Aggregator
Alleged Data Breach of BBB Group — Over 700 Audio Files Leaked
11 months 2 weeks ago
Alleged Data Breach of BBB Group — Over 700 Audio Files Leaked
Dark Web Informer - Cyber Threat Intelligence
Inside Turla’s Uroboros Infrastructure and Tactics Revealed
11 months 2 weeks ago
In a nation-state cyber espionage, a recent static analysis of the Uroboros rootkit, attributed to the infamous APT group Turla, uncovers a chilling display of sophistication and mastery over Windows kernel internals. With the sample identified by the MD5 hash ed785bbd156b61553aaf78b6f71fb37b, this malware-first linked to Turla around 2014-2015-stands as a testament to the group’s elite […]
The post Inside Turla’s Uroboros Infrastructure and Tactics Revealed appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Aman Mishra
Proofpoint to acquire European cloud security firm Hornetsecurity for over $1 billion
11 months 2 weeks ago
In a deal set to close later this year, cybersecurity giant Proofpoint is acquiring German firm Hornetsecurity, which specializes in protecting companies from risks associated with Microsoft 365.
Fortinet修补FortiOS和FortiProxy中的关键TACACS+身份验证绕过(CVE-2025-22252)
11 months 2 weeks ago
安全客
CVE-2006-4189 | Dolphin click.php dir[inc] privileges management (XFDB-28363 / BID-19648)
11 months 2 weeks ago
A vulnerability was found in Dolphin. It has been declared as critical. This vulnerability affects unknown code of the file click.php. The manipulation of the argument dir[inc] leads to improper privilege management.
This vulnerability was named CVE-2006-4189. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2006-4189 | Dolphin compose.php dir[inc] privileges management (XFDB-28363 / BID-19648)
11 months 2 weeks ago
A vulnerability was found in Dolphin. It has been rated as critical. This issue affects some unknown processing of the file compose.php. The manipulation of the argument dir[inc] leads to improper privilege management.
The identification of this vulnerability is CVE-2006-4189. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2006-4189 | Dolphin freemail.php dir[inc] privileges management (XFDB-28363 / BID-19648)
11 months 2 weeks ago
A vulnerability classified as critical has been found in Dolphin. Affected is an unknown function of the file freemail.php. The manipulation of the argument dir[inc] leads to improper privilege management.
This vulnerability is traded as CVE-2006-4189. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2006-4189 | Dolphin index.php dir[inc] privileges management (XFDB-28363 / BID-19648)
11 months 2 weeks ago
A vulnerability classified as critical was found in Dolphin. Affected by this vulnerability is an unknown functionality of the file index.php. The manipulation of the argument dir[inc] leads to improper privilege management.
This vulnerability is known as CVE-2006-4189. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2006-4189 | Dolphin join_aff.php dir[inc] privileges management (XFDB-28363 / BID-19648)
11 months 2 weeks ago
A vulnerability, which was classified as critical, has been found in Dolphin. Affected by this issue is some unknown functionality of the file join_aff.php. The manipulation of the argument dir[inc] leads to improper privilege management.
This vulnerability is handled as CVE-2006-4189. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2006-4189 | Dolphin logout.php dir[inc] privileges management (XFDB-28363 / BID-19648)
11 months 2 weeks ago
A vulnerability, which was classified as critical, was found in Dolphin. This affects an unknown part of the file logout.php. The manipulation of the argument dir[inc] leads to improper privilege management.
This vulnerability is uniquely identified as CVE-2006-4189. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2006-4189 | Dolphin cart_pop.php dir[inc] privileges management (XFDB-28363 / BID-19648)
11 months 2 weeks ago
A vulnerability was found in Dolphin. It has been classified as critical. This affects an unknown part of the file cart_pop.php. The manipulation of the argument dir[inc] leads to improper privilege management.
This vulnerability is uniquely identified as CVE-2006-4189. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2022-42081 | Tenda AC1206 US_AC1206V1.0RTL_V15.03.06.23_multi_TD01 sched_end_time stack-based overflow
11 months 2 weeks ago
A vulnerability was found in Tenda AC1206 US_AC1206V1.0RTL_V15.03.06.23_multi_TD01 and classified as critical. This issue affects some unknown processing. The manipulation of the argument sched_end_time leads to stack-based buffer overflow.
The identification of this vulnerability is CVE-2022-42081. The attack needs to be done within the local network. There is no exploit available.
vuldb.com
CVE-2022-40187 | Bushnell Golf Foresight GC3 Launch Monitor 1.3.15.68 TCF access control (ATREDIS-2022-0003)
11 months 2 weeks ago
A vulnerability, which was classified as critical, was found in Bushnell Golf Foresight GC3 Launch Monitor 1.3.15.68. Affected is an unknown function of the component TCF Handler. The manipulation leads to improper access controls.
This vulnerability is traded as CVE-2022-40187. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2022-41316 | HashiCorp Vault/Vault Enterprise up to 1.9.9/1.10.6/1.11.3 TLS Certificate certificate validation
11 months 2 weeks ago
A vulnerability, which was classified as critical, has been found in HashiCorp Vault and Vault Enterprise up to 1.9.9/1.10.6/1.11.3. This issue affects some unknown processing of the component TLS Certificate Handler. The manipulation leads to improper certificate validation.
The identification of this vulnerability is CVE-2022-41316. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-2828 | Octopus Server API resource injection
11 months 2 weeks ago
A vulnerability was found in Octopus Server and classified as problematic. Affected by this issue is some unknown functionality of the component API. The manipulation leads to improper control of resource identifiers.
This vulnerability is handled as CVE-2022-2828. The attack can only be initiated within the local network. There is no exploit available.
vuldb.com
CVE-2022-41351 | Synacor Zimbra Collaboration Suite 8.8.15 /h/calendar view cross site scripting
11 months 2 weeks ago
A vulnerability has been found in Synacor Zimbra Collaboration Suite 8.8.15 and classified as problematic. This vulnerability affects unknown code of the file /h/calendar. The manipulation of the argument view leads to cross site scripting.
This vulnerability was named CVE-2022-41351. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2022-42086 | Tenda AX1803 US_AX1803v2.0br_v1.0.0.1_2994_CN_ZGYD01_4 TendaAteMode cross-site request forgery
11 months 2 weeks ago
A vulnerability was found in Tenda AX1803 US_AX1803v2.0br_v1.0.0.1_2994_CN_ZGYD01_4. It has been declared as problematic. Affected by this vulnerability is the function TendaAteMode. The manipulation leads to cross-site request forgery.
This vulnerability is known as CVE-2022-42086. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2022-35080 | SWFTools 772e55a2 /lib/png.c png_load heap-based overflow (Issue 183)
11 months 2 weeks ago
A vulnerability was found in SWFTools 772e55a2 and classified as critical. Affected by this issue is the function png_load in the library /lib/png.c. The manipulation leads to heap-based buffer overflow.
This vulnerability is handled as CVE-2022-35080. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2022-35081 | SWFTools 772e55a2 /src/png2swf.c png_read_header heap-based overflow (Issue 183)
11 months 2 weeks ago
A vulnerability was found in SWFTools 772e55a2. It has been classified as critical. This affects the function png_read_header of the file /src/png2swf.c. The manipulation leads to heap-based buffer overflow.
This vulnerability is uniquely identified as CVE-2022-35081. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com