Aggregator
对抗沙箱的银狐 vt首发2/69 Golang免杀样本
2 months ago
当前环境出现异常,需完成验证后方可继续访问。
美团正式发布并开源 LongCat-Flash-Chat,动态计算开启高效 AI 时代
2 months ago
我们正式发布 LongCat-Flash-Chat,并同步开源。LongCat-Flash 采用创新性混合专家模型(Mixture-of-Experts, MoE)架构,总参数 560B,激活参数 18.6B~31.3B(平均 27B),实现了计算效率与性能的双重优化。
美团技术团队
Overview of Content Published in August
2 months ago
这篇文章概述了作者在八月份发布的博客文章和SANS ISC日记条目,包括pdf-parser.py的更新、Wireshark 4.4.9的发布以及pdf-parser处理所有流的功能介绍。
威努特地下综合管廊建设方案守护城市大动脉
2 months ago
保障市政行业工控系统的稳定、高效、安全运行。
CVE-2002-1885 | PowerPhlogger 2.0.9/2.2.1/2.2.2a showhits.php3 rel_path privileges management (EDB-2602 / ID 10952)
2 months ago
A vulnerability labeled as critical has been found in PowerPhlogger 2.0.9/2.2.1/2.2.2a. Affected by this issue is some unknown functionality of the file showhits.php3. Such manipulation of the argument rel_path leads to improper privilege management.
This vulnerability is documented as CVE-2002-1885. The attack can be executed remotely. Additionally, an exploit exists.
vuldb.com
CVE-2002-1887 | Gregory Kokanosky phpMyNewsletter 0.6.10 customize.php l privileges management (EDB-3658 / ID 10875)
2 months ago
A vulnerability described as critical has been identified in Gregory Kokanosky phpMyNewsletter 0.6.10. This vulnerability affects unknown code of the file customize.php. Executing manipulation of the argument l can lead to improper privilege management.
This vulnerability appears as CVE-2002-1887. The attack may be performed from remote. In addition, an exploit is available.
vuldb.com
CVE-2002-1894 | phpBB 2.0.3 viewtopic.php highlight cross site scripting (ID 10906 / XFDB-10653)
2 months ago
A vulnerability was found in phpBB 2.0.3. It has been classified as problematic. Affected is an unknown function of the file viewtopic.php. The manipulation of the argument highlight leads to basic cross site scripting.
This vulnerability is referenced as CVE-2002-1894. Remote exploitation of the attack is possible. No exploit is available.
vuldb.com
CVE-2002-1878 | w-Agora 4.1.1/4.1.2/4.1.3 inc_dir privileges management (EDB-21529 / ID 10720)
2 months ago
A vulnerability has been found in w-Agora 4.1.1/4.1.2/4.1.3 and classified as critical. Impacted is an unknown function. This manipulation of the argument inc_dir causes improper privilege management.
The identification of this vulnerability is CVE-2002-1878. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2002-1900 | Pinboard 1.0 Tasklist cross site scripting (ID 10743 / XFDB-9330)
2 months ago
A vulnerability marked as problematic has been reported in Pinboard 1.0. Impacted is an unknown function of the component Tasklist Handler. The manipulation leads to basic cross site scripting.
This vulnerability is documented as CVE-2002-1900. The attack can be initiated remotely. There is not any exploit available.
vuldb.com
CVE-2002-1902 | Markus Triska CGIForum up to 1.0.5 Post infinite loop (ID 10714 / XFDB-10055)
2 months ago
A vulnerability classified as problematic has been found in Markus Triska CGIForum up to 1.0.5. The impacted element is an unknown function of the component Post Handler. This manipulation causes infinite loop.
This vulnerability appears as CVE-2002-1902. The attack may be initiated remotely. There is no available exploit.
vuldb.com
CVE-2002-1908 | Microsoft IIS 5.0/5.1 HTTP Request Host denial of service (ID 86413 / XFDB-10370)
2 months ago
A vulnerability was found in Microsoft IIS 5.0/5.1. It has been classified as problematic. This affects an unknown part of the component HTTP Request Handler. This manipulation of the argument Host with the input / causes denial of service.
The identification of this vulnerability is CVE-2002-1908. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
NepCTF 2025 部分wp
2 months ago
Crypto,Misc,Web各三道
记一次众测某Django网站的测试
2 months ago
末次众测的一次对Django网站的测试
OPENRASP源码详解
2 months ago
想要研究一下RASP技术,但是网上有关OPENRASP的讲解都比较的粗略,属于是大佬们自己看的懂了,就不管细节了那种,于是想要写这样一篇详细并且深入的源码剖析。
IOC Alert: Lumma Stealer C2 Domain Identified – larpfxs[.]top
2 months ago
IOC Alert: Lumma Stealer C2 Domain Identified – larpfxs[.]top
Dark Web Informer
CVE-2024-44292 | Apple macOS up to 15.0 log file (WID-SEC-2024-3291)
2 months ago
A vulnerability, which was classified as problematic, has been found in Apple macOS up to 15.0. This issue affects some unknown processing. The manipulation leads to sensitive information in log files.
This vulnerability is listed as CVE-2024-44292. The attack must be carried out locally. There is no available exploit.
It is advisable to upgrade the affected component.
vuldb.com
CVE-2024-44289 | Apple macOS up to 13.6/14.6 information disclosure (Nessus ID 211697 / WID-SEC-2024-3291)
2 months ago
A vulnerability classified as problematic has been found in Apple macOS up to 13.6/14.6. Affected by this issue is some unknown functionality. The manipulation leads to information disclosure.
This vulnerability is traded as CVE-2024-44289. An attack has to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-44290 | Apple watchOS information disclosure (WID-SEC-2024-3291)
2 months ago
A vulnerability, which was classified as problematic, was found in Apple watchOS. This issue affects some unknown processing. Executing manipulation can lead to information disclosure.
The identification of this vulnerability is CVE-2024-44290. The attack can only be executed locally. There is no exploit available.
You should upgrade the affected component.
vuldb.com
CVE-2024-44290 | Apple iOS/iPadOS information disclosure (WID-SEC-2024-3291)
2 months ago
A vulnerability has been found in Apple iOS and iPadOS and classified as problematic. Impacted is an unknown function. The manipulation leads to information disclosure.
This vulnerability is referenced as CVE-2024-44290. The attack can only be performed from a local environment. No exploit is available.
The affected component should be upgraded.
vuldb.com