Aggregator
CVE-2024-10734 | Project Worlds Life Insurance Management System 1.0 /editPayment.php recipt_no sql injection
1 year 1 month ago
A vulnerability was found in Project Worlds Life Insurance Management System 1.0. It has been classified as critical. This affects an unknown part of the file /editPayment.php. The manipulation of the argument recipt_no leads to sql injection.
This vulnerability is uniquely identified as CVE-2024-10734. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2024-10736 | Codezips Free Exam Hall Seating Management System 1.0 /student.php email sql injection
1 year 1 month ago
A vulnerability was found in Codezips Free Exam Hall Seating Management System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /student.php. The manipulation of the argument email leads to sql injection.
The identification of this vulnerability is CVE-2024-10736. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2024-10737 | Codezips Free Exam Hall Seating Management System 1.0 /teacher.php email sql injection
1 year 1 month ago
A vulnerability classified as critical has been found in Codezips Free Exam Hall Seating Management System 1.0. Affected is an unknown function of the file /teacher.php. The manipulation of the argument email leads to sql injection.
This vulnerability is traded as CVE-2024-10737. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2024-10730 | Tongda OA up to 11.6 web_show.php ID sql injection
1 year 1 month ago
A vulnerability, which was classified as critical, has been found in Tongda OA up to 11.6. This issue affects some unknown processing of the file /pda/appcenter/web_show.php. The manipulation of the argument ID leads to sql injection.
The identification of this vulnerability is CVE-2024-10730. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2024-10731 | Tongda OA up to 11.10 check_seal.php ID sql injection
1 year 1 month ago
A vulnerability, which was classified as critical, was found in Tongda OA up to 11.10. Affected is an unknown function of the file /pda/appcenter/check_seal.php. The manipulation of the argument ID leads to sql injection.
This vulnerability is traded as CVE-2024-10731. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2024-10732 | Tongda OA 2017 up to 11.10 index.php query_str sql injection
1 year 1 month ago
A vulnerability has been found in Tongda OA 2017 up to 11.10 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /module/word_model/view/index.php. The manipulation of the argument query_str leads to sql injection.
This vulnerability is known as CVE-2024-10732. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
ZIP Slip
1 year 1 month ago
ZIP Slip
1 year 1 month ago
ZIP Slip
1 year 1 month ago
ZIP Slip
1 year 1 month ago
ZIP Slip
1 year 1 month ago
Lunar SPIDER重整旗鼓:金融业成为最新恶意广告活动的目标
1 year 1 month ago
安全客
威胁行为者正在加强绕过电子邮件保护的策略
1 year 1 month ago
安全客
CVE-2015-8979 | DICOM DCMTK up to 3.6.0 Port 4242 Service parsePresentationContext memory corruption (Nessus ID 96193 / ID 175925)
1 year 1 month ago
A vulnerability was found in DICOM DCMTK up to 3.6.0. It has been declared as critical. This vulnerability affects the function parsePresentationContext of the component Port 4242 Service. The manipulation leads to memory corruption.
This vulnerability was named CVE-2015-8979. The attack can be initiated remotely. Furthermore, there is an exploit available.
It is recommended to apply restrictive firewalling.
vuldb.com
От мемов до доверия: 5 психологических тактик, которые защитят ваши данные лучше паролей
1 year 1 month ago
Исследование Gartner показало, как превратить каждого сотрудника в киберзащитника.
Cyber Threats That Could Impact the Retail Industry This Holiday Season (and What to Do About It)
1 year 1 month ago
As the holiday season approaches, retail businesses are gearing up for their annual surge in online (and in-store) traffic. Unfortunately, this increase in activity also attracts cybercriminals looking to exploit vulnerabilities for their gain.
Imperva, a Thales company, recently published its annual holiday shopping cybersecurity guide. Data from the Imperva Threat Research team’s
The Hacker News
阻止 LUCR-3 攻击: 在专家网络研讨会上学习关键身份安全策略
1 year 1 month ago
安全客
CVE-2024-38424 | Qualcomm Snapdragon Auto up to X75 5G Modem-RF System use after free
1 year 1 month ago
A vulnerability was found in Qualcomm Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile and Snapdragon Wearables. It has been classified as critical. This affects an unknown part. The manipulation leads to use after free.
This vulnerability is uniquely identified as CVE-2024-38424. The attack needs to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-38423 | Qualcomm Snapdragon Auto up to W5+ Gen GPU Page buffer overflow
1 year 1 month ago
A vulnerability was found in Qualcomm Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon WBC and Snapdragon Wearables and classified as critical. Affected by this issue is some unknown functionality of the component GPU Page. The manipulation leads to buffer overflow.
This vulnerability is handled as CVE-2024-38423. It is possible to launch the attack on the local host. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com