Aggregator
SolarWinds fixes critical RCE bug affecting all Web Help Desk versions
1 year 7 months ago
A critical vulnerability in SolarWinds' Web Help Desk solution for customer support could be exploited to achieve remote code execution, the American business software developer warns in a security advisory today. [...]
Bill Toulas
为朝鲜 IT 工人运行笔记本农场的纳什维尔男子被捕
1 year 7 months ago
美国田纳西州纳什维尔 38 岁的男子 Matthew Isaac Knoot 因帮助朝鲜 IT 工人获得美国公司的远程工作而被捕。今年五月一名亚利桑那州女子也因为类似的原因被捕。美国政府禁止本国雇主雇佣朝鲜公民。但朝鲜 IT 工人会利用盗窃的美国公民身份申请美国公司的远程工作,在雇佣之后找 Knoot 等人收取雇主发放的笔记本电脑,安装远程桌面应用,允许 IT 工人能远程访问电脑,让雇主以为被雇佣者在美国工作。法庭文件称,名叫 Yang Di 的朝鲜人向 Knoot 支付了笔记本托管费用和一定比例的薪水。在 2022 年 7 月到 2023 年 8 月之间朝鲜 IT 工人使用 Knoot 的笔记本农场每个人赚到了逾 25 万美元,Knoot 面临最长 20 年徒刑。
CVE-2024-31146 | Xen PCI Device access control
1 year 7 months ago
A vulnerability was found in Xen and classified as critical. This issue affects some unknown processing of the component PCI Device Handler. The manipulation leads to improper access controls.
The identification of this vulnerability is CVE-2024-31146. The attack needs to be initiated within the local network. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-31145 | Xen x86 IOMMU Identity Mapping memory corruption
1 year 7 months ago
A vulnerability has been found in Xen and classified as critical. This vulnerability affects unknown code of the component x86 IOMMU Identity Mapping. The manipulation leads to memory corruption.
This vulnerability was named CVE-2024-31145. The attack needs to be done within the local network. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-34138 | Adobe Illustrator up to 27.9.4/28.5 null pointer dereference (apsb24-45)
1 year 7 months ago
A vulnerability, which was classified as problematic, was found in Adobe Illustrator up to 27.9.4/28.5. This affects an unknown part. The manipulation leads to null pointer dereference.
This vulnerability is uniquely identified as CVE-2024-34138. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-34137 | Adobe Illustrator up to 27.9.4/28.5 null pointer dereference (apsb24-45)
1 year 7 months ago
A vulnerability, which was classified as problematic, has been found in Adobe Illustrator up to 27.9.4/28.5. Affected by this issue is some unknown functionality. The manipulation leads to null pointer dereference.
This vulnerability is handled as CVE-2024-34137. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-34136 | Adobe Illustrator up to 27.9.4/28.5 null pointer dereference (apsb24-45)
1 year 7 months ago
A vulnerability classified as problematic was found in Adobe Illustrator up to 27.9.4/28.5. Affected by this vulnerability is an unknown functionality. The manipulation leads to null pointer dereference.
This vulnerability is known as CVE-2024-34136. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-34118 | Adobe Illustrator up to 27.9.4/28.5 denial of service (apsb24-45)
1 year 7 months ago
A vulnerability classified as problematic has been found in Adobe Illustrator up to 27.9.4/28.5. Affected is an unknown function. The manipulation leads to denial of service.
This vulnerability is traded as CVE-2024-34118. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-41865 | Adobe Dimension up to 3.4.11 untrusted search path (apsb24-47)
1 year 7 months ago
A vulnerability was found in Adobe Dimension up to 3.4.11. It has been rated as critical. This issue affects some unknown processing. The manipulation leads to untrusted search path.
The identification of this vulnerability is CVE-2024-41865. Attacking locally is a requirement. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-41856 | Adobe Illustrator up to 27.9.4/28.5 input validation (apsb24-45)
1 year 7 months ago
A vulnerability was found in Adobe Illustrator up to 27.9.4/28.5. It has been declared as critical. This vulnerability affects unknown code. The manipulation leads to improper input validation.
This vulnerability was named CVE-2024-41856. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-34133 | Adobe Illustrator up to 27.9.4/28.5 out-of-bounds write (apsb24-45)
1 year 7 months ago
A vulnerability was found in Adobe Illustrator up to 27.9.4/28.5. It has been classified as critical. This affects an unknown part. The manipulation leads to out-of-bounds write.
This vulnerability is uniquely identified as CVE-2024-34133. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-34124 | Adobe Dimension up to 3.4.11 out-of-bounds write (apsb24-47)
1 year 7 months ago
A vulnerability was found in Adobe Dimension up to 3.4.11 and classified as critical. Affected by this issue is some unknown functionality. The manipulation leads to out-of-bounds write.
This vulnerability is handled as CVE-2024-34124. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-34117 | Adobe Photoshop Desktop up to 24.7.3/25.9.1 use after free (apsb24-49)
1 year 7 months ago
A vulnerability has been found in Adobe Photoshop Desktop up to 24.7.3/25.9.1 and classified as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to use after free.
This vulnerability is known as CVE-2024-34117. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-20789 | Adobe Dimension up to 3.4.11 use after free (apsb24-47)
1 year 7 months ago
A vulnerability, which was classified as critical, was found in Adobe Dimension up to 3.4.11. Affected is an unknown function. The manipulation leads to use after free.
This vulnerability is traded as CVE-2024-20789. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-34135 | Adobe Illustrator up to 27.9.4/28.5 out-of-bounds (apsb24-45)
1 year 7 months ago
A vulnerability, which was classified as problematic, has been found in Adobe Illustrator up to 27.9.4/28.5. This issue affects some unknown processing. The manipulation leads to out-of-bounds read.
The identification of this vulnerability is CVE-2024-34135. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-34134 | Adobe Illustrator up to 27.9.4/28.5 out-of-bounds (apsb24-45)
1 year 7 months ago
A vulnerability classified as problematic was found in Adobe Illustrator up to 27.9.4/28.5. This vulnerability affects unknown code. The manipulation leads to out-of-bounds read.
This vulnerability was named CVE-2024-34134. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-34126 | Adobe Dimension up to 3.4.11 out-of-bounds (apsb24-47)
1 year 7 months ago
A vulnerability classified as problematic has been found in Adobe Dimension up to 3.4.11. This affects an unknown part. The manipulation leads to out-of-bounds read.
This vulnerability is uniquely identified as CVE-2024-34126. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-34125 | Adobe Dimension up to 3.4.11 out-of-bounds (apsb24-47)
1 year 7 months ago
A vulnerability was found in Adobe Dimension up to 3.4.11. It has been rated as problematic. Affected by this issue is some unknown functionality. The manipulation leads to out-of-bounds read.
This vulnerability is handled as CVE-2024-34125. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-20790 | Adobe Dimension up to 3.4.11 out-of-bounds (apsb24-47)
1 year 7 months ago
A vulnerability was found in Adobe Dimension up to 3.4.11. It has been declared as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to out-of-bounds read.
This vulnerability is known as CVE-2024-20790. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com