Aggregator
Tails OS merges with Tor Project for better privacy, security
1 year 6 months ago
error code: 1106
起亚经销商网站曝出严重漏洞!黑客可在30秒内远程操控数百万辆汽车
1 year 6 months ago
该漏洞还暴露了车主的敏感个人信息,包括姓名、电话号码、电子邮件地址和实际地址。
Are hardware supply chain attacks “cyber attacks?”
1 year 6 months ago
Thursday, September 2
US-led operation disrupts crypto exchanges linked to Russian cybercrime
1 year 6 months ago
The U.S. government and Dutch law enforcement took action on Thursday against a handful of Russian
JVN: シャープNECディスプレイソリューションズ製プロジェクターにおけるSNMPが有効になっている問題
1 year 6 months ago
シャープNECディスプレイソリューションズ株式会社が提供する複数のプロジェクターでは、SNMP機能が有効になっています。
Hacking Kia: Remotely Controlling Cars With Just a License Plate
1 year 6 months ago
每周高级威胁情报解读(2024.09.20~09.26)
1 year 6 months ago
-SloppyLemming 使用 Cloudflare Workers 针对南亚地区
-Confucius 组织利用 ADS 隐藏载荷攻击宗教相关人士
-UNC1860 针对中东的网络攻击工具分析
Critical RCE vulnerability found in OpenPLC
1 year 6 months ago
Critical RCE vulnerability found in OpenPLC Pierluigi Paganini September 26, 2024Cisco’s Ta
CVE-2014-7040 | UniCredit Investors 1 X.509 Certificate cryptographic issues (VU#582497)
1 year 6 months ago
A vulnerability classified as critical has been found in UniCredit Investors 1. Affected is an unknown function of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
This vulnerability is traded as CVE-2014-7040. The attack needs to be approached within the local network. There is no exploit available.
vuldb.com
CVE-2024-7896 | Tosei Online Store Management System ネット店舗管理システム p1_ftpserver.php command injection
1 year 6 months ago
A vulnerability was found in Tosei Online Store Management System ネット店舗管理システム 4.02/4.03/4.04. It has been rated as critical. Affected by this issue is some unknown functionality of the file /cgi-bin/p1_ftpserver.php. The manipulation of the argument adr_txt leads to command injection.
This vulnerability is handled as CVE-2024-7896. The attack may be launched remotely. Furthermore, there is an exploit available.
The vendor was contacted early about this disclosure but did not respond in any way.
vuldb.com
CVE-2024-7897 | Tosei Online Store Management System ネット店舗管理システム /cgi-bin/tosei_kikai.php command injection
1 year 6 months ago
A vulnerability classified as critical has been found in Tosei Online Store Management System ネット店舗管理システム 4.02/4.03/4.04. This affects an unknown part of the file /cgi-bin/tosei_kikai.php. The manipulation of the argument kikaibangou leads to command injection.
This vulnerability is uniquely identified as CVE-2024-7897. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
The vendor was contacted early about this disclosure but did not respond in any way.
vuldb.com
CVE-2024-7898 | Tosei Online Store Management System ネット店舗管理システム Backend default credentials
1 year 6 months ago
A vulnerability classified as critical was found in Tosei Online Store Management System ネット店舗管理システム 4.02/4.03/4.04. This vulnerability affects unknown code of the component Backend. The manipulation leads to use of default credentials.
This vulnerability was named CVE-2024-7898. The attack can be initiated remotely. Furthermore, there is an exploit available.
The vendor was contacted early about this disclosure but did not respond in any way.
vuldb.com
CVE-2024-5583 | posimyththemes The Plus Addons for Elementor Plugin up to 5.6.2 on WordPress Testimonials Widget carousel_direction cross site scripting
1 year 6 months ago
A vulnerability has been found in posimyththemes The Plus Addons for Elementor Plugin up to 5.6.2 on WordPress and classified as problematic. Affected by this vulnerability is an unknown functionality of the component Testimonials Widget. The manipulation of the argument carousel_direction leads to cross site scripting.
This vulnerability is known as CVE-2024-5583. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-6870 | Responsive Lightbox & Gallery Plugin up to 2.4.7 on WordPress File Upload cross site scripting
1 year 6 months ago
A vulnerability was found in Responsive Lightbox & Gallery Plugin up to 2.4.7 on WordPress. It has been declared as problematic. This vulnerability affects unknown code of the component File Upload. The manipulation leads to cross site scripting.
This vulnerability was named CVE-2024-6870. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2022-2446 | benjaminprojas WP Editor Plugin up to 1.2.9 on WordPress current_theme_root deserialization
1 year 6 months ago
A vulnerability, which was classified as problematic, has been found in benjaminprojas WP Editor Plugin up to 1.2.9 on WordPress. This issue affects some unknown processing. The manipulation of the argument current_theme_root leads to deserialization.
The identification of this vulnerability is CVE-2022-2446. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-8891 | CIRCUTOR Q-SMT 1.0.4 exposure of private personal information to an unauthorized actor
1 year 6 months ago
A vulnerability was found in CIRCUTOR Q-SMT 1.0.4. It has been declared as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to exposure of private personal information to an unauthorized actor.
This vulnerability is known as CVE-2024-8891. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-34026 | OpenPLC v3 b4702061dc14d1024856f71b4543298d77007b88 EtherNet IP Parser stack-based overflow (TALOS-2024-2005)
1 year 6 months ago
A vulnerability classified as critical has been found in OpenPLC v3 b4702061dc14d1024856f71b4543298d77007b88. Affected is an unknown function of the component EtherNet IP Parser. The manipulation leads to stack-based buffer overflow.
This vulnerability is traded as CVE-2024-34026. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-36980 | OpenPLC v3 b4702061dc14d1024856f71b4543298d77007b88 EtherNet IP PCCC Parser out-of-bounds (TALOS-2024-2004)
1 year 6 months ago
A vulnerability, which was classified as critical, has been found in OpenPLC v3 b4702061dc14d1024856f71b4543298d77007b88. Affected by this issue is some unknown functionality of the component EtherNet IP PCCC Parser. The manipulation leads to out-of-bounds read.
This vulnerability is handled as CVE-2024-36980. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-36981 | OpenPLC v3 b4702061dc14d1024856f71b4543298d77007b88 EtherNet IP PCCC Parser out-of-bounds (TALOS-2024-2004)
1 year 6 months ago
A vulnerability, which was classified as critical, was found in OpenPLC v3 b4702061dc14d1024856f71b4543298d77007b88. This affects an unknown part of the component EtherNet IP PCCC Parser. The manipulation leads to out-of-bounds read.
This vulnerability is uniquely identified as CVE-2024-36981. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com