Aggregator
Cisco security advisory (AV24-635)
1 year 4 months ago
Canadian Centre for Cyber Security
CVE-2024-22778 | HackMD CodiMD up to 2.5.1 denial of service (Issue 1846)
1 year 4 months ago
A vulnerability, which was classified as problematic, has been found in HackMD CodiMD up to 2.5.1. This issue affects some unknown processing. The manipulation leads to denial of service.
The identification of this vulnerability is CVE-2024-22778. The attack needs to be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-52571 | Linux Kernel up to 6.1.55/6.5.5 rk817 of_node_put memory leak (fe6406238d5a/70326b46b6a0/488ef44c068e)
1 year 4 months ago
A vulnerability classified as problematic has been found in Linux Kernel up to 6.1.55/6.5.5. This affects the function of_node_put of the component rk817. The manipulation leads to memory leak.
This vulnerability is uniquely identified as CVE-2023-52571. Access to the local network is required for this attack. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-27477 | Leantime 3.0.6 Ticket cross site scripting
1 year 4 months ago
A vulnerability was found in Leantime 3.0.6. It has been classified as problematic. Affected is an unknown function of the component Ticket Handler. The manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2024-27477. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-32254 | PHPGurukul Tourism Management System 2.0 create-package.php unrestricted upload
1 year 4 months ago
A vulnerability was found in PHPGurukul Tourism Management System 2.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file tms/admin/create-package.php. The manipulation leads to unrestricted upload.
This vulnerability is handled as CVE-2024-32254. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-26857 | Linux Kernel up to 6.7.9 include/net/inet_ecn.h geneve_rx information disclosure
1 year 4 months ago
A vulnerability classified as problematic has been found in Linux Kernel up to 6.7.9. Affected is the function geneve_rx in the library include/net/inet_ecn.h. The manipulation leads to information disclosure.
This vulnerability is traded as CVE-2024-26857. Access to the local network is required for this attack. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-32305 | Tenda A18 15.03.05.05 fromWizardHandle PPW stack-based overflow
1 year 4 months ago
A vulnerability, which was classified as critical, has been found in Tenda A18 15.03.05.05. Affected by this issue is the function fromWizardHandle. The manipulation of the argument PPW leads to stack-based buffer overflow.
This vulnerability is handled as CVE-2024-32305. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-34047 | O-RAN RIC I-Release e2mgr RicServiceUpdateHandler array index
1 year 4 months ago
A vulnerability was found in O-RAN RIC I-Release e2mgr and classified as critical. This issue affects the function RicServiceUpdateHandler. The manipulation leads to improper validation of array index.
The identification of this vulnerability is CVE-2024-34047. The attack can only be done within the local network. There is no exploit available.
vuldb.com
恭喜司令!2024双11安全保卫战最终奖励揭榜
1 year 4 months ago
A Threat Actor Has Allegedly Leaked Data of Argentina Citizens
1 year 4 months ago
A Threat Actor Has Allegedly Leaked Data of Argentina Citizens
Dark Web Informer
ANONYMOUS MUSLIMS Targeted Multiple Websites
1 year 4 months ago
ANONYMOUS MUSLIMS Targeted Multiple Websites
Dark Web Informer
888 Has Allegedly Leaked the Data of Abans Group
1 year 4 months ago
888 Has Allegedly Leaked the Data of Abans Group
Dark Web Informer
《终端计算机通用安全技术规范》等3项网络安全国家标准获批发布
1 year 4 months ago
Новые органы за копейки: сверхскоростной биопринтер создаёт ткани в 350 раз быстрее
1 year 4 months ago
Почему новая технология станет прорывом в лечении онкологии.
CVE-2016-1830 | Apple iOS up to 9.3.1 Kernel memory corruption (HT206568 / Nessus ID 91228)
1 year 4 months ago
A vulnerability, which was classified as critical, has been found in Apple iOS up to 9.3.1. This issue affects some unknown processing of the component Kernel. The manipulation leads to memory corruption.
The identification of this vulnerability is CVE-2016-1830. It is possible to launch the attack on the local host. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
预付全款!看雪课程讲师招募中
1 year 4 months ago
根据课程质量综合定价并一次性买断,价格3k-3w不等~
Ollama AI框架发现严重漏洞,可能导致 DoS、模型盗窃和中毒
1 year 4 months ago
Ollama AI框架被披露存在六个严重安全漏洞,可能被恶意行为者利用以执行拒绝服务攻击、模型污染和模型盗窃等操作。
全是干货!2024 vivo千镜安全实验室技术沙龙报名开启
1 year 4 months ago
11月16日,“安全攻防对抗专场”不见不散!
SDC2024 议题回顾 | 工控系统供应链攻击大揭秘
1 year 4 months ago
探究工控界“安卓“—— Codesys Runtime带来的供应链安全威胁