Aggregator
CVE-2025-24146 | Apple macOS up to 13.6/14.6/15.2 Contact Information log file (Nessus ID 214660)
2 months 4 weeks ago
A vulnerability was found in Apple macOS up to 13.6/14.6/15.2. It has been rated as problematic. Affected by this issue is some unknown functionality of the component Contact Information Handler. The manipulation leads to sensitive information in log files.
This vulnerability is handled as CVE-2025-24146. An attack has to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-54539 | Apple macOS up to 13.6/14.6/15.1 Keyboard Event state issue
2 months 4 weeks ago
A vulnerability was found in Apple macOS up to 13.6/14.6/15.1 and classified as problematic. This issue affects some unknown processing of the component Keyboard Event Handler. The manipulation leads to state issue.
The identification of this vulnerability is CVE-2024-54539. The attack needs to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-24115 | Apple macOS up to 13.6/14.6/15.2 path traversal (Nessus ID 214660)
2 months 4 weeks ago
A vulnerability has been found in Apple macOS up to 13.6/14.6/15.2 and classified as critical. This vulnerability affects unknown code. The manipulation leads to path traversal.
This vulnerability was named CVE-2025-24115. Local access is required to approach this attack. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-24130 | Apple macOS up to 13.6/14.6/15.2 access control (Nessus ID 214660)
2 months 4 weeks ago
A vulnerability has been found in Apple macOS up to 13.6/14.6/15.2 and classified as problematic. This vulnerability affects unknown code. The manipulation leads to improper access controls.
This vulnerability was named CVE-2025-24130. An attack has to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-44142 | Apple GarageBand up to 10.4.11 Image memory corruption
2 months 4 weeks ago
A vulnerability was found in Apple GarageBand up to 10.4.11 and classified as critical. Affected by this issue is some unknown functionality of the component Image Handler. The manipulation leads to memory corruption.
This vulnerability is handled as CVE-2024-44142. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-23928 | Pioneer DMH-WT7600NEX Telematics certificate validation (ZDI-24-1045)
2 months 4 weeks ago
A vulnerability, which was classified as problematic, has been found in Pioneer DMH-WT7600NEX. This issue affects some unknown processing of the component Telematics. The manipulation leads to improper certificate validation.
The identification of this vulnerability is CVE-2024-23928. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2025-24123 | Apple macOS File Parser denial of service (Nessus ID 214661)
2 months 4 weeks ago
A vulnerability was found in Apple macOS. It has been rated as problematic. Affected by this issue is some unknown functionality of the component File Parser. The manipulation leads to denial of service.
This vulnerability is handled as CVE-2025-24123. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-24123 | Apple visionOS File Parser denial of service (Nessus ID 214661)
2 months 4 weeks ago
A vulnerability classified as problematic has been found in Apple visionOS. This affects an unknown part of the component File Parser. The manipulation leads to denial of service.
This vulnerability is uniquely identified as CVE-2025-24123. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-24123 | Apple tvOS File Parser denial of service (Nessus ID 214661)
2 months 4 weeks ago
A vulnerability classified as problematic was found in Apple tvOS. This vulnerability affects unknown code of the component File Parser. The manipulation leads to denial of service.
This vulnerability was named CVE-2025-24123. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-24123 | Apple watchOS File Parser denial of service (Nessus ID 214661)
2 months 4 weeks ago
A vulnerability, which was classified as problematic, has been found in Apple watchOS. This issue affects some unknown processing of the component File Parser. The manipulation leads to denial of service.
The identification of this vulnerability is CVE-2025-24123. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-24123 | Apple iOS/iPadOS File Parser denial of service (Nessus ID 214661)
2 months 4 weeks ago
A vulnerability, which was classified as problematic, was found in Apple iOS and iPadOS. Affected is an unknown function of the component File Parser. The manipulation leads to denial of service.
This vulnerability is traded as CVE-2025-24123. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2001-0295 | Jarle Aase WarFTPd 1.67.04 FTP Command dir path traversal (EDB-20661 / Nessus ID 11206)
2 months 4 weeks ago
A vulnerability classified as problematic was found in Jarle Aase WarFTPd 1.67.04. This vulnerability affects unknown code of the component FTP Command Handler. The manipulation of the argument dir with the input *./../..* leads to path traversal.
This vulnerability was named CVE-2001-0295. The attack can be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Windows文件管理器漏洞可导致网络欺骗攻击 - PoC已发布
2 months 4 weeks ago
Windows文件管理器漏洞CVE-2025-24071可导致攻击者通过解压文件窃取NTLM哈希,无需用户交互,PoC已发布。
OT安全挑战:从被动防御到主动防护
2 months 4 weeks ago
企业运营技术(OT)安全已经取得了长足的进步,但随着时间的推移,挑战也在不断增加。早期,OT 系统与外部网络完 […]
aqniu
顶流明星在澳门输了10亿?一男子用AI造谣被行拘8天;多平台SSRF漏洞遭遇协同攻击,逾400个IP同时启动 | 牛览
2 months 4 weeks ago
新闻速览 •顶流明星在澳门输了10亿?一男子用AI造谣被行拘8天 •导致1.8万名客户数据泄露,澳大利亚FII […]
aqniu
特权访问管理的10个最佳实践
2 months 4 weeks ago
尽管很多组织都部署了 SIEM 和IDS 等安全基础设施,但是特权访问管理(PAM)依旧非常重要。PAM可以帮 […]
aqniu
今天中午!AI 创业者现场为你解读 GTC!
2 months 4 weeks ago
AI Agent、机器人或者量子计算?
GTC 开幕,英伟达核弹连发;小米小鹏发布史上最强年报;宁德时代战略投资蔚来能源 | 极客早知道
2 months 4 weeks ago
阿里各部门 2025 年绩效考核和 AI 直接挂钩;字节召开大模型部门全员会;研究称 ChatGPT 会抑郁,正念练习能缓解焦虑水平。
Akira勒索软件解密工具出炉,GitHub上已发布;LockBit核心开发者落网,Panev被引渡至美国受审 | 牛览
2 months 4 weeks ago
新闻速览 •《人工智能生成合成内容标识办法》发布,9月1日起施行 •2项网络安全国家标准获批发布 •LockB […]
aqniu