Aggregator
年末冲刺!2024漏洞马拉松『美团站』正式启动
9 months ago
活动时间:即日起至2024年12月15日。
年末冲刺!2024漏洞马拉松『美团站』正式启动
9 months ago
活动时间:即日起至2024年12月15日。
年末冲刺!2024漏洞马拉松『美团站』正式启动
9 months ago
活动时间:即日起至2024年12月15日。
年末冲刺!2024漏洞马拉松『美团站』正式启动
9 months ago
活动时间:即日起至2024年12月15日。
年末冲刺!2024漏洞马拉松『美团站』正式启动
9 months ago
活动时间:即日起至2024年12月15日。
火狐浏览器使用新界面引导用户将其一键设置默认并从其他浏览器导入数据
9 months ago
火狐浏览器使用新界面引导用户将其一键设置默认并从其他浏览器导入数据
CVE-2009-3750 | Santostefano Giovanni ToyLog 0.1 read.php idm sql injection (EDB-9109 / XFDB-51633)
9 months ago
A vulnerability, which was classified as critical, has been found in Santostefano Giovanni ToyLog 0.1. This issue affects some unknown processing of the file read.php. The manipulation of the argument idm leads to sql injection.
The identification of this vulnerability is CVE-2009-3750. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2009-3543 | phenotype CMS up to 2.8 login.php user sql injection (EDB-9107 / XFDB-51634)
9 months ago
A vulnerability was found in phenotype CMS up to 2.8. It has been rated as critical. Affected by this issue is some unknown functionality of the file phenotype/admin/login.php. The manipulation of the argument user leads to sql injection.
This vulnerability is handled as CVE-2009-3543. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2009-3757 | Citrix XenCenterWeb username cross site scripting (EDB-9106 / XFDB-51575)
9 months ago
A vulnerability classified as problematic has been found in Citrix XenCenterWeb. Affected is an unknown function. The manipulation of the argument username leads to cross site scripting.
This vulnerability is traded as CVE-2009-3757. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2009-3758 | Citrix XenCenterWeb login.php username sql injection (EDB-9106 / XFDB-51574)
9 months ago
A vulnerability classified as critical was found in Citrix XenCenterWeb. Affected by this vulnerability is an unknown functionality of the file login.php. The manipulation of the argument username leads to sql injection.
This vulnerability is known as CVE-2009-3758. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2009-3759 | Citrix XenCenterWeb stop_vmname cross-site request forgery (EDB-9106 / XFDB-51576)
9 months ago
A vulnerability, which was classified as problematic, has been found in Citrix XenCenterWeb. Affected by this issue is some unknown functionality. The manipulation of the argument stop_vmname leads to cross-site request forgery.
This vulnerability is handled as CVE-2009-3759. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
为什么 AI 需要一次 Web 2.0 式的革命?
9 months ago
大模型产品化需要更多「二次开发」,创造出 AI 应用的「UGC」。
人人网昨日发布《人人网服务升级公告》,实际上已停止服务【2024年12月2日】
9 months ago
人人网昨日发布《人人网服务升级公告》,实际上已停止服务【2024年12月2日】
NachoVPN Tool Exploits Flaws in Popular VPN Clients for System Compromise
9 months ago
Cybersecurity researchers have disclosed a set of flaws impacting Palo Alto Networks and SonicWall virtual private network (VPN) clients that could be potentially exploited to gain remote code execution on Windows and macOS systems.
"By targeting the implicit trust VPN clients place in servers, attackers can manipulate client behaviours, execute arbitrary commands, and gain high levels of access
The Hacker News
CVE-2011-5069 | Sitracker Support Incident Tracker 3.65 File Upload incident_attachments.php memory corruption (VU#576355 / ID 12698)
9 months ago
A vulnerability classified as critical was found in Sitracker Support Incident Tracker 3.65. This vulnerability affects unknown code of the file incident_attachments.php of the component File Upload. The manipulation leads to memory corruption.
This vulnerability was named CVE-2011-5069. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2011-4869 | Unbound up to 1.4.12 DNS Server resource management (DSA-2370 / VU#209659)
9 months ago
A vulnerability has been found in Unbound and classified as critical. Affected by this vulnerability is an unknown functionality of the component DNS Server. The manipulation leads to improper resource management.
This vulnerability is known as CVE-2011-4869. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2011-4815 | Ruby prior 1.8.7-p299 input validation (RHSA-2012:0069 / VU#903934)
9 months ago
A vulnerability was found in Ruby 1.8.7-p299/1.8.7-p302/1.8.7-p330/1.8.7-p334/1.8.7-p352. It has been declared as critical. This vulnerability affects unknown code. The manipulation leads to improper input validation.
This vulnerability was named CVE-2011-4815. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2011-4838 | JRuby up to 1.6.5 input validation (RHSA-2012:1232 / VU#903934)
9 months ago
A vulnerability was found in JRuby. It has been rated as critical. This issue affects some unknown processing. The manipulation leads to improper input validation.
The identification of this vulnerability is CVE-2011-4838. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Receiving Starlink Signals with an RTL-SDR and Ku-Band LNB
9 months ago
Receiving Starlink Signals with an RTL-SDR and Ku-Band LNB