Aggregator
CVE-2014-5624 | Fungames-forfree Sniper Shooter Free - Fun Game 2.8 X.509 Certificate cryptographic issues (VU#582497)
2 months 3 weeks ago
A vulnerability was found in Fungames-forfree Sniper Shooter Free - Fun Game 2.8. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
This vulnerability is known as CVE-2014-5624. The attack needs to be done within the local network. There is no exploit available.
vuldb.com
Telegram 首席执行官 Pavel Durov在法国因涉嫌内容监管不力被捕
2 months 3 weeks ago
安全客
美国 CISA 将 Versa Director 漏洞添加到其已知利用漏洞目录中
2 months 3 weeks ago
安全客
新型 Linux 恶意软件 ”sedexp” 利用 udev 规则隐藏信用卡盗刷器
2 months 3 weeks ago
安全客
CVE-2024-6879 | Quiz and Survey Master Plugin up to 9.1.0 on WordPress cross site scripting
2 months 3 weeks ago
A vulnerability has been found in Quiz and Survey Master Plugin up to 9.1.0 on WordPress and classified as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2024-6879. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
黑客可以接管 Ecovacs 家用机器人来监视它们的主人
2 months 3 weeks ago
安全客
CVE-2024-7313 | Shield Security Plugin up to 20.0.5 on WordPress cross-site request forgery
2 months 3 weeks ago
A vulnerability, which was classified as problematic, was found in Shield Security Plugin up to 20.0.5 on WordPress. Affected is an unknown function. The manipulation leads to cross-site request forgery.
This vulnerability is traded as CVE-2024-7313. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
网络犯罪分子部署新的恶意软件,通过 Android 的近场通信 (NFC) 窃取数据
2 months 3 weeks ago
安全客
CVE-2024-8073 | Hillstone Networks Web Application Firewall up to 5.5R6-2.8.13 command injection
2 months 3 weeks ago
A vulnerability, which was classified as very critical, has been found in Hillstone Networks Web Application Firewall up to 5.5R6-2.8.13. This issue affects some unknown processing. The manipulation leads to command injection.
The identification of this vulnerability is CVE-2024-8073. The attack may be initiated remotely. There is no exploit available.
vuldb.com
网络钓鱼攻击通过渐进式网页应用(PWA)针对移动用户
2 months 3 weeks ago
安全客
CVE-2024-45258 | req Package up to 3.43.3 on Go URL cleanHost missing initialization
2 months 3 weeks ago
A vulnerability classified as critical was found in req Package up to 3.43.3 on Go. This vulnerability affects the function cleanHost of the component URL Handler. The manipulation leads to missing initialization of a variable.
This vulnerability was named CVE-2024-45258. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-8158 | 9front lib9p authorization
2 months 3 weeks ago
A vulnerability classified as critical has been found in 9front. This affects an unknown part of the component lib9p. The manipulation leads to authorization bypass.
This vulnerability is uniquely identified as CVE-2024-8158. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
新型投递器PEAKLIGHT Downloader 部署在针对 Windows 的恶意电影下载攻击中
2 months 3 weeks ago
安全客
新恶意软件 Cthulhu Stealer 以 Apple macOS 用户为目标
2 months 3 weeks ago
安全客
谷歌 Chrome 浏览器更新修复了被恶意利用的漏洞(CVE-2024-7971)
2 months 3 weeks ago
安全客
CVE-2024-41996 | Diffie-Hellman Key Agreement Protocol Order D(HE)at resource consumption
2 months 3 weeks ago
A vulnerability was found in Diffie-Hellman Key Agreement Protocol. It has been rated as problematic. Affected by this issue is some unknown functionality of the component Order Handler. The manipulation leads to resource consumption.
This vulnerability is handled as CVE-2024-41996. The attack may be launched remotely. There is no exploit available. This vulnerability has a historic impact due to its background and reception.
vuldb.com
职场黑神话:TA竟让天命打工人秒变苦命猴子
2 months 3 weeks ago
安全客
网络身份证是强制,会影响正常上网?公安部详细回应
2 months 3 weeks ago
网号是由字母和数字组成、不含明文身份信息的网络身份符号;网证是承载网号及自然人非明文身份信息的网络身份认证凭证。
CVE-2014-5623 | penguinchefshop 1.0.1 X.509 Certificate cryptographic issues (VU#582497)
2 months 3 weeks ago
A vulnerability was found in penguinchefshop 1.0.1. It has been classified as critical. Affected is an unknown function of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
This vulnerability is traded as CVE-2014-5623. The attack can only be initiated within the local network. There is no exploit available.
vuldb.com