Aggregator
三星劳资谈判失败 5万人大罢工迫在眉睫
1 month ago
三星劳资谈判失败 5万人大罢工迫在眉睫三星电子及其韩国工会未能在周三达成薪资协议。工会领导人表示,预计将有超过五万名工人继续推进全面罢工,这可能会扰乱AI及其他芯片的生产。周三凌晨三点左右,工会代表崔
微软5月补丁日多个产品安全漏洞风险通告:14个紧急漏洞、9个重要漏洞
1 month ago
环境异常 当前环境异常,完成验证后即可继续访问。 去验证
微软5月补丁日多个产品安全漏洞风险通告:14个紧急漏洞、9个重要漏洞
1 month ago
致力于第一时间为企业级用户提供权威漏洞情报和有效解决方案。
Proxying the Unproxyable? Sending EXE traffic to a Proxy, (Wed, May 13th)
1 month ago
.. if “unproxyable” is a word that is ..I had a recent engagement where I had to look at the netw
美国一银行的员工将客户数据暴露给AI应用
1 month ago
在美国宾夕法尼亚州、俄亥俄州和西弗吉尼亚州运营的社区银行披露了一起网络安全事件,导致客户的姓名、出生日期和社会保障号码被暴露。在向美国证券交易委员会提交的日期为5月7日的 8-K 备案中,这家银行表示
开源风险治理平台“伏羲”在安全补丁迁移中取得重要进展,助力开源软件安全风险缓解
1 month ago
聚焦开源安全补丁迁移难题,基于语法语义增强的大模型,赋能自动化补丁迁移
CVE-2016-5715 | Puppet Enterprise up to 2016.3 Web Interface redirect (Nessus ID 95392 / BID-93846)
1 month ago
A vulnerability categorized as critical has been discovered in Puppet Enterprise up to 2016.3. Affected by this vulnerability is an unknown functionality of the component Web Interface. Such manipulation leads to open redirect.
This vulnerability is listed as CVE-2016-5715. The attack may be performed from remote. There is no available exploit.
It is advisable to upgrade the affected component.
vuldb.com
CVE-2016-3150 | Barco ClickShare CSC-1/ClickShare CSM-1 wallpaper.php cross site scripting (BID-94330)
1 month ago
A vulnerability was found in Barco ClickShare CSC-1 and ClickShare CSM-1. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file wallpaper.php. Executing a manipulation can lead to cross site scripting.
This vulnerability is registered as CVE-2016-3150. It is possible to launch the attack remotely. No exploit is available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2016-3151 | Barco ClickShare CSC-1/ClickShare CSM-1 Wallpaper Parser path traversal (BID-94330)
1 month ago
A vulnerability was found in Barco ClickShare CSC-1 and ClickShare CSM-1. It has been rated as problematic. Affected by this issue is some unknown functionality of the component Wallpaper Parser. The manipulation leads to path traversal.
This vulnerability is documented as CVE-2016-3151. The attack can be initiated remotely. There is not any exploit available.
Upgrading the affected component is advised.
vuldb.com
CVE-2016-3152 | Barco ClickShare CSC-1/ClickShare CSM-1 Firmware Update information disclosure (BID-94326)
1 month ago
A vulnerability categorized as critical has been discovered in Barco ClickShare CSC-1 and ClickShare CSM-1. This affects an unknown part of the component Firmware Update Handler. The manipulation results in information disclosure.
This vulnerability is reported as CVE-2016-3152. The attack can be launched remotely. No exploit exists.
It is advisable to upgrade the affected component.
vuldb.com
CVE-2016-5737 | OpenStack Puppet Module for Gerrit Configuration cross site scripting (BID-91352)
1 month ago
A vulnerability marked as problematic has been reported in OpenStack Puppet Module for Gerrit. The affected element is an unknown function of the component Configuration. Performing a manipulation results in cross site scripting.
This vulnerability is identified as CVE-2016-5737. The attack can be initiated remotely. There is not any exploit available.
vuldb.com
CVE-2016-6492 | MediaTek Driver on Linux camera_fdvt.c MT6573FDVT_SetRegHW access control (ID 138113 / BID-92207)
1 month ago
A vulnerability described as problematic has been identified in MediaTek Driver on Linux. The impacted element is the function MT6573FDVT_SetRegHW of the file camera_fdvt.c. Executing a manipulation can lead to improper access controls.
This vulnerability is tracked as CVE-2016-6492. The attack is restricted to local execution. No exploit exists.
vuldb.com
CVE-2016-9299 | Jenkins up to 2.31 Remoting ldap injection (FEDORA-2016-368780879d / EDB-44642)
1 month ago
A vulnerability, which was classified as critical, was found in Jenkins up to 2.31. Affected by this issue is some unknown functionality of the component Remoting Module. Executing a manipulation can lead to ldap injection.
This vulnerability is tracked as CVE-2016-9299. The attack can be launched remotely. Moreover, an exploit is present.
You should upgrade the affected component.
vuldb.com
CVE-2016-10135 | LG Device up to 7.0 MTKLogger App information disclosure (BID-96846)
1 month ago
A vulnerability, which was classified as critical, has been found in LG Device 5.0/5.1/6.0/6.0.1/7.0. This vulnerability affects unknown code of the component MTKLogger App. The manipulation leads to information disclosure.
This vulnerability is referenced as CVE-2016-10135. The attack can only be performed from a local environment. No exploit is available.
vuldb.com
CVE-2016-10136 | BLU R1 HD settings_secure.xml cryptographic issue (BID-96854)
1 month ago
A vulnerability, which was classified as critical, was found in BLU R1 HD. This issue affects some unknown processing of the file /data/system/users/0/settings_secure.xml. The manipulation results in cryptographic issues.
This vulnerability is identified as CVE-2016-10136. The attack can be executed remotely. There is not any exploit available.
vuldb.com
CVE-2016-10137 | BLU R1 HD cryptographic issue (BID-96852)
1 month ago
A vulnerability has been found in BLU R1 HD and classified as critical. Impacted is an unknown function. This manipulation causes cryptographic issues.
This vulnerability is tracked as CVE-2016-10137. The attack is restricted to local execution. No exploit exists.
vuldb.com
CVE-2016-10138 | BLU Advance/R1 HD cryptographic issue (BID-96853)
1 month ago
A vulnerability was found in BLU Advance and R1 HD and classified as critical. The affected element is an unknown function. Such manipulation leads to cryptographic issues.
This vulnerability is listed as CVE-2016-10138. The attack must be carried out locally. There is no available exploit.
vuldb.com
谷歌在安卓上全面强化 Gemini AI;宇树发布全球首款载人机甲,售价 390 万元;追觅高管回应「崩老头」|极客早知道
1 month ago
· 市场监管总局附条件批准腾讯收购喜马拉雅股权案
谷歌在安卓上全面强化 Gemini AI;宇树发布全球首款载人机甲,售价 390 万元;追觅高管回应「崩老头」|极客早知道
1 month ago
环境异常 当前环境异常,完成验证后即可继续访问。 去验证