Aggregator
CVE-2024-35160 | IBM Watson Query for Cloud Pak for Data session expiration
4 months 3 weeks ago
A vulnerability, which was classified as problematic, has been found in IBM Watson Query for Cloud Pak for Data and Db2 Big SQL on Cloud Pak for Data. This issue affects some unknown processing. The manipulation leads to session expiration.
The identification of this vulnerability is CVE-2024-35160. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Ranch Has Leaked the Data of Andrew Tate's The Real World
4 months 3 weeks ago
Ranch Has Leaked the Data of Andrew Tate's The Real World
Dark Web Informer - Cyber Threat Intelligence
CVE-2006-0277 | Oracle E-Business Suite 11.5.10 Applications Technology Stack Remote Code Execution (VU#545804 / XFDB-24321)
4 months 3 weeks ago
A vulnerability, which was classified as very critical, was found in Oracle E-Business Suite 11.5.10. This affects an unknown part of the component Applications Technology Stack. The manipulation leads to Remote Code Execution.
This vulnerability is uniquely identified as CVE-2006-0277. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2006-0273 | Oracle Application Server 9.0.4.2 cross site scripting (VU#545804 / Nessus ID 57619)
4 months 3 weeks ago
A vulnerability was found in Oracle Application Server 9.0.4.2. It has been rated as critical. This issue affects some unknown processing. The manipulation leads to basic cross site scripting.
The identification of this vulnerability is CVE-2006-0273. The attack may be initiated remotely. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2006-0274 | Oracle Application Server 9.0.4.2 cross site scripting (VU#545804 / Nessus ID 57619)
4 months 3 weeks ago
A vulnerability classified as critical has been found in Oracle Application Server 9.0.4.2. Affected is an unknown function. The manipulation leads to basic cross site scripting.
This vulnerability is traded as CVE-2006-0274. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2006-0276 | Oracle Collaboration Suite 9.0.4.2 Remote Code Execution (VU#545804 / XFDB-24321)
4 months 3 weeks ago
A vulnerability, which was classified as very critical, has been found in Oracle Collaboration Suite 9.0.4.2. Affected by this issue is some unknown functionality. The manipulation leads to Remote Code Execution.
This vulnerability is handled as CVE-2006-0276. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2006-0272 | Oracle Oracle9i Standard 9.2.0.7 memory corruption (VU#545804 / Nessus ID 56051)
4 months 3 weeks ago
A vulnerability was found in Oracle Oracle9i Standard 9.2.0.7. It has been declared as critical. This vulnerability affects unknown code. The manipulation leads to memory corruption.
This vulnerability was named CVE-2006-0272. The attack can be initiated remotely. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
微软开放预览其受争议的 Windows Recall
4 months 3 weeks ago
微软向部分使用 Copilot+ PC 的用户开放预览其受争议的 Windows Recall 功能。Recall 通过每隔数秒进行一次屏幕截图,在本地创造可搜索数字记忆。该功能引发了隐私和安全方面的争议,Recall 显然会将用户的私密信息都截图保存下来,微软因为争议而推迟了 Recall 的发布。最新的开放预览仅提供给高通 Snapdragon X Elite 和 Plus Copilot+ PC 的用户,运行版本为 Windows Insider build 26120.2415。为减少隐私争议,Recall 将强制使用加密,可选择激活,需要 Windows Hello 身份验证。该功能还需要 Secure Boot、BitLocker 加密,会尝试自动模糊密码和信用卡号等敏感数据。
UNDERGROUND-NET Defaced the Website of Trushi Consultancy
4 months 3 weeks ago
UNDERGROUND-NET Defaced the Website of Trushi Consultancy
Dark Web Informer - Cyber Threat Intelligence
DEF CON 32 – Troll Trapping Through TAS Tools Exposing Speedrunning Cheaters
4 months 3 weeks ago
Authors/Presenters: Allan Cecil
Our sincere appreciation to DEF CON, and the Presenters/Authors for publishing their erudite DEF CON 32 content. Originating from the conference’s events located at the Las Vegas Convention Center; and via the organizations YouTube channel.
The post DEF CON 32 – Troll Trapping Through TAS Tools Exposing Speedrunning Cheaters appeared first on Security Boulevard.
Marc Handelman
SecWiki News 2024-11-23 Review
4 months 3 weeks ago
CVE-2015-5360 | Juniper Junos IPv6 resource management (Nessus ID 85228 / ID 43501)
4 months 3 weeks ago
A vulnerability was found in Juniper Junos. It has been rated as problematic. Affected by this issue is some unknown functionality of the component IPv6 Handler. The manipulation leads to improper resource management.
This vulnerability is handled as CVE-2015-5360. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2015-5363 | Juniper Junos SRX Network Security Daemon data processing (Nessus ID 84768 / ID 43503)
4 months 3 weeks ago
A vulnerability classified as problematic has been found in Juniper Junos. This affects an unknown part of the component SRX Network Security Daemon. The manipulation leads to data processing error.
This vulnerability is uniquely identified as CVE-2015-5363. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2015-5377 | Elasticsearch up to 1.6.0 Transport Protocol injection (Nessus ID 85246 / ID 11585)
4 months 3 weeks ago
A vulnerability was found in Elasticsearch up to 1.6.0 and classified as critical. This issue affects some unknown processing of the component Transport Protocol. The manipulation leads to injection.
The identification of this vulnerability is CVE-2015-5377. The attack may be initiated remotely. There is no exploit available.
The real existence of this vulnerability is still doubted at the moment.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2015-5461 | StageShow Plugin up to 5.0.8 on WordPress stageshow_redirect.php Redirect url (ID 132553 / ID 11494)
4 months 3 weeks ago
A vulnerability, which was classified as critical, was found in StageShow Plugin up to 5.0.8 on WordPress. Affected is the function Redirect of the file stageshow_redirect.php. The manipulation of the argument url leads to open redirect.
This vulnerability is traded as CVE-2015-5461. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2015-6682 | Adobe Flash Player prior 11.2.202.521/18.0.0.240/19.0.0.185 use after free (RHSA-2015:1814 / Nessus ID 86059)
4 months 3 weeks ago
A vulnerability classified as critical was found in Adobe Flash Player. Affected by this vulnerability is an unknown functionality. The manipulation leads to use after free.
This vulnerability is known as CVE-2015-6682. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Парадокс Ольберса: когда математика предсказала конец вечной Вселенной
4 months 3 weeks ago
Как исследования света раскрыли фундаментальные свойства космоса.
CVE-2003-0358 | nethack/falconseye -s memory corruption (EDB-22233 / Nessus ID 15187)
4 months 3 weeks ago
A vulnerability classified as problematic has been found in nethack and falconseye. This affects an unknown part. The manipulation of the argument -s leads to memory corruption.
This vulnerability is uniquely identified as CVE-2003-0358. An attack has to be approached locally. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
A Threat Actor is Selling a PayPal Brute Force Checker
4 months 3 weeks ago
A Threat Actor is Selling a PayPal Brute Force Checker
Dark Web Informer - Cyber Threat Intelligence