Aggregator
Alixsec Targets Multiple Websites
5 months 1 week ago
Alixsec Targets Multiple Ukrainian Websites
Dark Web Informer - Cyber Threat Intelligence
DEF CON 32 – Reverse Engineering And Hacking Ecovacs Robots
5 months 1 week ago
Authors/Presenters: Dennis Giese, Braelynn Hacker
Our sincere appreciation to DEF CON, and the Authors/Presenters for publishing their erudite DEF CON 32 content. Originating from the conference’s events located at the Las Vegas Convention Center; and via the organizations YouTube channel.
The post DEF CON 32 – Reverse Engineering And Hacking Ecovacs Robots appeared first on Security Boulevard.
Marc Handelman
Vulnerability Research Highlights 2024
5 months 1 week ago
Our Vulnerability Research team looks back at a great year and summarizes the highlights of 2024.
The post Vulnerability Research Highlights 2024 appeared first on Security Boulevard.
Paul Gerste
Vulnerability Research Highlights 2024
5 months 1 week ago
With more and more code generated by humans and AI, keeping track of its security remains a top
DEF CON 32 – Reverse Engineering And Hacking Ecovacs Robots
5 months 1 week ago
Authors/Presenters: Dennis G
PowerSchool Reportedly Pays Ransom to Prevent Student Data Leak
5 months 1 week ago
A school district said that PowerSchool paid a ransom to prevent the attackers releasing data it accessed of students and teachers in North America
CVE-2023-27358 | Netgear RAX30 SOAP Request sql injection
5 months 1 week ago
A vulnerability, which was classified as critical, was found in Netgear RAX30. Affected is an unknown function of the component SOAP Request Handler. The manipulation leads to sql injection.
This vulnerability is traded as CVE-2023-27358. Access to the local network is required for this attack. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-47039 | Linux Kernel up to 5.11.20/5.12.3 ataflop do_format array index (07f86aa8f4fe/2a3a8bbca28b/1ffec389a643)
5 months 1 week ago
A vulnerability, which was classified as problematic, has been found in Linux Kernel up to 5.11.20/5.12.3. Affected by this issue is the function do_format of the component ataflop. The manipulation leads to improper validation of array index.
This vulnerability is handled as CVE-2021-47039. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-47040 | Linux Kernel up to 5.10.36/5.11.20/5.12.3 io_uring io_provide_buffers_prep buffer overflow
5 months 1 week ago
A vulnerability, which was classified as critical, was found in Linux Kernel up to 5.10.36/5.11.20/5.12.3. This affects the function io_provide_buffers_prep of the component io_uring. The manipulation leads to buffer overflow.
This vulnerability is uniquely identified as CVE-2021-47040. The attack can only be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-29903 | sigstore cosign up to 2.2.3 Artifact allocation of resources (GHSA-95pr-fxf5-86gv)
5 months 1 week ago
A vulnerability classified as problematic was found in sigstore cosign up to 2.2.3. This vulnerability affects unknown code of the component Artifact Handler. The manipulation leads to allocation of resources.
This vulnerability was named CVE-2024-29903. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-30916 | eProsima Fast DDS up to 2.14.0 DurabilityService max_samples denial of service (Issue 4609)
5 months 1 week ago
A vulnerability was found in eProsima Fast DDS up to 2.14.0. It has been rated as problematic. This issue affects some unknown processing of the component DurabilityService. The manipulation of the argument max_samples leads to denial of service.
The identification of this vulnerability is CVE-2024-30916. It is possible to launch the attack on the local host. There is no exploit available.
vuldb.com
CVE-2024-25967 | Dell PowerScale OneFS up to 9.3.0.0/9.4.0.17/9.5.0.7/9.7.0.1 unnecessary privileges (dsa-2024-163)
5 months 1 week ago
A vulnerability, which was classified as critical, has been found in Dell PowerScale OneFS up to 9.3.0.0/9.4.0.17/9.5.0.7/9.7.0.1. Affected by this issue is some unknown functionality. The manipulation leads to execution with unnecessary privileges.
This vulnerability is handled as CVE-2024-25967. An attack has to be approached locally. There is no exploit available.
vuldb.com
CVE-2023-39470 | PaperCut NG up to 22.0.10 print.script.sandboxed routine
5 months 1 week ago
A vulnerability was found in PaperCut NG up to 22.0.10. It has been classified as critical. Affected is the function print.script.sandboxed. The manipulation leads to exposed dangerous routine.
This vulnerability is traded as CVE-2023-39470. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-52286 | Stirling-Tools Stirling-PDF up to 0.31.x Merge merge.js input validation
5 months 1 week ago
A vulnerability was found in Stirling-Tools Stirling-PDF up to 0.31.x. It has been declared as critical. This vulnerability affects unknown code of the file src/main/resources/static/js/merge.js of the component Merge Handler. The manipulation leads to improper input validation.
This vulnerability was named CVE-2024-52286. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-7026 | Teknogis Informatics Closed Circuit Vehicle Tracking Software up to 21.11.2024 sql injection
5 months 1 week ago
A vulnerability was found in Teknogis Informatics Closed Circuit Vehicle Tracking Software up to 21.11.2024. It has been rated as problematic. This issue affects some unknown processing. The manipulation leads to sql injection hibernate.
The identification of this vulnerability is CVE-2024-7026. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-49602 | Dell PowerScale OneFS up to 9.4.0.19/9.5.1.0/9.7.1.2/9.8.0.0 multiple unlocks of a critical resource (dsa-2024-453)
5 months 1 week ago
A vulnerability classified as critical was found in Dell PowerScale OneFS up to 9.4.0.19/9.5.1.0/9.7.1.2/9.8.0.0. This vulnerability affects unknown code. The manipulation leads to multiple unlocks of a critical resource.
This vulnerability was named CVE-2024-49602. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2021-47055 | Linux Kernel up to 5.12.3 mtd denial of service (Nessus ID 212266)
5 months 1 week ago
A vulnerability, which was classified as critical, was found in Linux Kernel up to 5.12.3. Affected is an unknown function of the component mtd. The manipulation leads to denial of service.
This vulnerability is traded as CVE-2021-47055. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
SecWiki News 2025-01-09 Review
5 months 1 week ago
2025-01-08软件安全分析2030远景规划 ourren || discus
SecWiki News 2025-01-09 Review
5 months 1 week ago
今日暂未更新资讯~
更多最新文章,请访问SecWiki
更多最新文章,请访问SecWiki