Aggregator
CVE-2015-8476 | PHPMailer up to 5.2.13 class.phpmailer.php sendCommand input validation (Nessus ID 87268 / ID 124706)
1 year 4 months ago
A vulnerability was found in PHPMailer up to 5.2.13. It has been rated as critical. This issue affects the function sendCommand of the file class.phpmailer.php. The manipulation leads to improper input validation.
The identification of this vulnerability is CVE-2015-8476. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
rufusdomando Has Allegedly Leaked the Data of Hospital Management System Argentina
1 year 4 months ago
rufusdomando Has Allegedly Leaked the Data of Hospital Management System Argentina
Dark Web Informer
Healthcare Management Systems Has Been Claimed a Victim to BianLian Ransomware
1 year 4 months ago
Healthcare Management Systems Has Been Claimed a Victim to BianLian Ransomware
Dark Web Informer
Otto Simon Ltd Has Been Claimed a Victim to Cactus Ransomware
1 year 4 months ago
Otto Simon Ltd Has Been Claimed a Victim to Cactus Ransomware
Dark Web Informer
Submit #434927: netgear R6220 The Version is less than Version 1.1.0.086 Command Injection [Duplicate]
1 year 4 months ago
Submit #434927 / VDB-169791
theRaz0r
CVE-2024-47190 | Northern.tech Hosted Mender prior 2024.07.11 server-side request forgery
1 year 4 months ago
A vulnerability, which was classified as critical, has been found in Northern.tech Hosted Mender. Affected by this issue is some unknown functionality. The manipulation leads to server-side request forgery.
This vulnerability is handled as CVE-2024-47190. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-46948 | Northern.tech Mender up to 3.6.4/3.7.4 access control
1 year 4 months ago
A vulnerability classified as critical was found in Northern.tech Mender up to 3.6.4/3.7.4. Affected by this vulnerability is an unknown functionality. The manipulation leads to improper access controls.
This vulnerability is known as CVE-2024-46948. Access to the local network is required for this attack to succeed. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-46947 | Northern.tech Mender up to 3.6.5/3.7.6 server-side request forgery
1 year 4 months ago
A vulnerability classified as critical has been found in Northern.tech Mender up to 3.6.5/3.7.6. Affected is an unknown function. The manipulation leads to server-side request forgery.
This vulnerability is traded as CVE-2024-46947. Access to the local network is required for this attack. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-50966 | dingfanzu CMS 1.0 doAdminAction.php?act=addAdmin cross-site request forgery
1 year 4 months ago
A vulnerability was found in dingfanzu CMS 1.0. It has been rated as problematic. This issue affects some unknown processing of the file /admin/doAdminAction.php?act=addAdmin. The manipulation leads to cross-site request forgery.
The identification of this vulnerability is CVE-2024-50966. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2015-6003 | QNAP QTS up to 4.1.3/4.2.0 RC1 AFP path traversal (VU#751328 / ID 1033794)
1 year 4 months ago
A vulnerability, which was classified as problematic, was found in QNAP QTS up to 4.1.3/4.2.0 RC1. This affects an unknown part of the component AFP. The manipulation leads to path traversal.
This vulnerability is uniquely identified as CVE-2015-6003. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
RansomHub
1 year 4 months ago
cohenido
2024 TechWorld | 绿盟科技发布5款数据安全新品
1 year 4 months ago
数据要素流通安全能力正式发布
报告发现:2023年1/3的中小型企业受到网络攻击
1 year 4 months ago
没钱没资源,中小企业面临的网络安全挑战比以往更加严峻。
Scoperto CloudScout, un nuovo toolset usato da Evasive Panda
1 year 4 months ago
Chief AI Officers: Should Every Business Have One?
1 year 4 months ago
Companies Race to Hire Chief AI Officers as Tech Reshapes Business Strategy
Boeing, NASA and Pfizer have established chief artificial intelligence officer positions to lead ethical deployment and innovation in 2023. Federal requirements are pushing agencies to create CAIO roles, accelerating enterprisewide adoption across a variety of industries.
Boeing, NASA and Pfizer have established chief artificial intelligence officer positions to lead ethical deployment and innovation in 2023. Federal requirements are pushing agencies to create CAIO roles, accelerating enterprisewide adoption across a variety of industries.
DEF CON 32 – Smishing Smackdown: Unraveling the Threads of USPS Smishing and Fighting Back
1 year 4 months ago
Authors/Presenters: S1nn3r
Our sincere appreciation to DEF CON, and the Presenters/Authors for publishing their erudite DEF CON 32 content. Originating from the conference’s events located at the Las Vegas Convention Center; and via the organizations YouTube channel.
The post DEF CON 32 – Smishing Smackdown: Unraveling the Threads of USPS Smishing and Fighting Back appeared first on Security Boulevard.
Marc Handelman
【火绒安全周报】德国拟合法化白帽黑客/施耐德电气遭勒索法棍
1 year 4 months ago
Einladung zum Junghacker:innentag auf dem 38C3
1 year 4 months ago
Hinweise für Mithelfende und Veranstalter am Ende des Textes!Junghacker:innen-Tag - sei da
RipperSec Targeted the Website of Agro-Industry, Chiang Mai University
1 year 4 months ago
RipperSec Targeted the Website of Agro-Industry, Chiang Mai University
Dark Web Informer