Aggregator
.NET内网实战:修改注册表关闭Windows Defender
2 months 1 week ago
微软正式表态 Windows 11 8月更新与 SSD 硬盘故障无任何联系|KB5063878
2 months 1 week ago
微软正式回应Windows 11 8月更新KB5063878与SSD硬盘故障无关联,经过调查未发现两者联系。
2 months 1 week ago
r/HowToHack是一个黑客社区,帮助新手成长为资深人士。成员可以提问、回答和学习,并通过Discord交流。
Can i earn money using dw?
2 months 1 week ago
r/deepweb 是一个 Reddit 社区,旨在辟谣都市传说并分享 Tor 深网的真实可验证信息。
Беркли унизил роботов одним исследованием — 100 тысяч лет нужно, чтобы научить машину держать ложку
2 months 1 week ago
В голове — Гегель и рассуждения о душе. В руках — тремор и 404.
Certificate question
2 months 1 week ago
该文章讨论了数字取证领域的相关内容及其应用范围,并探讨了适合初级事件响应人员的认证选择问题。
用 Mac 打造智能化餐厅,这是海底捞给出的答案
2 months 1 week ago
海底捞通过引入iPad点餐、云端系统及与阿里合作推动数字化转型,并在门店部署AI技术提升运营效率。近期启用Mac mini实现本地AI监测与运算,高峰期桌台利用率高达95%,能耗降78%,成本节省52%。未来将配备Apple Watch优化沟通。
CVE-2025-54946 | SUNNET Corporate Training Management System up to 10.10 sql injection
2 months 1 week ago
A vulnerability classified as critical was found in SUNNET Corporate Training Management System up to 10.10. This affects an unknown function. Executing manipulation can lead to sql injection.
This vulnerability is registered as CVE-2025-54946. It is possible to launch the attack remotely. No exploit is available.
Upgrading the affected component is advised.
vuldb.com
CVE-2025-57752 | vercel next.js up to 14.2.30/15.4.4 Image Optimization API cache containing sensitive information (GHSA-g5qg-72qw-gw5v)
2 months 1 week ago
A vulnerability classified as problematic has been found in vercel next.js up to 14.2.30/15.4.4. The impacted element is an unknown function of the component Image Optimization API. Performing manipulation results in use of cache containing sensitive information.
This vulnerability is cataloged as CVE-2025-57752. The attack must be initiated from a local position. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-57822 | vercel next.js up to 14.2.31/15.4.6 next server-side request forgery (GHSA-4342-x723-ch2f)
2 months 1 week ago
A vulnerability described as critical has been identified in vercel next.js up to 14.2.31/15.4.6. The affected element is the function Next. Such manipulation leads to server-side request forgery.
This vulnerability is listed as CVE-2025-57822. The attack may be performed from remote. There is no available exploit.
Upgrading the affected component is recommended.
vuldb.com
CVE-2025-58156 | nofusscomputing centurion_erp up to 1.20.x improper authorization (GHSA-x75j-cm35-5qcg)
2 months 1 week ago
A vulnerability marked as critical has been reported in nofusscomputing centurion_erp up to 1.20.x. Impacted is an unknown function. This manipulation causes improper authorization.
This vulnerability is tracked as CVE-2025-58156. The attack is restricted to local execution. No exploit exists.
It is suggested to upgrade the affected component.
vuldb.com
CVE-2025-54943 | SUNNET Corporate Training Management System up to 10.10 authorization
2 months 1 week ago
A vulnerability labeled as very critical has been found in SUNNET Corporate Training Management System up to 10.10. This issue affects some unknown processing. The manipulation results in missing authorization.
This vulnerability is identified as CVE-2025-54943. The attack can be executed remotely. There is not any exploit available.
The affected component should be upgraded.
vuldb.com
CVE-2025-54942 | SUNNET Corporate Training Management System up to 10.10 missing authentication
2 months 1 week ago
A vulnerability identified as critical has been detected in SUNNET Corporate Training Management System up to 10.10. This vulnerability affects unknown code. The manipulation leads to missing authentication.
This vulnerability is referenced as CVE-2025-54942. Remote exploitation of the attack is possible. No exploit is available.
You should upgrade the affected component.
vuldb.com
CVE-2025-54945 | SUNNET Corporate Training Management System up to 10.10 File file inclusion
2 months 1 week ago
A vulnerability categorized as very critical has been discovered in SUNNET Corporate Training Management System up to 10.10. This affects an unknown part of the component File Handler. Executing manipulation can lead to file inclusion.
The identification of this vulnerability is CVE-2025-54945. The attack may be launched remotely. There is no exploit available.
It is advisable to upgrade the affected component.
vuldb.com
CVE-2025-55173 | vercel next.js up to 14.2.30/15.4.4 Image input validation (GHSA-xv57-4mr9-wg8v)
2 months 1 week ago
A vulnerability was found in vercel next.js up to 14.2.30/15.4.4. It has been rated as problematic. Affected by this issue is some unknown functionality of the component Image Handler. Performing manipulation results in improper input validation.
This vulnerability was named CVE-2025-55173. The attack may be initiated remotely. There is no available exploit.
Upgrading the affected component is advised.
vuldb.com
CVE-2025-54944 | SUNNET Corporate Training Management System up to 10.10 unrestricted upload
2 months 1 week ago
A vulnerability was found in SUNNET Corporate Training Management System up to 10.10. It has been declared as critical. Affected by this vulnerability is an unknown functionality. Such manipulation leads to unrestricted upload.
This vulnerability is uniquely identified as CVE-2025-54944. The attack can be launched remotely. No exploit exists.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-34165 | NetSupport Manager 9.10/10.20/11.00 stack-based overflow (EUVD-2025-26248)
2 months 1 week ago
A vulnerability was found in NetSupport Manager 9.10/10.20/11.00. It has been classified as critical. Affected is an unknown function. This manipulation causes stack-based buffer overflow.
This vulnerability is handled as CVE-2025-34165. The attack can be initiated remotely. There is not any exploit available.
Upgrading the affected component is recommended.
vuldb.com
CVE-2025-34164 | NetSupport Manager 9.10/10.20/11.00 heap-based overflow (EUVD-2025-26268)
2 months 1 week ago
A vulnerability was found in NetSupport Manager 9.10/10.20/11.00 and classified as critical. This impacts an unknown function. The manipulation results in heap-based buffer overflow.
This vulnerability is known as CVE-2025-34164. It is possible to launch the attack remotely. No exploit is available.
It is suggested to upgrade the affected component.
vuldb.com
CVE-2025-4956 | AA-Team Pro Bulk Watermark Plugin up to 2.0 on WordPress path traversal
2 months 1 week ago
A vulnerability has been found in AA-Team Pro Bulk Watermark Plugin up to 2.0 on WordPress and classified as problematic. This affects an unknown function. The manipulation leads to path traversal: '.../...//'.
This vulnerability is traded as CVE-2025-4956. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com