Aggregator
网络安全顶会——CCS 2024 论文清单与摘要(2)
2 months 2 weeks ago
网络安全顶会——CCS 2024 论文清单与摘要(1)
2 months 2 weeks ago
The TechBeat: Why Does ETH 3.0 Need Lumoz's ZK Computing Network? (12/21/2024)
2 months 2 weeks ago
CVE-2009-3525 | Linux Foundation Xen 3.0.3/3.3.0/3.3.1 grub.conf access control (Bug 525740# / EDB-33255)
2 months 2 weeks ago
A vulnerability classified as critical was found in Linux Foundation Xen 3.0.3/3.3.0/3.3.1. This vulnerability affects unknown code of the file grub.conf. The manipulation leads to improper access controls.
This vulnerability was named CVE-2009-3525. An attack has to be approached locally. Furthermore, there is an exploit available.
vuldb.com
Best of 2023: Best online .apk virus scanners – Hackernet
2 months 2 weeks ago
They are a lot of antivirus software and online scanners available to scan antivirus but only some of them work well. Here we listed the Best online .apk virus scanners that scan and compare with the original file version and also check with malware patterns that are available at antivirus providers. These online scanners scan […]
The post Best of 2023: Best online .apk virus scanners – Hackernet appeared first on Security Boulevard.
Anonymous
Next Holiday Season, Ignore Everyone Except One Customer
2 months 2 weeks ago
Holiday marketing, as it’s preached, is a con. A ritualized scam sold to startups by ad platforms, a
CVE-2002-0741 | Psychoid psyBNC 2.3 PASS Command password denial of service (EDB-383 / XFDB-8912)
2 months 2 weeks ago
A vulnerability was found in Psychoid psyBNC 2.3. It has been classified as problematic. This affects an unknown part of the component PASS Command Handler. The manipulation of the argument password leads to denial of service.
This vulnerability is uniquely identified as CVE-2002-0741. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2011-5040 | Infoproject Biznis Heroj nalozi_naslov.php config cross site scripting (EDB-18259 / XFDB-71928)
2 months 2 weeks ago
A vulnerability was found in Infoproject Biznis Heroj and classified as problematic. This issue affects some unknown processing of the file nalozi_naslov.php. The manipulation of the argument config leads to cross site scripting.
The identification of this vulnerability is CVE-2011-5040. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2003-1386 | AXIS 2401 Video Server up to 2.33 HTTP Request /support/messages access control (EDB-22296 / Nessus ID 11298)
2 months 2 weeks ago
A vulnerability has been found in AXIS 2401 Video Server up to 2.33 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /support/messages of the component HTTP Request Handler. The manipulation leads to improper access controls.
This vulnerability is known as CVE-2003-1386. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2013-2261 | Cryptocat Extension up to 2.0.21 on Chrome img/keygen.gif information disclosure (EDB-38636 / BID-61090)
2 months 2 weeks ago
A vulnerability was found in Cryptocat Extension up to 2.0.21 on Chrome. It has been declared as problematic. This vulnerability affects unknown code of the file img/keygen.gif. The manipulation leads to information disclosure.
This vulnerability was named CVE-2013-2261. The attack can be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-11977 | kk Star Ratings Plugin up to 5.4.10 on WordPress Shortcode code injection
2 months 2 weeks ago
A vulnerability, which was classified as critical, has been found in kk Star Ratings Plugin up to 5.4.10 on WordPress. This issue affects some unknown processing of the component Shortcode Handler. The manipulation leads to code injection.
The identification of this vulnerability is CVE-2024-11977. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2014-0114 | Oracle Primavera Contract Management 13.1/14.0 Web Access commons-beanutils-1.8.0.jar this input validation (EDB-41690 / Nessus ID 73922)
2 months 2 weeks ago
A vulnerability, which was classified as critical, was found in Oracle Primavera Contract Management 13.1/14.0. This affects an unknown part in the library lib/commons-beanutils-1.8.0.jar of the component Web Access. The manipulation of the argument this leads to improper input validation.
This vulnerability is uniquely identified as CVE-2014-0114. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2001-0520 | Aladdin eSafe Gateway up to 3.0 Filter privileges management (EDB-20869 / XFDB-6580)
2 months 2 weeks ago
A vulnerability has been found in Aladdin eSafe Gateway up to 3.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the component Filter. The manipulation leads to improper privilege management.
This vulnerability is known as CVE-2001-0520. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
О3 от OpenAI: 96.7% на математическом тесте и новый подход к обработке данных
2 months 2 weeks ago
Новая модель демонстрирует впечатляющие результаты на бенчмарках.
CVE-2005-3358 | Linux Kernel up to 2.6.15 kTwinHan DST Frontend/Card memory corruption (EDB-27031 / Nessus ID 21977)
2 months 2 weeks ago
A vulnerability classified as problematic was found in Linux Kernel up to 2.6.15. Affected by this vulnerability is an unknown functionality of the component kTwinHan DST Frontend/Card. The manipulation leads to memory corruption.
This vulnerability is known as CVE-2005-3358. Access to the local network is required for this attack to succeed. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Live Webinar | Supercharge Your ServiceNow CMDB with Complete and Real-Time Data
2 months 2 weeks ago
Siemens Warns of a Critical Vulnerability in UMC
2 months 2 weeks ago
Heap Overflow Flaw Threatens Industrial Control Systems Globally
Siemens issued a security advisory for a vulnerability affecting industrial control systems in its User Management Component that could enable attackers to execute arbitrary code. The heap-based buffer overflow flaw impacts products used in manufacturing and the energy sector.
Siemens issued a security advisory for a vulnerability affecting industrial control systems in its User Management Component that could enable attackers to execute arbitrary code. The heap-based buffer overflow flaw impacts products used in manufacturing and the energy sector.
Federal Cyber Operations Would Downgrade Under Shutdown
2 months 2 weeks ago
Government Shutdown Could See Thousands of Federal Cyber Workers Furloughed
A looming shutdown could sharply reduce the Cybersecurity and Infrastructure Security Agency's operations, furloughing two-thirds of its workforce and exposing critical federal networks to heightened cyber threats, especially as malicious actors target vulnerable systems during the holiday season.
A looming shutdown could sharply reduce the Cybersecurity and Infrastructure Security Agency's operations, furloughing two-thirds of its workforce and exposing critical federal networks to heightened cyber threats, especially as malicious actors target vulnerable systems during the holiday season.
Editors' Panel: Cybersecurity 2024 - Thanks for the Memories
2 months 2 weeks ago
Looking Back on the Ransomware Attacks, Resilience Lessons and Tech Trends
In the latest weekly update, ISMG editors discussed defining cybersecurity moments of 2024, from the CrowdStrike outage and its implications for vendor resilience to ransomware's continued evolution, and the shifting dynamics in the tech industry affecting startups and M&A activity.
In the latest weekly update, ISMG editors discussed defining cybersecurity moments of 2024, from the CrowdStrike outage and its implications for vendor resilience to ransomware's continued evolution, and the shifting dynamics in the tech industry affecting startups and M&A activity.