Aggregator
.NET 内网攻防实战电子报刊
5 months ago
01.NET内网安全攻防报刊小报童电子报刊【.NET内网安全攻防】也正式上线了,引入小报童也是为了弥补知识星球
.NET 总第 68 期红队武器库和资源汇总
5 months ago
Вчера это была фантастика, сегодня — суббота в Пекине: роботы пробежали полумарафон и даже не вспотели
5 months ago
Один рухнул на старте, другой врезался в забор, третий победил — роботозабег, как он есть.
Учёные впервые сконцентрировали свет на наноразмерах для широкого спектра волн
5 months ago
Физики открыли способ концентрировать энергию в самых малых масштабах.
CVE-2025-3763 | SourceCodester Phone Management System 1.0 Password main s buffer overflow
5 months ago
A vulnerability classified as critical has been found in SourceCodester Phone Management System 1.0. This affects the function main of the component Password Handler. The manipulation of the argument s leads to buffer overflow.
This vulnerability is uniquely identified as CVE-2025-3763. Local access is required to approach this attack. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-3795 | DaiCuo 1.3.13 SEO Optimization Settings Section cross site scripting
5 months ago
A vulnerability was found in DaiCuo 1.3.13. It has been rated as problematic. Affected by this issue is some unknown functionality of the component SEO Optimization Settings Section. The manipulation leads to cross site scripting.
This vulnerability is handled as CVE-2025-3795. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2003-0413 | Sun One Application Server 7.0 on Windows Error Message cross site scripting (EDB-22665 / XFDB-12095)
5 months ago
A vulnerability was found in Sun One Application Server 7.0 on Windows. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component Error Message Handler. The manipulation leads to basic cross site scripting.
This vulnerability is known as CVE-2003-0413. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
扣子空间,开启内测!
5 months ago
扣子空间(Coze Space)正式开启内测!扣子空间是你和 AI Agent 协同办公的最佳场所。
扣子空间,开启内测!
5 months ago
扣子空间(Coze Space)正式开启内测!扣子空间是你和 AI Agent 协同办公的最佳场所。
CVE-2018-11403 | DomainMod 4.09.03 account-owner.php oid cross site scripting (Issue 63 / EDB-44782)
5 months ago
A vulnerability was found in DomainMod 4.09.03. It has been rated as problematic. This issue affects some unknown processing of the file assets/edit/account-owner.php. The manipulation of the argument oid as part of Parameter leads to cross site scripting.
The identification of this vulnerability is CVE-2018-11403. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
新型Gorilla安卓恶意软件窃取短信验证码
5 months ago
"Gorilla安卓恶意软件窃取短信验证码,精准攻击银行用户!"
ИИ спас 84 жизни: как цифры превращаются в спасенные судьбы
5 months ago
Больница, где алгоритмы умеют волноваться за тебя.
CVE-2025-31200 | Apple iOS/iPadOS Media File memory corruption (Nessus ID 234506)
5 months ago
A vulnerability was found in Apple iOS and iPadOS. It has been classified as critical. This affects an unknown part of the component Media File Handler. The manipulation leads to memory corruption.
This vulnerability is uniquely identified as CVE-2025-31200. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2004-1966 | OpenBB 1.0.0 Beta1 up to 1.0.6 Search board.php forums sql injection (EDB-24056 / XFDB-15964)
5 months ago
A vulnerability, which was classified as critical, has been found in OpenBB 1.0.0 Beta1 up to 1.0.6. This issue affects some unknown processing of the file board.php of the component Search. The manipulation of the argument forums leads to sql injection.
The identification of this vulnerability is CVE-2004-1966. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
Тайна пустых берегов Титана: что скрывает крупнейший спутник Сатурна
5 months ago
Только 1,3% крупных рек Титана образуют привычные земные структуры.
CVE-2024-12238 | kstover Ninja Forms Plugin up to 3.8.22 on WordPress Shortcode do_shortcode code injection
5 months ago
A vulnerability was found in kstover Ninja Forms Plugin up to 3.8.22 on WordPress. It has been declared as critical. Affected by this vulnerability is the function do_shortcode of the component Shortcode Handler. The manipulation leads to code injection.
This vulnerability is known as CVE-2024-12238. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2025-30288 | Adobe ColdFusion up to 2021.18/2023.12/2025.0 access control (apsb25-15)
5 months ago
A vulnerability was found in Adobe ColdFusion up to 2021.18/2023.12/2025.0 and classified as critical. This issue affects some unknown processing. The manipulation leads to improper access controls.
The identification of this vulnerability is CVE-2025-30288. It is possible to launch the attack on the local host. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-30287 | Adobe ColdFusion up to 2021.18/2023.12/2025.0 improper authentication (apsb25-15 / Nessus ID 234235)
5 months ago
A vulnerability was found in Adobe ColdFusion up to 2021.18/2023.12/2025.0 and classified as critical. Affected by this issue is some unknown functionality. The manipulation leads to improper authentication.
This vulnerability is handled as CVE-2025-30287. The attack needs to be approached locally. There is no exploit available.
vuldb.com
CVE-2025-30285 | Adobe ColdFusion up to 2021.18/2023.12/2025.0 deserialization (apsb25-15 / Nessus ID 234235)
5 months ago
A vulnerability, which was classified as critical, has been found in Adobe ColdFusion up to 2021.18/2023.12/2025.0. This issue affects some unknown processing. The manipulation leads to deserialization.
The identification of this vulnerability is CVE-2025-30285. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com