Aggregator
Re @gf_256 I still don't know how some people can upload more than 12 hours. Hugo One https://www.youtube.com/c/HugoOne/videos always uploads massive ...
1 year 6 months ago
Networking
1 year 6 months ago
CVE-2014-0294 | Microsoft Forefront Security for Exchange Server 2010 Mail code injection (MS14-008 / Nessus ID 72431)
1 year 6 months ago
A vulnerability classified as critical has been found in Microsoft Forefront Security for Exchange Server 2010. This affects an unknown part of the component Mail Handler. The manipulation leads to code injection.
This vulnerability is uniquely identified as CVE-2014-0294. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2014-0301 | Microsoft Windows up to XP DirectShow JPEG Image resource management (MS14-013 / Nessus ID 72931)
1 year 6 months ago
A vulnerability was found in Microsoft Windows up to XP. It has been declared as critical. This vulnerability affects unknown code of the component DirectShow. The manipulation as part of JPEG Image leads to improper resource management.
This vulnerability was named CVE-2014-0301. The attack can be initiated remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2014-0296 | Microsoft Windows 7/8/8.1/Server 2012 Remote Desktop Protocol cryptographic issues (MS14-030 / Nessus ID 74422)
1 year 6 months ago
A vulnerability has been found in Microsoft Windows 7/8/8.1/Server 2012 and classified as problematic. Affected by this vulnerability is an unknown functionality of the component Remote Desktop Protocol. The manipulation leads to cryptographic issues.
This vulnerability is known as CVE-2014-0296. The attack can be launched remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2014-0315 | Microsoft Windows up to XP SP3 Batch File CreateProcess untrusted search path (MS14-019 / Nessus ID 73416)
1 year 6 months ago
A vulnerability classified as critical was found in Microsoft Windows. Affected by this vulnerability is the function CreateProcess of the component Batch File Handler. The manipulation leads to untrusted search path.
This vulnerability is known as CVE-2014-0315. The attack can be launched remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2014-0316 | Microsoft Windows up to Server 2012 R2 Remote Procedure Call resource management (MS14-047 / Nessus ID 77165)
1 year 6 months ago
A vulnerability was found in Microsoft Windows up to Server 2012 R2. It has been classified as critical. Affected is an unknown function of the component Remote Procedure Call. The manipulation leads to improper resource management.
This vulnerability is traded as CVE-2014-0316. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2014-0317 | Microsoft Windows Server 2003/Server 2008/Server 2012/Vista/XP Security Account Manager access control (MS14-016 / Nessus ID 72935)
1 year 6 months ago
A vulnerability, which was classified as problematic, has been found in Microsoft Windows Server 2003/Server 2008/Server 2012/Vista/XP. Affected by this issue is some unknown functionality of the component Security Account Manager. The manipulation leads to improper access controls.
This vulnerability is handled as CVE-2014-0317. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2001-0051 | IBM DB2 Universal Database 6.1 Default Account improper authentication (EDB-20472 / Nessus ID 33852)
1 year 6 months ago
A vulnerability was found in IBM DB2 Universal Database 6.1. It has been rated as critical. Affected by this issue is some unknown functionality of the component Default Account. The manipulation leads to improper authentication.
This vulnerability is handled as CVE-2001-0051. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2004-0353 | GNU Anubis 3.6.0/3.6.1/3.6.2/3.9.92/3.9.93 auth.c auth_ident memory corruption (EDB-23772 / Nessus ID 37292)
1 year 6 months ago
A vulnerability, which was classified as very critical, was found in GNU Anubis 3.6.0/3.6.1/3.6.2/3.9.92/3.9.93. This affects the function auth_ident of the file auth.c. The manipulation leads to memory corruption.
This vulnerability is uniquely identified as CVE-2004-0353. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Daily Dose of Dark Web Informer - December 21st, 2024
1 year 6 months ago
This daily article is intended to make it easier for those who want to stay updated with my regular Dark Web Informer and X/Twitter posts.
