Aggregator
FBI, CISA say Chinese hackers are still lurking in US telecom systems
1 year 4 months ago
FBI, CISA say Chinese hackers are still lurking in US telecom systems
韩国总统实施戒严令的全面分析报告
1 year 4 months ago
韩国总统实施戒严令的全面分析报告
CVE-2024-12123 | Issuetrak 17.1 external control of assumed-immutable web parameter
1 year 4 months ago
A vulnerability has been found in Issuetrak 17.1 and classified as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to external control of assumed-immutable web parameter.
This vulnerability is known as CVE-2024-12123. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-9404 | Moxa VPort 07-3 1.0 Moxa Service moxa_cmd improper validation of specified type of input
1 year 4 months ago
A vulnerability was found in Moxa VPort 07-3 1.0 and classified as problematic. Affected by this issue is the function moxa_cmd of the component Moxa Service. The manipulation leads to improper validation of specified type of input.
This vulnerability is handled as CVE-2024-9404. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2023-52943 | Synology Surveillance Station prior 9.2.0-9289/9.2.0-11289 Alerting authorization (SA_24_04)
1 year 4 months ago
A vulnerability was found in Synology Surveillance Station. It has been classified as problematic. Affected is an unknown function of the component Alerting. The manipulation leads to incorrect authorization.
This vulnerability is traded as CVE-2023-52943. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-52944 | Synology Surveillance Station prior 9.2.0-9289/9.2.0-11289 authorization (SA_24_04)
1 year 4 months ago
A vulnerability was found in Synology Surveillance Station. It has been declared as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to incorrect authorization.
This vulnerability is known as CVE-2023-52944. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-11398 | Synology Router Manager up to 1.3.1-9346-8 OTP path traversal (SA_24_03)
1 year 4 months ago
A vulnerability was found in Synology Router Manager. It has been rated as critical. Affected by this issue is some unknown functionality of the component OTP Handler. The manipulation leads to path traversal.
This vulnerability is handled as CVE-2024-11398. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-12099 | Dollie Hub Plugin up to 6.2.0 on WordPress Post information disclosure
1 year 4 months ago
A vulnerability classified as problematic has been found in Dollie Hub Plugin up to 6.2.0 on WordPress. This affects an unknown part of the component Post Handler. The manipulation leads to information disclosure.
This vulnerability is uniquely identified as CVE-2024-12099. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
XS-Leaks through Speculation Rules
1 year 4 months ago
XS-Leaks through Speculation Rules
Black Basta
1 year 4 months ago
cohenido
Black Basta
1 year 4 months ago
cohenido
Black Basta
1 year 4 months ago
cohenido
Google Classic Papers
1 year 4 months ago
Google Classic Papers
CVE-2007-3594 | AdventNet Manageengine Netflow Analyzer 7 traceroute ping.do searchTerm cross site scripting (EDB-30275 / XFDB-35263)
1 year 4 months ago
A vulnerability was found in AdventNet Manageengine Netflow Analyzer 7. It has been classified as problematic. This affects an unknown part of the file ping.do of the component traceroute. The manipulation of the argument searchTerm leads to basic cross site scripting.
This vulnerability is uniquely identified as CVE-2007-3594. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
反沙盒?一文足以
1 year 4 months ago
反沙盒?一文足以
哥斯拉源码解读+如何绕过waf检测
1 year 4 months ago
哥斯拉源码解读+如何绕过waf检测
THM靶场-Lookup-通关WriteUp
1 year 4 months ago
THM靶场-Lookup-通关WriteUp
禅道18.x-20.x版本漏洞挖掘思路分析
1 year 4 months ago
禅道18.x-20.x版本漏洞挖掘思路分析
MemoryModule的远程反射dll加载与一些没有实现的想法
1 year 4 months ago
MemoryModule的远程反射dll加载与一些没有实现的想法