Aggregator
利用 Veeam Backup & Replication 软件漏洞 CVE-2024-40711 的勒索软件攻击激增
2 months 4 weeks ago
安全客
非盈利数字图书馆互联网档案馆(The Internet Archive)披露遭遇重大数据泄露,影响超过 3100 万用户
2 months 4 weeks ago
安全客
CNCERT:Microsoft发布2024年10月安全更新
2 months 4 weeks ago
利用上述漏洞,攻击者可以绕过安全功能限制,获取敏感信息,提升权限,执行远程代码,或发起拒绝服务攻击等。
广东省教育厅群发非法链接短信?官方称短信平台遭入侵
2 months 4 weeks ago
官方称已报案
Deepfakes可以愚弄加密货币交易所上的面部识别
2 months 4 weeks ago
安全客
13家热门Web大模型内容风险评测,短板竟然隐藏在这里!
2 months 4 weeks ago
知道创宇
火山引擎夺得AIM2024大赛超分质量评估赛道冠军
2 months 4 weeks ago
火山引擎多媒体实验室凭借基于大模型的画质评估算法获得冠军
“Lynx” 新勒索软件威胁行为者正在积极攻击美国和英国各行业的组织
2 months 4 weeks ago
安全客
纯血鸿蒙启动公测,爱加密鸿蒙加固平台发布,助力鸿蒙应用安全运营
2 months 4 weeks ago
爱加密
Mozilla 证实有人通过火狐浏览器漏洞主动攻击 Tor 浏览器
2 months 4 weeks ago
安全客
靶场首推厂商!赛宁网安实力入选IDC《中国网络安全软件技术发展路线图》
2 months 4 weeks ago
安全KER小助手
找份工作,就导致个人信息全曝光?数十万份简历遭遇泄露
2 months 4 weeks ago
error code: 521
CVE-2024-9821 | Bot for Telegram on WooCommerce Plugin up to 1.2.4 on WordPress Telegram Bot Token information disclosure
2 months 4 weeks ago
A vulnerability, which was classified as problematic, has been found in Bot for Telegram on WooCommerce Plugin up to 1.2.4 on WordPress. Affected by this issue is some unknown functionality of the component Telegram Bot Token Handler. The manipulation leads to information disclosure.
This vulnerability is handled as CVE-2024-9821. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-9860 | Bridge Core Plugin up to 3.3 on WordPress Demo Import authorization
2 months 4 weeks ago
A vulnerability, which was classified as critical, was found in Bridge Core Plugin up to 3.3 on WordPress. This affects an unknown part of the component Demo Import. The manipulation leads to missing authorization.
This vulnerability is uniquely identified as CVE-2024-9860. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-9592 | Easy PayPal Gift Certificate Plugin up to 1.2.3 on WordPress wpppgc_plugin_options cross-site request forgery
2 months 4 weeks ago
A vulnerability has been found in Easy PayPal Gift Certificate Plugin up to 1.2.3 on WordPress and classified as problematic. This vulnerability affects unknown code. The manipulation of the argument wpppgc_plugin_options leads to cross-site request forgery.
This vulnerability was named CVE-2024-9592. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-9047 | File Upload Plugin up to 4.24.11 on WordPress wfu_file_downloader.php path traversal
2 months 4 weeks ago
A vulnerability was found in File Upload Plugin up to 4.24.11 on WordPress. It has been declared as critical. This vulnerability affects unknown code of the file wfu_file_downloader.php. The manipulation leads to path traversal.
This vulnerability was named CVE-2024-9047. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-9670 | 2D Tag Cloud Plugin up to 6.0.2 on WordPress add_query_arg cross site scripting
2 months 4 weeks ago
A vulnerability was found in 2D Tag Cloud Plugin up to 6.0.2 on WordPress. It has been rated as problematic. This issue affects some unknown processing. The manipulation of the argument add_query_arg leads to cross site scripting.
The identification of this vulnerability is CVE-2024-9670. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-9656 | Mynx Page Builder Plugin up to 0.27.8 on WordPress SVG File Upload cross site scripting
2 months 4 weeks ago
A vulnerability classified as problematic was found in Mynx Page Builder Plugin up to 0.27.8 on WordPress. Affected by this vulnerability is an unknown functionality of the component SVG File Upload. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2024-9656. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-9187 | Read More by Adam Plugin up to 1.1.8 on WordPress Read More Button authorization
2 months 4 weeks ago
A vulnerability, which was classified as problematic, was found in Read More by Adam Plugin up to 1.1.8 on WordPress. This affects an unknown part of the component Read More Button Handler. The manipulation leads to missing authorization.
This vulnerability is uniquely identified as CVE-2024-9187. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com