Key Takeaways In December 2023, we observed an intrusion that started with the execution of a Cobalt Strike beacon and ended in the deployment of BlackSuit ransomware. The threat actor … Read More
A vulnerability was found in Apache ActiveMQ up to 5.12.x. It has been classified as very critical. This affects an unknown part of the component Broker Service. The manipulation leads to improper input validation.
This vulnerability is uniquely identified as CVE-2015-5254. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as critical was found in D-Link DIR-645 up to Frimware 1.03b08. This vulnerability affects unknown code of the file authentication.cgi. The manipulation of the argument password as part of POST Request leads to cross site scripting.
This vulnerability was named CVE-2013-7389. The attack can be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as critical, has been found in fingersoft Cartoon Camera 1.2.2. Affected by this issue is some unknown functionality of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
This vulnerability is handled as CVE-2014-5618. Access to the local network is required for this attack. There is no exploit available.
A vulnerability classified as problematic has been found in Microsoft Exchange 2003. Affected is an unknown function of the file owalogon.asp of the component Outlook Web Access. The manipulation leads to information disclosure.
This vulnerability is traded as CVE-2005-0420. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as very critical was found in PostGuestbook 0.6.1. This vulnerability affects unknown code of the file styles/internal/header.php. The manipulation of the argument tpl_pgb_moddir leads to file inclusion.
This vulnerability was named CVE-2007-1372. The attack can be initiated remotely. Furthermore, there is an exploit available.
A vulnerability classified as critical was found in Exsoul-browser Exsoul Web Browser 3.3.3. Affected by this vulnerability is an unknown functionality of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
This vulnerability is known as CVE-2014-5617. The attack needs to be initiated within the local network. There is no exploit available.