Aggregator
Daily Dose of Dark Web Informer - October 26th, 2024
5 days 10 hours ago
This daily article is intended to make it easier for those who want to stay updated with my regular posts. Any subscriber-only content will be clearly marked at the end of the link.
Dark Web Informer
Protected: Flare-On 11 – Task 10
5 days 10 hours ago
← Magniber ransomware analysis: Tiny Tracer in actionProtected: Flare-O
风,起于青萍之末
5 days 10 hours ago
风起于青萍之末,止于草莽之间。
Popular new ‘paste and run’ technique being used by attackers | Red Canary Threat Intelligence
5 days 11 hours ago
Red Canary
Cosa si sa dell'inchiesta della procura di Milano sull'associazione a delinquere per il furto di dati - Il Post
5 days 11 hours ago
Caricamento player Sabato la procura di Milano ha reso noti alcuni dettagli di
ChatGPT中的高级API攻击以及AI供应链漏洞
5 days 11 hours ago
让我们跟随梅苑师傅的脚步,一起来研究一下ChatGPT 中的高级 API 攻击以及AI供应链漏洞!
CVE-2008-5271 | SyndeoCMS 2.6.0 index.php section cross site scripting (EDB-5779 / XFDB-42970)
5 days 11 hours ago
A vulnerability, which was classified as problematic, was found in SyndeoCMS 2.6.0. Affected is an unknown function of the file index.php. The manipulation of the argument section leads to cross site scripting.
This vulnerability is traded as CVE-2008-5271. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-5272 | SyndeoCMS 2.6.0 template path traversal (EDB-5779 / XFDB-42969)
5 days 11 hours ago
A vulnerability has been found in SyndeoCMS 2.6.0 and classified as problematic. Affected by this vulnerability is an unknown functionality. The manipulation of the argument template leads to path traversal.
This vulnerability is known as CVE-2008-5272. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-6739 | Todd Woolums ASP Download 1.03 setupdownload.asp improper authentication (EDB-5780 / XFDB-42983)
5 days 11 hours ago
A vulnerability was found in Todd Woolums ASP Download 1.03. It has been classified as critical. This affects an unknown part of the file setupdownload.asp. The manipulation leads to improper authentication.
This vulnerability is uniquely identified as CVE-2008-6739. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2007-3889 | Insanely Simple Blog up to 0.5 index.php current_subsection sql injection (EDB-5774 / XFDB-35450)
5 days 11 hours ago
A vulnerability was found in Insanely Simple Blog up to 0.5. It has been rated as critical. Affected by this issue is some unknown functionality of the file index.php. The manipulation of the argument current_subsection leads to sql injection.
This vulnerability is handled as CVE-2007-3889. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-2745 | Black Ice Annotation Software 10.95 ActiveX Control bianno.ocx memory corruption (EDB-5777 / XFDB-42982)
5 days 11 hours ago
A vulnerability classified as very critical was found in Black Ice Annotation Software 10.95. Affected by this vulnerability is an unknown functionality of the file bianno.ocx of the component ActiveX Control. The manipulation leads to memory corruption.
This vulnerability is known as CVE-2008-2745. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-5267 | Experts 1.0.0 answer.php question_id sql injection (EDB-5776 / XFDB-42954)
5 days 11 hours ago
A vulnerability was found in Experts 1.0.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file answer.php. The manipulation of the argument question_id leads to sql injection.
This vulnerability is handled as CVE-2008-5267. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-5268 | ASPPortal Free Topic_Id sql injection (EDB-5775 / XFDB-42977)
5 days 11 hours ago
A vulnerability classified as critical has been found in ASPPortal Free. This affects an unknown part. The manipulation of the argument Topic_Id leads to sql injection.
This vulnerability is uniquely identified as CVE-2008-5268. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-2669 | Y-blog yBlog 0.2.2.2 search.php sql injection (EDB-5773 / XFDB-42959)
5 days 11 hours ago
A vulnerability, which was classified as critical, was found in Y-blog yBlog 0.2.2.2. This affects an unknown part of the file search.php. The manipulation leads to sql injection.
This vulnerability is uniquely identified as CVE-2008-2669. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-2670 | Insanelysimple2 Isblog 0.5 index.php current_subsection sql injection (EDB-5774 / BID-29630)
5 days 11 hours ago
A vulnerability has been found in Insanelysimple2 Isblog 0.5 and classified as critical. This vulnerability affects unknown code of the file index.php. The manipulation of the argument current_subsection leads to sql injection.
This vulnerability was named CVE-2008-2670. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
OGN*ggers & mommy Are Allegedly Selling Firewall and Shell Access to Acer China
5 days 12 hours ago
OGN*ggers & mommy Are Allegedly Selling Firewall and Shell Access to Acer China
Dark Web Informer
CVE-2024-50614 | TinyXML2 up to 10.0.0 tinyxml2.cpp XMLUtil::GetCharacterRef assertion (Issue 996)
5 days 12 hours ago
A vulnerability was found in TinyXML2 up to 10.0.0. It has been declared as problematic. Affected by this vulnerability is the function XMLUtil::GetCharacterRef of the file tinyxml2.cpp. The manipulation leads to reachable assertion.
This vulnerability is known as CVE-2024-50614. The attack needs to be approached within the local network. There is no exploit available.
vuldb.com
CVE-2024-50613 | libsndfile up to 1.2.2 mpeg_l3_encode.c mpeg_l3_encoder_close assertion
5 days 12 hours ago
A vulnerability was found in libsndfile up to 1.2.2. It has been classified as problematic. Affected is the function mpeg_l3_encoder_close of the file mpeg_l3_encode.c. The manipulation leads to reachable assertion.
This vulnerability is traded as CVE-2024-50613. Access to the local network is required for this attack to succeed. There is no exploit available.
vuldb.com
CVE-2024-50615 | TinyXML2 up to 10.0.0 tinyxml2.cpp XMLUtil::GetCharacterRef assertion
5 days 12 hours ago
A vulnerability was found in TinyXML2 up to 10.0.0 and classified as problematic. This issue affects the function XMLUtil::GetCharacterRef of the file tinyxml2.cpp. The manipulation leads to reachable assertion.
The identification of this vulnerability is CVE-2024-50615. Access to the local network is required for this attack. There is no exploit available.
vuldb.com