息泄露事件,用户隐私安全堪忧;传谷歌正使用Anthropic Claude改进其模型,引发合规性质疑 | 牛览
1 year 5 months ago
新闻速览•国家数据局官网上线试运行•联大通过《联合国打击网络犯罪公约》•欧洲航天局官方商店被黑暂时关闭,信用卡信息被盗•美国航空公司全国性航班暂时停飞,引发网络攻击猜测•闲鱼平台频现信息泄露事件,用户
《数据安全态势管理技术应用指南(2024版)》报告发布(附下载二维码)
1 year 5 months ago
当前,数字经济蓬勃发展,数据也随之成为企业最重要的战略资产之一。然而,数据泄露、滥用等安全事件频发,给企业带来了巨大的经济损失和声誉损害。传统的数据安全防护手段往往侧重于单点防御,难以应对日益复杂和多
CVE-2024-12934 | code-projects Simple Admin Panel 1.0 updateItemController.php p_desk sql injection
1 year 5 months ago
A vulnerability classified as critical has been found in code-projects Simple Admin Panel 1.0. This affects an unknown part of the file updateItemController.php. The manipulation of the argument p_desk leads to sql injection.
This vulnerability is uniquely identified as CVE-2024-12934. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2009-4827 | Scriptez Mail Manager Pro admin.php cross-site request forgery (EDB-10433 / SA37750)
1 year 5 months ago
A vulnerability was found in Scriptez Mail Manager Pro. It has been classified as problematic. Affected is an unknown function of the file admin.php. The manipulation leads to cross-site request forgery.
This vulnerability is traded as CVE-2009-4827. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
Service disruptions continue to blindside businesses
1 year 5 months ago
Service disruptions remain a critical concern for IT and business executives, with 88% of respondents saying they believe another major incident will occur in the next 12 months, according to PagerDuty. PagerDuty surveyed 1,000 IT and business executives who were director level and above, from the US, UK, Australia and Japan. Organizations must focus on preventing service disruptions 86% of executives surveyed now realize that they have been prioritizing security at the expense of readiness … More →
The post Service disruptions continue to blindside businesses appeared first on Help Net Security.
Help Net Security