Aggregator
Critical Blind SQL Injection leads to $4,134 (7/30 DAYS)
7 months 4 weeks ago
CVE-2018-4318 | Apple tvOS up to 11.4.1 Memory Management Routine use after free (EDB-45488 / Nessus ID 119323)
7 months 4 weeks ago
A vulnerability classified as critical has been found in Apple tvOS up to 11.4.1. This affects an unknown part of the component Memory Management Routine. The manipulation leads to use after free.
This vulnerability is uniquely identified as CVE-2018-4318. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Silver Platter Tryhackme Walkthrough
7 months 4 weeks ago
How I Hacked Actor Vijay’s Political Party Website — Tamilaga Vettri Kazhagam (TVK)
7 months 4 weeks ago
CVE-2009-2386 | Awingsoft Awakening Winds3D Viewer plugin 3.0.0.5 input validation (EDB-33067 / BID-35595)
7 months 4 weeks ago
A vulnerability, which was classified as critical, has been found in Awingsoft Awakening Winds3D Viewer plugin 3.0.0.5. This issue affects some unknown processing. The manipulation leads to improper input validation.
The identification of this vulnerability is CVE-2009-2386. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2012-6513 | gpEasy CMS 2.3.3 jsoncallback cross site scripting (EDB-37104 / BID-53269)
7 months 4 weeks ago
A vulnerability classified as problematic was found in gpEasy CMS 2.3.3. This vulnerability affects unknown code. The manipulation of the argument jsoncallback leads to cross site scripting.
This vulnerability was named CVE-2012-6513. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-0558 | TDuckCloud tduck-platform up to 4.0 QueryProThemeRequest.java QueryProThemeRequest color sql injection
7 months 4 weeks ago
A vulnerability classified as critical was found in TDuckCloud tduck-platform up to 4.0. This vulnerability affects the function QueryProThemeRequest of the file src/main/java/com/tduck/cloud/form/request/QueryProThemeRequest.java. The manipulation of the argument color leads to sql injection.
This vulnerability was named CVE-2025-0558. The attack can be initiated remotely. Furthermore, there is an exploit available.
The vendor was contacted early about this disclosure but did not respond in any way.
The vendor was contacted early about this disclosure but did not respond in any way.
vuldb.com
Exploration of Tryhackme’s Advent of Cyber 2024 All Days Writeups
7 months 4 weeks ago
CVE-2018-4318 | Apple iOS up to 11.4.1 Memory Management Routine use after free (EDB-45488 / Nessus ID 119323)
7 months 4 weeks ago
A vulnerability was found in Apple iOS up to 11.4.1. It has been rated as critical. Affected by this issue is some unknown functionality of the component Memory Management Routine. The manipulation leads to use after free.
This vulnerability is handled as CVE-2018-4318. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Building Your Own Bug Bounty Lab: A Hands-On Guide with Metasploit and More
7 months 4 weeks ago
Building Your Own Bug Bounty Lab: A Hands-On Guide with Metasploit and More
7 months 4 weeks ago
Stored XSS to Admin in Unauthenticated-WordPress
7 months 4 weeks ago
Stored XSS to Admin in Unauthenticated-WordPress
7 months 4 weeks ago
CVE-2000-0337 | Sun Solaris 7.0/8.0 Xsun Server -dev memory corruption (EDB-19876 / XFDB-4360)
7 months 4 weeks ago
A vulnerability classified as critical was found in Sun Solaris 7.0/8.0. This vulnerability affects unknown code of the component Xsun Server. The manipulation of the argument -dev leads to memory corruption.
This vulnerability was named CVE-2000-0337. The attack needs to be approached locally. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2018-4314 | Apple iCloud up to 7.6 on Windows use after free (EDB-45480 / Nessus ID 119323)
7 months 4 weeks ago
A vulnerability was found in Apple iCloud up to 7.6 on Windows and classified as critical. Affected by this issue is some unknown functionality. The manipulation leads to use after free.
This vulnerability is handled as CVE-2018-4314. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2017-13865 | Apple iOS up to 11.1.2 Kernel information disclosure (HT208334 / EDB-43321)
7 months 4 weeks ago
A vulnerability, which was classified as problematic, was found in Apple iOS up to 11.1.2. Affected is an unknown function of the component Kernel. The manipulation leads to information disclosure.
This vulnerability is traded as CVE-2017-13865. Attacking locally is a requirement. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2013-3728 | Kasseler-cms 2 admin.php cat cross site scripting (Patch 122282 / EDB-26623)
7 months 4 weeks ago
A vulnerability, which was classified as problematic, was found in Kasseler-cms 2. Affected is an unknown function of the file admin.php. The manipulation of the argument cat leads to cross site scripting.
This vulnerability is traded as CVE-2013-3728. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
How victims of PowerSchool’s data breach helped each other investigate ‘massive’ hack
7 months 4 weeks ago
On January 7, at 11:10 p.m. in Dubai, Romy Backus received an email from education technology giant
挖掘有回显ssrf的一类隐藏payload
7 months 4 weeks ago