Aggregator
IBM security advisory (AV25-109)
1 year 3 months ago
Canadian Centre for Cyber Security
Bubba AI, Inc. is launching Comp AI to help 100,000 startups get SOC 2 compliant by 2032.
1 year 3 months ago
San Francisco, California, 3rd March 2025, CyberNewsWire
The post Bubba AI, Inc. is launching Comp AI to help 100,000 startups get SOC 2 compliant by 2032. appeared first on Security Boulevard.
cybernewswire
Dell security advisory (AV25-108)
1 year 3 months ago
Canadian Centre for Cyber Security
CVE-2024-5048 | code-projects Budget Management 1.0 /index.php edit sql injection
1 year 3 months ago
A vulnerability classified as critical was found in code-projects Budget Management 1.0. Affected by this vulnerability is an unknown functionality of the file /index.php. The manipulation of the argument edit leads to sql injection.
This vulnerability is known as CVE-2024-5048. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2024-5064 | PHPGurukul Online Course Registration System 3.1 news-details.php nid sql injection
1 year 3 months ago
A vulnerability was found in PHPGurukul Online Course Registration System 3.1. It has been rated as critical. This issue affects some unknown processing of the file news-details.php. The manipulation of the argument nid leads to sql injection.
The identification of this vulnerability is CVE-2024-5064. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2024-5065 | PHPGurukul Online Course Registration System 3.1 /onlinecourse/ regno sql injection
1 year 3 months ago
A vulnerability classified as critical has been found in PHPGurukul Online Course Registration System 3.1. Affected is an unknown function of the file /onlinecourse/. The manipulation of the argument regno leads to sql injection.
This vulnerability is traded as CVE-2024-5065. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2024-5066 | PHPGurukul Online Course Registration System 3.1 pincode-verification.php pincode sql injection
1 year 3 months ago
A vulnerability classified as critical was found in PHPGurukul Online Course Registration System 3.1. Affected by this vulnerability is an unknown functionality of the file /pincode-verification.php. The manipulation of the argument pincode leads to sql injection.
This vulnerability is known as CVE-2024-5066. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2024-6653 | code-projects Simple Task List 1.0 Login loginForm.php username sql injection
1 year 3 months ago
A vulnerability was found in code-projects Simple Task List 1.0. It has been declared as critical. This vulnerability affects unknown code of the file loginForm.php of the component Login. The manipulation of the argument username leads to sql injection.
This vulnerability was named CVE-2024-6653. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-22738 | TechnoWich WP ULike Plugin up to 4.7.6 on WordPress cross site scripting
1 year 3 months ago
A vulnerability, which was classified as problematic, has been found in TechnoWich WP ULike Plugin up to 4.7.6 on WordPress. Affected by this issue is some unknown functionality. The manipulation leads to cross site scripting.
This vulnerability is handled as CVE-2025-22738. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2025-24633 | silverplugins217 Build Private Store for Woocommerce Plugin up to 1.0 on WordPress authorization
1 year 3 months ago
A vulnerability, which was classified as problematic, has been found in silverplugins217 Build Private Store for Woocommerce Plugin up to 1.0 on WordPress. Affected by this issue is some unknown functionality. The manipulation leads to missing authorization.
This vulnerability is handled as CVE-2025-24633. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2025-1152 | GNU Binutils 2.43 ld xstrdup.c xstrdup memory leak
1 year 3 months ago
A vulnerability classified as problematic has been found in GNU Binutils 2.43. Affected is the function xstrdup of the file xstrdup.c of the component ld. The manipulation leads to memory leak.
This vulnerability is traded as CVE-2025-1152. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
The code maintainer explains: "I'm not going to commit some of the leak fixes I've been working on to the 2.44 branch due to concern that would destabilise ld. All of the reported leaks in this bugzilla have been fixed on binutils master."
vuldb.com
CVE-2024-27859 | Apple watchOS Web Contents memory corruption
1 year 3 months ago
A vulnerability was found in Apple watchOS and classified as critical. Affected by this issue is some unknown functionality of the component Web Contents Handler. The manipulation leads to memory corruption.
This vulnerability is handled as CVE-2024-27859. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-27859 | Apple tvOS Web Contents memory corruption
1 year 3 months ago
A vulnerability was found in Apple tvOS. It has been classified as critical. This affects an unknown part of the component Web Contents Handler. The manipulation leads to memory corruption.
This vulnerability is uniquely identified as CVE-2024-27859. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-27859 | Apple visionOS Web Contents memory corruption
1 year 3 months ago
A vulnerability was found in Apple visionOS. It has been declared as critical. This vulnerability affects unknown code of the component Web Contents Handler. The manipulation leads to memory corruption.
This vulnerability was named CVE-2024-27859. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-27859 | Apple macOS Web Contents memory corruption
1 year 3 months ago
A vulnerability was found in Apple macOS. It has been rated as critical. This issue affects some unknown processing of the component Web Contents Handler. The manipulation leads to memory corruption.
The identification of this vulnerability is CVE-2024-27859. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-27859 | Apple iOS/iPadOS Web Contents memory corruption
1 year 3 months ago
A vulnerability classified as critical has been found in Apple iOS and iPadOS. Affected is an unknown function of the component Web Contents Handler. The manipulation leads to memory corruption.
This vulnerability is traded as CVE-2024-27859. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-13153 | Unlimited Elements for Elementor Plugin up to 1.5.135 on WordPress Widget cross site scripting
1 year 3 months ago
A vulnerability, which was classified as problematic, was found in Unlimited Elements for Elementor Plugin up to 1.5.135 on WordPress. Affected is an unknown function of the component Widget. The manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2024-13153. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2025-0339 | code-projects Online Bike Rental 1.0 HTTP GET Request /vehical-details.php cross site scripting
1 year 3 months ago
A vulnerability classified as problematic has been found in code-projects Online Bike Rental 1.0. Affected is an unknown function of the file /vehical-details.php of the component HTTP GET Request Handler. The manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2025-0339. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-0342 | CampCodes Computer Laboratory Management System 1.0 /class/edit/edit s_lname cross site scripting
1 year 3 months ago
A vulnerability, which was classified as problematic, was found in CampCodes Computer Laboratory Management System 1.0. This affects an unknown part of the file /class/edit/edit. The manipulation of the argument s_lname leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2025-0342. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
Other parameters might be affected as well.
vuldb.com