Aggregator
【安全圈】乌官员:谷歌地图泄露了乌军部署
2 months 2 weeks ago
CVE-2008-4452 | Cambridge Computer vxFtpSrv 2.0.3 memory corruption (EDB-6651 / XFDB-45620)
2 months 2 weeks ago
A vulnerability, which was classified as critical, has been found in Cambridge Computer vxFtpSrv 2.0.3. Affected by this issue is some unknown functionality. The manipulation leads to memory corruption.
This vulnerability is handled as CVE-2008-4452. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-6102 | Ezonescripts Link Trader Script ratelink.php lnkid sql injection (EDB-6650 / XFDB-45605)
2 months 2 weeks ago
A vulnerability, which was classified as critical, was found in Ezonescripts Link Trader Script. This affects an unknown part of the file ratelink.php. The manipulation of the argument lnkid leads to sql injection.
This vulnerability is uniquely identified as CVE-2008-6102. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-6132 | Brickhost phpScheduleIt up to 1.2.10 reserve.php eval start_date code injection (EDB-6646 / Nessus ID 34338)
2 months 2 weeks ago
A vulnerability has been found in Brickhost phpScheduleIt up to 1.2.10 and classified as critical. Affected by this vulnerability is the function eval of the file reserve.php. The manipulation of the argument start_date leads to code injection.
This vulnerability is known as CVE-2008-6132. The attack can be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2008-4451 | ESET System Analyzer Tool 1.1.1.0 access control (EDB-6647 / XFDB-45619)
2 months 2 weeks ago
A vulnerability classified as critical was found in ESET System Analyzer Tool 1.1.1.0. Affected by this vulnerability is an unknown functionality. The manipulation leads to improper access controls.
This vulnerability is known as CVE-2008-4451. Attacking locally is a requirement. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-6092 | phpscripts Ranking-script admin=ja improper authentication (EDB-6649 / XFDB-45604)
2 months 2 weeks ago
A vulnerability was found in phpscripts Ranking-script. It has been rated as critical. Affected by this issue is some unknown functionality. The manipulation of the argument admin=ja leads to improper authentication.
This vulnerability is handled as CVE-2008-6092. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-6099 | RPortal 1.1 index.php file_op code injection (EDB-6648 / XFDB-45618)
2 months 2 weeks ago
A vulnerability classified as critical has been found in RPortal 1.1. Affected is an unknown function of the file index.php. The manipulation of the argument file_op leads to code injection.
This vulnerability is traded as CVE-2008-6099. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-4483 | Crux Software Gallery up to 1.32 index.php theme path traversal (EDB-6645 / BID-31516)
2 months 2 weeks ago
A vulnerability, which was classified as critical, has been found in Crux Software Gallery up to 1.32. Affected by this issue is some unknown functionality of the file index.php. The manipulation of the argument theme leads to path traversal.
This vulnerability is handled as CVE-2008-4483. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-6091 | BMForum 5.6 plugins.php tagname sql injection (EDB-6642 / XFDB-45611)
2 months 2 weeks ago
A vulnerability was found in BMForum 5.6. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file plugins.php. The manipulation of the argument tagname leads to sql injection.
This vulnerability is known as CVE-2008-6091. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-6093 | Noname CMS 1.0 index.php kategorie sql injection (EDB-6644 / XFDB-45612)
2 months 2 weeks ago
A vulnerability classified as critical has been found in Noname CMS 1.0. This affects an unknown part of the file index.php. The manipulation of the argument kategorie leads to sql injection.
This vulnerability is uniquely identified as CVE-2008-6093. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-6100 | BerliOS Discussion Forum 2k 3.3 RSS1.php SubID sql injection (EDB-6643 / XFDB-45610)
2 months 2 weeks ago
A vulnerability classified as critical was found in BerliOS Discussion Forum 2k 3.3. Affected by this vulnerability is an unknown functionality of the file RSS1.php. The manipulation of the argument SubID leads to sql injection.
This vulnerability is known as CVE-2008-6100. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
A Threat Claims to Have Admin Access to the Joomla Portal of Hospital Salazar de Villeta
2 months 2 weeks ago
A Threat Claims to Have Admin Access to the Joomla Portal of Hospital Salazar de Villeta
Dark Web Informer
Interpol disrupts cybercrime activity on 22,000 IP addresses, arrests 41
2 months 2 weeks ago
Interpol announced it arrested 41 individuals and taken down 1,037 servers and infrastructure running on 22,000 IP addresses facilitating cybercrime in an international law enforcement action titled Operation Synergia II. [...]
Bill Toulas
NoName Targeted Multiple Websites in South Korea
2 months 2 weeks ago
NoName Targeted Multiple Websites in South Korea
Dark Web Informer
Lynx
2 months 2 weeks ago
cohenido
CVE-2024-8956 | PTZOptics PT30X-SDI/PT30X-NDI up to 6.3.39 Authorization Header /cgi-bin/param.cgi improper authentication (Nessus ID 210334)
2 months 2 weeks ago
A vulnerability, which was classified as critical, was found in PTZOptics PT30X-SDI and PT30X-NDI up to 6.3.39. This affects an unknown part of the file /cgi-bin/param.cgi of the component Authorization Header Handler. The manipulation leads to improper authentication.
This vulnerability is uniquely identified as CVE-2024-8956. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-21278 | Oracle Contract Lifecycle Management for Public Sector up to 12.2.13 Award Processes improper authorization (Nessus ID 210333)
2 months 2 weeks ago
A vulnerability was found in Oracle Contract Lifecycle Management for Public Sector up to 12.2.13. It has been classified as critical. Affected is an unknown function of the component Award Processes. The manipulation leads to improper authorization.
This vulnerability is traded as CVE-2024-21278. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-21279 | Oracle Sourcing up to 12.2.13 Auctions improper authorization (Nessus ID 210333)
2 months 2 weeks ago
A vulnerability was found in Oracle Sourcing up to 12.2.13. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component Auctions. The manipulation leads to improper authorization.
This vulnerability is known as CVE-2024-21279. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-21282 | Oracle Financials up to 12.2.13 Common Component improper authorization (Nessus ID 210333)
2 months 2 weeks ago
A vulnerability classified as critical has been found in Oracle Financials up to 12.2.13. This affects an unknown part of the component Common Component. The manipulation leads to improper authorization.
This vulnerability is uniquely identified as CVE-2024-21282. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com