Aggregator
Universal Music data breach impacted 680 individuals
1 year 5 months ago
Universal Music Group notified hundreds of individuals about a data breach compromising their personal information. Universal Music Group is notifying 680 individuals about a data breach that compromised their personal information, including their Social Security number. The data breach occurred on July 15, 2024, and was discovered on August 30, 2024. “In early July, we detected […]
Pierluigi Paganini
CVE-2024-5561 | Popup Maker Plugin up to 1.19.0 on WordPress Setting cross site scripting
1 year 5 months ago
A vulnerability, which was classified as problematic, has been found in Popup Maker Plugin up to 1.19.0 on WordPress. Affected by this issue is some unknown functionality of the component Setting Handler. The manipulation leads to cross site scripting.
This vulnerability is handled as CVE-2024-5561. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-20406 | Cisco IOS XR up to 7.11.1 System-to-Intermediate System Protocol denial of service (cisco-sa-isis-xehpbVNe)
1 year 5 months ago
A vulnerability was found in Cisco IOS XR. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component System-to-Intermediate System Protocol Handler. The manipulation leads to denial of service.
This vulnerability is known as CVE-2024-20406. The attack needs to be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-6910 | EventON Plugin up to 2.2.16 on WordPress Setting cross site scripting
1 year 5 months ago
A vulnerability, which was classified as problematic, was found in EventON Plugin up to 2.2.16 on WordPress. This affects an unknown part of the component Setting Handler. The manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2024-6910. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-7687 | AZIndex Plugin up to 0.8.1 on WordPress cross-site request forgery
1 year 5 months ago
A vulnerability was found in AZIndex Plugin up to 0.8.1 on WordPress and classified as problematic. This issue affects some unknown processing. The manipulation leads to cross-site request forgery.
The identification of this vulnerability is CVE-2024-7687. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-7688 | AZIndex Plugin up to 0.8.1 on WordPress cross-site request forgery
1 year 5 months ago
A vulnerability was found in AZIndex Plugin up to 0.8.1 on WordPress. It has been classified as problematic. Affected is an unknown function. The manipulation leads to cross-site request forgery.
This vulnerability is traded as CVE-2024-7688. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-6928 | Opti Marketing Plugin up to 2.0.9 on WordPress sql injection
1 year 5 months ago
A vulnerability was found in Opti Marketing Plugin up to 2.0.9 on WordPress and classified as critical. This issue affects some unknown processing. The manipulation leads to sql injection.
The identification of this vulnerability is CVE-2024-6928. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-7786 | Sensei LMS Plugin up to 4.24.1 on WordPress Email Template information disclosure
1 year 5 months ago
A vulnerability, which was classified as problematic, was found in Sensei LMS Plugin up to 4.24.1 on WordPress. This affects an unknown part of the component Email Template Handler. The manipulation leads to information disclosure.
This vulnerability is uniquely identified as CVE-2024-7786. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
媒体称“希音赖以崛起的魔法将失灵”,创始人许仰天火速赴美灭火,高管撇清“希音不是中国公司”
1 year 5 months ago
每天早上,希音要问自己:我是谁,我从哪来,我要向哪去?
Ученые МТИ: замороженные атомы раскрывают секреты квантовых краевых состояний
1 year 5 months ago
Эксперимент MIT открыл новый способ изучения краевых состояний электронов.
Awaken Likho is awake: new techniques of an APT group
1 year 5 months ago
IntroductionIn July 2021, a campaign was launched primarily targeting Russian governm
Fuzzer开发4:快照、代码覆盖率与模糊测试
1 year 5 months ago
看雪论坛作者ID:pureGavin【译】
SDC2024议题聚焦 | 探秘语法树:反编译引擎驱动自动化漏洞挖掘
1 year 5 months ago
结合反编译器和源码分析引擎实现二进制分析
CVE-2017-8713 | Microsoft Windows Hyper-V information disclosure (KB4038782 / Nessus ID 103128)
1 year 5 months ago
A vulnerability, which was classified as problematic, has been found in Microsoft Windows 10 1607/10 1703/Server 2012/Server 2012 R2/Server 2016. Affected by this issue is some unknown functionality of the component Hyper-V. The manipulation leads to information disclosure.
This vulnerability is handled as CVE-2017-8713. Attacking locally is a requirement. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
Applying the Intelligence Cycle in our New Days of Rage
1 year 5 months ago
Learn how the time-tested framework can help you understand and manage threats that may arise during this election cycle Former President Donald Trump survived a second assassination attempt by a sniper, this one on his golf course. In Springfield, Ohio, Gov. Mike DeWine has sent in state troopers after extremists began marching through town, and…
The post Applying the Intelligence Cycle in our New Days of Rage appeared first on Ontic.
The post Applying the Intelligence Cycle in our New Days of Rage appeared first on Security Boulevard.
Fred Burton
Ученые раскрыли секрет, как живые организмы извлекают информацию из шума
1 year 5 months ago
Всё о невидимой борьбе за выживание в микромире.
[Control systems] CISA ICS security advisories (AV24-565)
1 year 5 months ago
Canadian Centre for Cyber Security
CVE-2024-20343 | Cisco IOS XR up to 24.1.1 CLI access control (cisco-sa-iosxr-shellutil-HCb278wD)
1 year 5 months ago
A vulnerability was found in Cisco IOS XR. It has been rated as problematic. Affected by this issue is some unknown functionality of the component CLI. The manipulation leads to improper access controls.
This vulnerability is handled as CVE-2024-20343. An attack has to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-8668 | devitemsllc ShopLentor Plugin up to 2.9.7 on WordPress cross site scripting
1 year 5 months ago
A vulnerability was found in devitemsllc ShopLentor Plugin up to 2.9.7 on WordPress. It has been rated as problematic. Affected by this issue is some unknown functionality. The manipulation leads to cross site scripting.
This vulnerability is handled as CVE-2024-8668. The attack may be launched remotely. There is no exploit available.
vuldb.com