Aggregator
CVE-2003-0219 | Kerio Personal Firewall 2.1/2.1.1/2.1.2/2.1.3/2.1.4 (VU#641012 / XFDB-11898)
1 week 1 day ago
A vulnerability classified as critical has been found in Kerio Personal Firewall 2.1/2.1.1/2.1.2/2.1.3/2.1.4. Affected is an unknown function. The manipulation leads to an unknown weakness.
This vulnerability is traded as CVE-2003-0219. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Managing Apple Intelligence features on macOS Sequoia 15.1
1 week 1 day ago
Home > Apple Intelligence, Mac administration, macOS, Management Profiles > Managing Apple I
CVE-2008-2845 | MyBizz-Classifieds index.php cat sql injection (EDB-5854 / XFDB-43195)
1 week 1 day ago
A vulnerability was found in MyBizz-Classifieds. It has been classified as critical. Affected is an unknown function of the file index.php. The manipulation of the argument cat leads to sql injection.
This vulnerability is traded as CVE-2008-2845. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-2853 | Easy Webstore 1.2 index.php cat_path sql injection (EDB-5855 / XFDB-43194)
1 week 1 day ago
A vulnerability was found in Easy Webstore 1.2 and classified as critical. Affected by this issue is some unknown functionality of the file index.php. The manipulation of the argument cat_path leads to sql injection.
This vulnerability is handled as CVE-2008-2853. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-6668 | Dirk Bartley nweb2fax 0.2/0.2.7 comm.php var_filename path traversal (EDB-5856 / XFDB-43173)
1 week 1 day ago
A vulnerability classified as problematic has been found in Dirk Bartley nweb2fax 0.2/0.2.7. Affected is an unknown function of the file comm.php. The manipulation of the argument var_filename leads to path traversal.
This vulnerability is traded as CVE-2008-6668. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-2832 | Fullrevolution Aspwebcalendar2008 File Upload calendar_admin.asp FILE1 code injection (EDB-5850 / XFDB-43201)
1 week 1 day ago
A vulnerability classified as very critical was found in Fullrevolution Aspwebcalendar2008. This vulnerability affects unknown code of the file calendar_admin.asp of the component File Upload. The manipulation of the argument FILE1 leads to code injection.
This vulnerability was named CVE-2008-2832. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-2847 | Softdivision Maxtrade Aoi 1.3.23 modules.php categori sql injection (EDB-5853 / XFDB-43203)
1 week 1 day ago
A vulnerability was found in Softdivision Maxtrade Aoi 1.3.23. It has been rated as critical. Affected by this issue is some unknown functionality of the file modules.php. The manipulation of the argument categori leads to sql injection.
This vulnerability is handled as CVE-2008-2847. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-2959 | Microsoft Visual Basic Enterprise Edition 6.0 ActiveX Control vb6skit.dll fCreateShellLink lpstrLinkPath memory corruption (EDB-5851 / XFDB-43180)
1 week 1 day ago
A vulnerability was found in Microsoft Visual Basic Enterprise Edition 6.0. It has been declared as very critical. Affected by this vulnerability is the function fCreateShellLink in the library vb6skit.dll of the component ActiveX Control. The manipulation of the argument lpstrLinkPath leads to memory corruption.
This vulnerability is known as CVE-2008-2959. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-2843 | doITLive CMS 2.50 default.asp ID sql injection (EDB-5849 / XFDB-43163)
1 week 1 day ago
A vulnerability has been found in doITLive CMS 2.50 and classified as critical. This vulnerability affects unknown code of the file default.asp. The manipulation of the argument ID leads to sql injection.
This vulnerability was named CVE-2008-2843. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-2842 | doITLive CMS 2.50 FILE cross site scripting (EDB-5849 / XFDB-43164)
1 week 1 day ago
A vulnerability, which was classified as problematic, was found in doITLive CMS 2.50. This affects an unknown part. The manipulation of the argument FILE leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2008-2842. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2020-28687 | Artworks Gallery in PHP, CSS, JavaScript, and MySQL unrestricted upload (EDB-49167)
1 week 1 day ago
A vulnerability was found in Artworks Gallery in PHP, CSS, JavaScript, and MySQL 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to unrestricted upload.
This vulnerability is known as CVE-2020-28687. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
实验室日常生活 | 白泽国庆出游记录(下)
1 week 1 day ago
国庆出游 大家好,我是你们的白泽小导游!国庆假期的精彩旅程转眼已成回忆,实验室的伙伴们已经再次投入到紧张而充实的科研工作中。 为了给大家的科研生活增添一丝轻松与启发,我们的国庆探险续篇如约
You’re Invited: Rampant Phishing Abuses Eventbrite
1 week 1 day ago
With over 5 million events annually on Eventbrite, attackers have found a new, trusted entry po
CVE-2017-2432 | Apple watchOS up to 3.1 ImageIO memory corruption (HT207602 / EDB-40961)
1 week 1 day ago
A vulnerability was found in Apple watchOS up to 3.1. It has been classified as critical. Affected is an unknown function of the component ImageIO. The manipulation leads to memory corruption.
This vulnerability is traded as CVE-2017-2432. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
每日安全动态推送(24/10/28)
1 week 1 day ago
• 生成式AI在选举中的应用:超越政治颠覆的范畴Generative AI in Elections: Beyond Political Disruption本文深入探讨了生成式人工智能在选举中的应
Sophos-SecureWorks Deal Focuses on Building Advanced MDR, XDR Platform
1 week 1 day ago
Sophos CEO Joe Levy says the $859 million deal to acquire SecureWorks from majority owner Dell Technologies will put the Taegis platform — with network detection and response, vulnerability detection and response, and identity threat detection and response capabilities — at the core.
Jeffrey Schwartz, Contributing Writer
CVE-2017-2432 | Apple iOS up to 10.2 ImageIO memory corruption (HT207617 / EDB-40961)
1 week 1 day ago
A vulnerability was found in Apple iOS up to 10.2. It has been classified as critical. This affects an unknown part of the component ImageIO. The manipulation leads to memory corruption.
This vulnerability is uniquely identified as CVE-2017-2432. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2016-9950 | Apport up to 2.20.3 package-hooks Package/SourcePackage path traversal (USN-3157-1 / EDB-40937)
1 week 1 day ago
A vulnerability classified as problematic was found in Apport up to 2.20.3. This vulnerability affects unknown code of the file /usr/share/apport/package-hooks/. The manipulation of the argument Package/SourcePackage leads to path traversal.
This vulnerability was named CVE-2016-9950. Local access is required to approach this attack. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2020-28688 | Artworks Gallery in PHP, CSS, JavaScript, and MySQL Artwork unrestricted upload (EDB-49166)
1 week 1 day ago
A vulnerability was found in Artworks Gallery in PHP, CSS, JavaScript, and MySQL 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the component Artwork Handler. The manipulation leads to unrestricted upload.
This vulnerability is handled as CVE-2020-28688. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com