Aggregator
CVE-2023-41196 | D-Link DAP-1325 HNAP SetHostIPv6StaticSettings StaticAddress command injection (ZDI-23-1304)
CVE-2023-41195 | D-Link DAP-1325 HNAP SetHostIPv6Settings IPv6Mode command injection (ZDI-23-1303)
CVE-2023-51405 | BookingPress Plugin up to 1.0.74 on WordPress Price bookingpress_confirm_booking access control
CVE-2024-30486 | Max Foundry Media Library Folders Plugin up to 8.1.7 on WordPress sql injection
CVE-2024-3615 | Media Library Folders Plugin up to 8.2.0 on WordPress cross site scripting
攻防对抗中的六个“AI VS. AI”最佳实践
警惕!黑客组织 Lazarus 在 npm 平台投放恶意软件包;SolarWinds网络帮助台漏洞曝光:攻击者可解密敏感密码
Ollama Unauthorized Access Vulnerability Due to Improper Configuration (CNVD-2025-04094)
Overview Recently, NSFOCUS detected that Ollama improperly configured and unauthorized access vulnerabilities were disclosed online (CNVD-2025-04094); Because Ollama does not have authentication and access control functions by default, when a user opens the service (port 11434 by default) to the public network, an unauthenticated attacker can directly call its API interface to steal sensitive model […]
The post Ollama Unauthorized Access Vulnerability Due to Improper Configuration (CNVD-2025-04094) appeared first on NSFOCUS, Inc., a global network and cyber security leader, protects enterprises and carriers from advanced cyber attacks..
The post Ollama Unauthorized Access Vulnerability Due to Improper Configuration (CNVD-2025-04094) appeared first on Security Boulevard.