Aggregator
CVE-2024-12931 | code-projects Simple Admin Panel 1.0 /addCatController.php size sql injection
1 year 5 months ago
A vulnerability was found in code-projects Simple Admin Panel 1.0. It has been classified as critical. Affected is an unknown function of the file /addCatController.php. The manipulation of the argument size leads to sql injection.
This vulnerability is traded as CVE-2024-12931. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
Windows Defender成黑客武器,可禁用EDR
1 year 5 months ago
攻击方式多种多样,既可以针对单个设备,也可以攻击整个域。
新型技术能武器化Windows Defender来实施攻击
1 year 5 months ago
主站 分类 漏洞 工具 极客
CVE-2010-0713 | Zenoss 2.3.0/2.3.3/2.4.0/2.4.2/2.4.5 cross-site request forgery (EDB-33536 / BID-37843)
1 year 5 months ago
A vulnerability was found in Zenoss 2.3.0/2.3.3/2.4.0/2.4.2/2.4.5. It has been rated as problematic. This issue affects some unknown processing. The manipulation leads to cross-site request forgery.
The identification of this vulnerability is CVE-2010-0713. The attack may be initiated remotely. Furthermore, there is an exploit available.
It is recommended to add further authentication.
vuldb.com
Coze.com: 革新AI应用开发的无代码平台
1 year 5 months ago
Coze 是什么?一个让你轻松玩转 AI 的神奇平台!Coze 是一个新兴的 AI 应用和聊天机器人开发平台,正在为开发者和企业带来前所未有的便利。无论是经验丰富的程序员还是对编程知识不太了解的普通用
在合法化比特币支付后俄罗斯财长透露已经通过开采的比特币完成外贸交易
1 year 5 months ago
CVE-2013-3251 | WordPress qTranslate plugin up to 2.5.34 cross-site request forgery (ID 12920 / XFDB-84700)
1 year 5 months ago
A vulnerability has been found in WordPress qTranslate plugin up to 2.5.34 and classified as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross-site request forgery.
This vulnerability is known as CVE-2013-3251. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2013-3281 | EMC Documentum Digital Asset Manager up to 6.4 cross site scripting (VU#466876 / ID 12781)
1 year 5 months ago
A vulnerability was found in EMC Documentum Digital Asset Manager up to 6.4. It has been classified as problematic. This affects an unknown part. The manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2013-3281. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2013-3286 | EMC Documentum eRoom up to 7.4.3 cross site scripting (ID 12823 / XFDB-88529)
1 year 5 months ago
A vulnerability was found in EMC Documentum eRoom up to 7.4.3. It has been declared as problematic. This vulnerability affects unknown code. The manipulation leads to cross site scripting.
This vulnerability was named CVE-2013-3286. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2013-3252 | WordPress WP-PostViews plugin up to 1.62 cross-site request forgery (ID 12921 / XFDB-84098)
1 year 5 months ago
A vulnerability was found in WordPress WP-PostViews plugin up to 1.62 and classified as problematic. Affected by this issue is some unknown functionality. The manipulation leads to cross-site request forgery.
This vulnerability is handled as CVE-2013-3252. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2013-3257 | Zemanta Related Posts up to 2.7.0 cross-site request forgery (ID 12979 / XFDB-84245)
1 year 5 months ago
A vulnerability classified as critical was found in Zemanta Related Posts up to 2.7.0. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross-site request forgery.
This vulnerability is known as CVE-2013-3257. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2013-3258 | Bufferapp Digg Digg up to 5.3.2 cross-site request forgery (ID 12983 / XFDB-84418)
1 year 5 months ago
A vulnerability, which was classified as critical, has been found in Bufferapp Digg Digg up to 5.3.2. Affected by this issue is some unknown functionality. The manipulation leads to cross-site request forgery.
This vulnerability is handled as CVE-2013-3258. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2013-3299 | RealNetworks RealPlayer up to 16.0.2.31 HTML input validation (EDB-38623 / ID 121323)
1 year 5 months ago
A vulnerability has been found in RealNetworks RealPlayer up to 16.0.2.31 and classified as critical. Affected by this vulnerability is an unknown functionality of the component HTML Handler. The manipulation leads to improper input validation.
This vulnerability is known as CVE-2013-3299. The attack can be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2013-3343 | Adobe Flash Player up to 11.7.700.203 memory corruption (APSB13-16 / Nessus ID 75054)
1 year 5 months ago
A vulnerability was found in Adobe Flash Player up to 11.7.700.203. It has been declared as critical. This vulnerability affects unknown code. The manipulation leads to memory corruption.
This vulnerability was named CVE-2013-3343. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2013-3348 | Adobe Shockwave Player 12.0.2.122 memory corruption (APSB13-18 / Nessus ID 67233)
1 year 5 months ago
A vulnerability was found in Adobe Shockwave Player 12.0.2.122 and classified as very critical. Affected by this issue is some unknown functionality. The manipulation leads to memory corruption.
This vulnerability is handled as CVE-2013-3348. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2011-2530 | Rockwellautomation RSLinx Classic up to 2.54 Installation RSHWare.exe memory corruption (VU#127584 / SBV-32853)
1 year 5 months ago
A vulnerability was found in Rockwellautomation RSLinx Classic up to 2.54. It has been rated as very critical. Affected by this issue is some unknown functionality in the library RSEds.dll of the file RSHWare.exe of the component Installation. The manipulation leads to memory corruption.
This vulnerability is handled as CVE-2011-2530. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2017-0014 | Microsoft Windows up to Server 2012 R2 Color Management access control (MS17-013 / Nessus ID 97794)
1 year 5 months ago
A vulnerability was found in Microsoft Windows up to Server 2012 R2 and classified as critical. This issue affects some unknown processing of the component Color Management. The manipulation leads to improper access controls.
The identification of this vulnerability is CVE-2017-0014. The attack may be initiated remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2017-1000385 | Erlang otp TLS Server 1.5 RSA PKCS Padding cryptographic issues (RHSA-2018:0242 / VU#144389)
1 year 5 months ago
A vulnerability classified as critical was found in Erlang otp TLS Server 1.5. Affected by this vulnerability is an unknown functionality of the component RSA PKCS Padding. The manipulation leads to cryptographic issues.
This vulnerability is known as CVE-2017-1000385. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2017-17428 | Cavium Nitrox SSL/Nitrox V SSL/TurboSSL SDK Bleichenbacher information disclosure (cisco-sa-20171212-bleichenbach / VU#144389)
1 year 5 months ago
A vulnerability was found in Cavium Nitrox SSL, Nitrox V SSL and TurboSSL and classified as critical. This issue affects some unknown processing of the component SDK. The manipulation leads to information disclosure (Bleichenbacher).
The identification of this vulnerability is CVE-2017-17428. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com