Dark Web Informer - Cyber Threat Intelligence
CVE-2007-1388 | Linux Kernel up to 2.6.19 do_ipv6_setsockopt resource management (EDB-29781 / Nessus ID 25126)
1 year 6 months ago
A vulnerability was found in Linux Kernel up to 2.6.19. It has been rated as problematic. Affected by this issue is the function do_ipv6_setsockopt. The manipulation leads to improper resource management.
This vulnerability is handled as CVE-2007-1388. The attack needs to be approached locally. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-37109 | patrickfuller camp up to bbd53a256ed70e79bd8758080936afbf6d738767 password.txt improper authentication (EDB-51041)
1 year 6 months ago
A vulnerability was found in patrickfuller camp up to bbd53a256ed70e79bd8758080936afbf6d738767. It has been classified as problematic. Affected is an unknown function of the file password.txt. The manipulation leads to improper authentication.
This vulnerability is traded as CVE-2022-37109. The attack needs to be approached within the local network. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2015-8724 | Wireshark up to 1.12.8/2.0.0 802.11 Dissector epan/crypt/airpdcap.c AirPDcapDecryptWPABroadcastKey input validation (EDB-38995 / Nessus ID 87824)
1 year 6 months ago
A vulnerability has been found in Wireshark up to 1.12.8/2.0.0 and classified as problematic. This vulnerability affects the function AirPDcapDecryptWPABroadcastKey of the file epan/crypt/airpdcap.c of the component 802.11 Dissector. The manipulation leads to improper input validation.
This vulnerability was named CVE-2015-8724. Attacking locally is a requirement. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2012-5959 | portable SDK for UPnP up to 1.6.8 unique_service_name memory corruption (DSA-2614 / VU#922681)
1 year 6 months ago
A vulnerability was found in portable SDK for UPnP up to 1.6.8. It has been classified as very critical. Affected is the function unique_service_name. The manipulation leads to memory corruption.
This vulnerability is traded as CVE-2012-5959. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2015-6358 | Cisco Embedded Device X.509 Certificate certificate validation (VU#566724 / Nessus ID 121007)
1 year 6 months ago
A vulnerability was found in Cisco Embedded Device. It has been classified as critical. Affected is an unknown function of the component X.509 Certificate. The manipulation leads to improper certificate validation.
This vulnerability is traded as CVE-2015-6358. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2012-5958 | portable SDK for UPnP up to 1.6.8 unique_service_name memory corruption (dsa-2614 / VU#922681)
1 year 6 months ago
A vulnerability was found in portable SDK for UPnP up to 1.6.8 and classified as very critical. This issue affects the function unique_service_name. The manipulation leads to memory corruption.
The identification of this vulnerability is CVE-2012-5958. The attack may be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2007-0356 | Common Controls Replacement Project Foldertreeview Activex Control ccrpftv6.ocx) ActiveX Control ccrpftv6.ocx denial of service (EDB-3142 / XFDB-31549)
1 year 6 months ago
A vulnerability has been found in Common Controls Replacement Project Foldertreeview Activex Control ccrpftv6.ocx) and classified as problematic. Affected by this vulnerability is an unknown functionality of the file ccrpftv6.ocx of the component ActiveX Control. The manipulation leads to denial of service.
This vulnerability is known as CVE-2007-0356. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2010-4236 | IBM OmniFind 6.1/8.0/8.4/8.5/9.0 ES_LIBRARY_PATH untrusted search path (EDB-15475 / BID-44740)
1 year 6 months ago
A vulnerability classified as critical has been found in IBM OmniFind 6.1/8.0/8.4/8.5/9.0. Affected is an unknown function in the library ES_LIBRARY_PATH. The manipulation leads to untrusted search path.
This vulnerability is traded as CVE-2010-4236. The attack needs to be approached locally. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com