Aggregator
CVE-2009-3504 | Alibabaclone Alibaba Clone 3.0 offers_buy.php id sql injection (EDB-12543 / SA36845)
1 year 5 months ago
A vulnerability was found in Alibabaclone Alibaba Clone 3.0. It has been classified as critical. Affected is an unknown function of the file offers_buy.php. The manipulation of the argument id leads to sql injection.
This vulnerability is traded as CVE-2009-3504. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
SolarWinds将被Turn/River Capital以44亿美元收购
1 year 5 months ago
安全客
AsyncRAT再次崛起:恶意软件滥用合法服务进行秘密交付
1 year 5 months ago
安全客
美国CISA将Trimble Cityworks缺陷添加到其已知利用漏洞目录中
1 year 5 months ago
安全客
僵尸设备成为日益严重的网络安全风险
1 year 5 months ago
终止支持的联网设备被称为僵尸设备,由于消费者的忽视它们正成为日益严重的网络安全风险。《消费者报告(Consumer Reports)》调查了 2,130 名美国人,询问他们拥有的联网设备类型、预计的产品使用寿命以及软件与设备功能的关系。在拥有联网设备的被调查者中,43% 表示上次购买时不知道设备会在某个时候失去软件支持,35% 表示已经意识到产品会在某个时候失去软件支持,22% 表示不记得。大部分消费者希望在失去软件支持之后设备仍然能维持其可用性,烤箱等大型电器失去软件更新不会有什么问题,但路由器等设备在终止支持之后容易因漏洞得不得修复而成为安全隐患。
IBM 发布安全公告,指出 Security Verify Directory Server Container 存在两个漏洞
1 year 5 months ago
安全客
通知 | 《关于加快北京市公共数据资源开发利用的实施意见(征求意见稿)》公开征集意见(附全文)
1 year 5 months ago
公开征集意见时间为:2025年2月5日至2月12日。
权威解答 | 《互联网军事信息传播管理办法》答记者问
1 year 5 months ago
近日,国家互联网信息办公室、工业和信息化部、公安部、国家安全部、文化和旅游部、国家广播电视总局、国家国防科技工业局、国家保密局、中央军委政治工作部、中央军委政法委员会联合印发《互联网军事信息传播管理办法》,自2025年3月1日起施行。
评论 | 推动互联网军事信息在法治轨道有序传播
1 year 5 months ago
互联网在传播军事信息、塑造军队形象、助力强军兴军等方面发挥着重要作用,互联网军事信息规范有序传播既是时代要求,也是现实必需。
专家观点 | 沈逸:缩小数字鸿沟,需要更多DeepSeek
1 year 5 months ago
OpenAI2月6日宣布向所有用户开放ChatGPT搜索功能,无需注册。不少分析认为,这是受到深度求索开源的压力。
通知 | 十部门联合印发《互联网军事信息传播管理办法》(附全文)
1 year 5 months ago
近日,国家互联网信息办公室、工业和信息化部、公安部、国家安全部、文化和旅游部、国家广播电视总局、国家国防科技工业局、国家保密局、中央军委政治工作部、中央军委政法委员会联合印发《互联网军事信息传播管理办法》。
启明星辰全面对接DeepSeek大模型,全场景智能化安全再升级
1 year 5 months ago
近日,人工智能应用DeepSeek横空出世,引发全球科技圈高度关注。网络安全一直是人工智能技术的重要应用领域,其全场景、大数据、高对抗的特点,为人工智能技术应用提供了广阔的空间。
招生中!系统0day安全-IOT设备漏洞挖掘(第6期)
1 year 5 months ago
录播+直播
动手实践,实现从0到1的跨越
打开邮件即中招!Outlook高危漏洞曝光:黑客可远程执行代码
1 year 5 months ago
微软Outlook高危漏洞被曝,黑客可利用邮件远程执行代码,CISA要求联邦机构尽快部署补丁。
关于PAN-OS DoS(CVE-2024-3393)的研究
1 year 5 months ago
看雪论坛作者ID:pz1o
CVE-2024-54497 | Apple watchOS Web Contents denial of service (Nessus ID 214661)
1 year 5 months ago
A vulnerability, which was classified as problematic, was found in Apple watchOS. This affects an unknown part of the component Web Contents Handler. The manipulation leads to denial of service.
This vulnerability is uniquely identified as CVE-2024-54497. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-54497 | Apple iOS/iPadOS Web Contents denial of service (Nessus ID 214661)
1 year 5 months ago
A vulnerability has been found in Apple iOS and iPadOS and classified as problematic. This vulnerability affects unknown code of the component Web Contents Handler. The manipulation leads to denial of service.
This vulnerability was named CVE-2024-54497. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-54497 | Apple iPadOS Web Contents denial of service (Nessus ID 214661)
1 year 5 months ago
A vulnerability was found in Apple iPadOS and classified as problematic. This issue affects some unknown processing of the component Web Contents Handler. The manipulation leads to denial of service.
The identification of this vulnerability is CVE-2024-54497. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-24086 | Apple macOS Image denial of service (Nessus ID 214661)
1 year 5 months ago
A vulnerability was found in Apple macOS and classified as problematic. Affected by this issue is some unknown functionality of the component Image Handler. The manipulation leads to denial of service.
This vulnerability is handled as CVE-2025-24086. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com