Aggregator
【安全圈】网络安全公司员工监守自盗:编写黑客代码窃取2.08亿条公民个人信息
8 months 1 week ago
【安全圈】黑客利用第三方SaaS服务成功入侵美国财政部系统
8 months 1 week ago
关键词根据美国财政部本周一向国会议员发出的一封信,财政部透露,网络安全公司 BeyondTrust 于 12 月 8 日通知其发现一名黑客利用被盗的安全密钥成功入侵财政部系统。黑客通过远程访问权限控制
【安全圈】网络安全公司员工监守自盗:编写黑客代码窃取2.08亿条公民个人信息
8 months 1 week ago
关键词信息泄露在12月30日内江市公安局“向人民汇报”新闻通气会上,网安支队曝光了一起典型案件:犯罪嫌疑人利用高管身份和网络安全技术,侵入政企网站窃取2.08亿条公民个人信息,并大肆贩卖至黑灰产业链,
【安全圈】捷某网络云平台漏洞曝光:50000 台设备面临远程攻击风险
8 months 1 week ago
关键词漏洞网络安全研究人员近期发现,由某捷网络开发的云管理平台存在多个高危安全漏洞,可能使攻击者能够远程接管网络设备。根据 Claroty 安全研究团队的 Noam Moshe 和 Tomer Gol
CVE-2014-4650 | Python 2.7.5/3.3.4 CGIHTTPServer Module path traversal (EDB-33894 / Nessus ID 79392)
8 months 1 week ago
A vulnerability was found in Python 2.7.5/3.3.4 and classified as critical. Affected by this issue is some unknown functionality of the component CGIHTTPServer Module. The manipulation leads to path traversal.
This vulnerability is handled as CVE-2014-4650. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2005-0105 | typespeed 0.4.1 Local Privilege Escalation (EDB-25106 / Nessus ID 16470)
8 months 1 week ago
A vulnerability was found in typespeed 0.4.1. It has been declared as problematic. This vulnerability affects unknown code. The manipulation leads to Local Privilege Escalation.
This vulnerability was named CVE-2005-0105. An attack has to be approached locally. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
GitIngest:一键将 Git 库转为 LLM 友好提示文本
8 months 1 week ago
GitIngest是什么GitIngest是一款可将任何Git存储库转换为适合大型语言模型(LLM)的提示友好型文本格式的工具。用户只需在GitHub网址中将“hub”替换为“ingest”,即可快速
GitIngest:一键将 Git 库转为 LLM 友好提示文本
8 months 1 week ago
GitIngest是什么GitIngest是一款可将任何Git存储库转换为适合大型语言模型(LLM)的提示友好型文本格式的工具。用户只需在GitHub网址中将“hub”替...
黑海洋
Language Tools Directory:最好的语言学习工具
8 months 1 week ago
Language Tools Directory是什么Language Tools Directory是一款在线发现最好的语言学习工具,帮助用户探索学习任何语言的最佳工具,全部工具都是手动精选,仔细审
Language Tools Directory:最好的语言学习工具
8 months 1 week ago
Language Tools Directory是什么Language Tools Directory是一款在线发现最好的语言学习工具,帮助用户探索学习任何语言的最佳工具,全部工具都是手动精选,...
黑海洋
Reditor:小红书运营神器,智能检测违禁词 + 文案生成,一站式搞定
8 months 1 week ago
红薯编辑器(Reditor)是什么红薯编辑器(Reditor)是一款小红书AI编辑器 小红书违禁词检测工具,小红书笔记编辑、排版、内容检测、效果预览,一站式搞定。帮助你在潜移默化中掌握小红书笔记创作底
Reditor:小红书运营神器,智能检测违禁词 + 文案生成,一站式搞定
8 months 1 week ago
红薯编辑器(Reditor)是什么红薯编辑器(Reditor)是一款小红书AI编辑器 小红书违禁词检测工具,小红书笔记编辑、排版、内容检测、效果预览,一站式搞定。帮助你在潜移默化中掌握小红书笔记...
黑海洋
CVE-2008-0485 | GNU MPlayer 1.02rc2 FLAC Comment Parser numeric error (EDB-31076 / Nessus ID 31056)
8 months 1 week ago
A vulnerability was found in GNU MPlayer 1.02rc2 and classified as critical. Affected by this issue is some unknown functionality of the component FLAC Comment Parser. The manipulation leads to numeric error.
This vulnerability is handled as CVE-2008-0485. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
记一次CNVD证书的挖掘方式
8 months 1 week ago
越权漏洞,用户能够修改或访问其他用户(包括管理员)的数据或权限。
CVE-2014-9237 | Proticaret 3.0 SOAP sql injection (ID 129129 / EDB-35219)
8 months 1 week ago
A vulnerability classified as critical was found in Proticaret 3.0. Affected by this vulnerability is an unknown functionality of the component SOAP. The manipulation leads to sql injection.
This vulnerability is known as CVE-2014-9237. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2017-16894 | Laravel Framework up to 5.5.21 Permission /.env writeNewEnvironmentFileWith Password information disclosure (ID 153641 / EDB-47129)
8 months 1 week ago
A vulnerability was found in Laravel Framework up to 5.5.21. It has been classified as problematic. This affects the function writeNewEnvironmentFileWith of the file /.env of the component Permission. The manipulation as part of Password leads to information disclosure (Password).
This vulnerability is uniquely identified as CVE-2017-16894. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2019-3475 | Micro Focus Filr up to 3.x SU5 famtd access control (EDB-46450)
8 months 1 week ago
A vulnerability classified as critical has been found in Micro Focus Filr up to 3.x SU5. Affected is an unknown function of the component famtd. The manipulation leads to improper access controls.
This vulnerability is traded as CVE-2019-3475. Attacking locally is a requirement. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2011-4806 | phpAlbum up to 0.4.1.16 main.php cross site scripting (EDB-18045 / OSVDB-74980)
8 months 1 week ago
A vulnerability, which was classified as problematic, was found in phpAlbum up to 0.4.1.16. This affects an unknown part of the file main.php. The manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2011-4806. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
Baby level guide to path-traversal
8 months 1 week ago