Aggregator
A Threat Actor has Allegedly Leaked the Data of Wicket Club
4 months 4 weeks ago
A Threat Actor has Allegedly Leaked the Data of Wicket Club
Dark Web Informer
Bitfinex hacker gets 5 years in prison for 120,000 bitcoin heist
4 months 4 weeks ago
A hacker responsible for stealing 119,754 Bitcoin in a 2016 hack on the Bitfinex cryptocurrency exchange was sentenced to five years in prison by U.S. authorities. [...]
Bill Toulas
Microsoft Edge security advisory (AV24-659)
4 months 4 weeks ago
Canadian Centre for Cyber Security
Everest
4 months 4 weeks ago
cohenido
Everest
4 months 4 weeks ago
cohenido
CVE-2024-50652 | geeeeeeeek java_shop 1.0 avatar unrestricted upload
4 months 4 weeks ago
A vulnerability classified as critical was found in geeeeeeeek java_shop 1.0. Affected by this vulnerability is the function avatar. The manipulation leads to unrestricted upload.
This vulnerability is known as CVE-2024-50652. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-50651 | geeeeeeeek java_shop 1.0 ID access control
4 months 4 weeks ago
A vulnerability classified as critical has been found in geeeeeeeek java_shop 1.0. Affected is an unknown function. The manipulation of the argument ID leads to improper access controls.
This vulnerability is traded as CVE-2024-50651. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-50650 | geeeeeeeek python_book 1.0 ID access control
4 months 4 weeks ago
A vulnerability was found in geeeeeeeek python_book 1.0. It has been rated as critical. This issue affects some unknown processing. The manipulation of the argument ID leads to improper access controls.
The identification of this vulnerability is CVE-2024-50650. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2022-20654 | Cisco Webex Meetings up to 40.6.2 Web-based Interface cross site scripting (cisco-sa-webex-xss-FmbPu2pe)
4 months 4 weeks ago
A vulnerability was found in Cisco Webex Meetings. It has been declared as problematic. This vulnerability affects unknown code of the component Web-based Interface. The manipulation leads to basic cross site scripting.
This vulnerability was named CVE-2022-20654. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-20631 | Cisco Enterprise Chat and Email up to 12.6(1)_ET1 Web-based Management Interface cross site scripting (cisco-sa-ece-multivulns-kbK2yVhR)
4 months 4 weeks ago
A vulnerability was found in Cisco Enterprise Chat and Email. It has been classified as problematic. This affects an unknown part of the component Web-based Management Interface. The manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2022-20631. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-20626 | Cisco Prime Access Registrar up to 9.2.0.0 Web-based Management Interface cross site scripting (cisco-sa-prime-reg-xss-zLOz8PfB)
4 months 4 weeks ago
A vulnerability was found in Cisco Prime Access Registrar and classified as problematic. Affected by this issue is some unknown functionality of the component Web-based Management Interface. The manipulation leads to cross site scripting.
This vulnerability is handled as CVE-2022-20626. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-20634 | Cisco Enterprise Chat and Email up to 12.6(1)_ET1 Web-based Management Interface redirect (cisco-sa-ece-multivulns-kbK2yVhR)
4 months 4 weeks ago
A vulnerability has been found in Cisco Enterprise Chat and Email and classified as problematic. Affected by this vulnerability is an unknown functionality of the component Web-based Management Interface. The manipulation leads to open redirect.
This vulnerability is known as CVE-2022-20634. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-20655 | Cisco IOS XR Software CLI os command injection (cisco-sa-cli-cmdinj-4MttWZPB)
4 months 4 weeks ago
A vulnerability, which was classified as critical, was found in Cisco IOS XR Software, Virtual Topology System (VTS), Network Services Orchestrator, Enterprise NFV Infrastructure Software, Catalyst SD-WAN, Catalyst SD-WAN Manager, IOS XE Catalyst SD-WAN, SD-WAN vEdge Router, Ultra Gateway Platform and Carrier Packet Transport. Affected is an unknown function of the component CLI. The manipulation leads to os command injection.
This vulnerability is traded as CVE-2022-20655. Local access is required to approach this attack. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-50649 | geeeeeeeek python_book 1.0 User Avatar unrestricted upload
4 months 4 weeks ago
A vulnerability, which was classified as critical, has been found in geeeeeeeek python_book 1.0. This issue affects some unknown processing of the component User Avatar Handler. The manipulation leads to unrestricted upload.
The identification of this vulnerability is CVE-2024-50649. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-51497 | LibreNMS up to 24.9.x Custom OID Tab unit cross site scripting
4 months 4 weeks ago
A vulnerability classified as problematic was found in LibreNMS up to 24.9.x. This vulnerability affects unknown code of the component Custom OID Tab. The manipulation of the argument unit leads to cross site scripting.
This vulnerability was named CVE-2024-51497. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-51496 | LibreNMS up to 24.9.x /wireless metric cross site scripting
4 months 4 weeks ago
A vulnerability classified as problematic has been found in LibreNMS up to 24.9.x. This affects an unknown part of the file /wireless. The manipulation of the argument metric leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2024-51496. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-20652 | Cisco Secure Workload up to 3.5.1.30 Web-based Management Interface/API Subsystem os command injection (cisco-sa-tetr-cmd-injc-skrwGO)
4 months 4 weeks ago
A vulnerability was found in Cisco Secure Workload. It has been rated as critical. Affected by this issue is some unknown functionality of the component Web-based Management Interface/API Subsystem. The manipulation leads to os command injection.
This vulnerability is handled as CVE-2022-20652. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-52526 | LibreNMS up to 24.9.x Device Page descr cross site scripting
4 months 4 weeks ago
A vulnerability was found in LibreNMS up to 24.9.x. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component Device Page. The manipulation of the argument descr leads to cross site scripting.
This vulnerability is known as CVE-2024-52526. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Generaal Eichelsheim: “Opvang Nederlandse oorlogsgewonden moet fors omhoog”
4 months 4 weeks ago
Defensie werkt samen met 14 civiele ziekenhuizen. Ze delen chirurgische teams met de militaire organisatie. De zogenoemde relatieziekenhuizen spelen ook een cruciale rol bij de opvang van gewonde militairen bij een grootschalig conflict. Wat zijn daarvan de gevolgen en wat betekent het in de praktijk? Daarover wisselden beide partijen vandaag in Bunnik van gedachten. Commandant der Strijdkrachten generaal Onno Eichelsheim was een van de sprekers.