Aggregator
CVE-2018-10757 | CSP MySQL User Manager 2.3.1 Username sql injection (ID 147501 / EDB-44589)
4 months 3 weeks ago
A vulnerability classified as critical has been found in CSP MySQL User Manager 2.3.1. This affects an unknown part. The manipulation as part of Username leads to sql injection.
This vulnerability is uniquely identified as CVE-2018-10757. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
Major Data Breach Resurfaces with Qatar National Bank Database
4 months 3 weeks ago
cohenido
CVE-2000-0474 | RealNetworks RealServer 7.0/7.0.1/8.0 Beta Viewsource Directory denial of service (EDB-19977 / Nessus ID 10461)
4 months 3 weeks ago
A vulnerability was found in RealNetworks RealServer 7.0/7.0.1/8.0 Beta. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component Viewsource Directory Handler. The manipulation leads to denial of service.
This vulnerability is known as CVE-2000-0474. The attack can be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2000-0655 | Netscape Communicator up to 4.73 JPEG Comment memory corruption (EDB-20098 / XFDB-5014)
4 months 3 weeks ago
A vulnerability was found in Netscape Communicator up to 4.73. It has been classified as critical. Affected is an unknown function of the component JPEG Comment Handler. The manipulation leads to memory corruption.
This vulnerability is traded as CVE-2000-0655. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
【安全圈】罗马尼亚国民因 NetWalker 勒索软件攻击被判处 20 年监禁
4 months 3 weeks ago
关键词勒索软件一名罗马尼亚男子因在极具破坏性的 NetWalker 勒索软件攻击中扮演重要角色而被判处 20 年监禁。30 岁的丹尼尔-克里斯蒂安-胡莱(Daniel Christian Hulea)
【安全圈】Mozilla再次发文称禁止谷歌搜索向浏览器分成将威胁火狐等独立浏览器的生存
4 months 3 weeks ago
关键词浏览器谋智基金会(Mozilla)日前再次发文针对谷歌反垄断案进行评价,目前美国司法部有想法强迫谷歌出售 Chrome 浏览器以及禁止谷歌搜索通过向浏览器付费成为默认搜索引擎。火狐浏览器等众多浏
【安全圈】FortiWLM 曝关键漏洞,攻击者可获得管理员权限
4 months 3 weeks ago
关键词安全漏洞Fortinet 披露了 Fortinet Wireless Manager (FortiWLM) 中的一个严重漏洞,该漏洞允许远程攻击者通过特制的 Web 请求执行未经授权的代码或命令
【安全圈】谷歌测试在Chrome中启用人工智能检测诈骗 当发现钓鱼网站时弹出警告
4 months 3 weeks ago
关键词网络钓鱼目前谷歌在 Chrome 浏览器中部署的安全措施主要是谷歌安全浏览服务 (Google Safe Browsing),该服务基于云端数据库识别和分析恶意网站、钓鱼网站和危险程序。但安全浏
【安全圈】罗马尼亚国民因 NetWalker 勒索软件攻击被判处 20 年监禁
4 months 3 weeks ago
【安全圈】Mozilla再次发文称禁止谷歌搜索向浏览器分成将威胁火狐等独立浏览器的生存
4 months 3 weeks ago
【安全圈】FortiWLM 曝关键漏洞,攻击者可获得管理员权限
4 months 3 weeks ago
【安全圈】谷歌测试在Chrome中启用人工智能检测诈骗 当发现钓鱼网站时弹出警告
4 months 3 weeks ago
CVE-2016-4953 | ntpd up to 4.2.8p7 MAC race condition (ssa-211752 / VU#321640)
4 months 3 weeks ago
A vulnerability classified as critical has been found in ntpd up to 4.2.8p7. Affected is an unknown function of the component MAC Handler. The manipulation leads to race condition.
This vulnerability is traded as CVE-2016-4953. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2016-4954 | ntpd up to 4.2.8p7 Validation ntp_proto.c receive race condition (USN-3096-1 / VU#321640)
4 months 3 weeks ago
A vulnerability classified as critical was found in ntpd up to 4.2.8p7. Affected by this vulnerability is the function receive of the file ntp_proto.c of the component Validation Handler. The manipulation leads to race condition.
This vulnerability is known as CVE-2016-4954. The attack can be launched remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2013-3754 | Oracle Solaris Cluster 3.3 HA for TimesTen privileges management (XFDB-85693 / SBV-40561)
4 months 3 weeks ago
A vulnerability classified as critical was found in Oracle Solaris Cluster 3.3. This vulnerability affects unknown code of the component HA for TimesTen. The manipulation leads to improper privilege management.
This vulnerability was named CVE-2013-3754. The attack needs to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2013-3746 | Oracle Solaris Cluster 3.2/3.3/4/4.1 Zone Cluster Infrastructure Local Privilege Escalation (Nessus ID 71705 / XFDB-85694)
4 months 3 weeks ago
A vulnerability, which was classified as critical, has been found in Oracle Solaris Cluster 3.2/3.3/4/4.1. This issue affects some unknown processing of the component Zone Cluster Infrastructure. The manipulation leads to Local Privilege Escalation.
The identification of this vulnerability is CVE-2013-3746. An attack has to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2013-3434 | Cisco Unified Communications Manager up to 8.6 untrusted search path (cisco-sa-20130717-cucm / XFDB-85772)
4 months 3 weeks ago
A vulnerability was found in Cisco Unified Communications Manager up to 8.6. It has been classified as critical. This affects an unknown part. The manipulation leads to untrusted search path.
This vulnerability is uniquely identified as CVE-2013-3434. An attack has to be approached locally. There is no exploit available.
vuldb.com
CVE-2012-6271 | Adobe Shockwave Player up to 8.0.196 Installation Remote Code Execution (VU#323161 / ID 120738)
4 months 3 weeks ago
A vulnerability classified as very critical has been found in Adobe Shockwave Player up to 8.0.196. This affects an unknown part of the component Installation. The manipulation leads to Remote Code Execution.
This vulnerability is uniquely identified as CVE-2012-6271. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
CVE-2013-3433 | Cisco Unified Communications Manager up to 8.6 untrusted search path (cisco-sa-20130717-cucm / XFDB-85771)
4 months 3 weeks ago
A vulnerability was found in Cisco Unified Communications Manager up to 8.6 and classified as critical. Affected by this issue is some unknown functionality. The manipulation leads to untrusted search path.
This vulnerability is handled as CVE-2013-3433. The attack needs to be approached locally. There is no exploit available.
vuldb.com