Aggregator
CVE-2018-19550 | Interspire Email Marketer up to 6.1.6 File Upload surveys_submit.php unrestricted upload (ID 153018 / EDB-46864)
10 months 2 weeks ago
A vulnerability, which was classified as critical, has been found in Interspire Email Marketer up to 6.1.6. Affected by this issue is some unknown functionality of the file surveys_submit.php of the component File Upload. The manipulation leads to unrestricted upload.
This vulnerability is handled as CVE-2018-19550. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
Кибератака на Белый дом с использованием ИИ стала ударом по репутации США
10 months 2 weeks ago
Кто и зачем крадёт голос доверия Трампа.
CVE-2002-1603 | Goahead Webserver up to 2.1.7 Source information disclosure (VU#124059 / EDB-23446)
10 months 2 weeks ago
A vulnerability was found in Goahead Webserver up to 2.1.7. It has been rated as problematic. Affected by this issue is some unknown functionality. The manipulation with the input <url>/ leads to information disclosure (Source).
This vulnerability is handled as CVE-2002-1603. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
От Voyager 2 до «Хаббла» — как мы раскрываем тайны бирюзового мира, который меняет цвет и настроение с каждым сезоном
10 months 2 weeks ago
Исследование помогло лучше понять состав, цвет и климат далёкой планеты.
CVE-2024-50624 | KDE Kmail up to 6.1.x ispdbservice.cpp channel accessible (Nessus ID 210464)
10 months 2 weeks ago
A vulnerability, which was classified as problematic, was found in KDE Kmail up to 6.1.x. Affected is an unknown function of the file ispdbservice.cpp. The manipulation leads to channel accessible by non-endpoint.
This vulnerability is traded as CVE-2024-50624. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2010-4933 | Geeklog 1.3.8 lid sql injection (EDB-15091 / BID-43458)
10 months 2 weeks ago
A vulnerability classified as critical has been found in Geeklog 1.3.8. Affected is an unknown function. The manipulation of the argument lid leads to sql injection.
This vulnerability is traded as CVE-2010-4933. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-4919
10 months 2 weeks ago
Currently trending CVE - Hype Score: 27 - An attacker was able to perform an out-of-bounds read or write on a JavaScript object by confusing array index sizes. This vulnerability affects Firefox < 138.0.4, Firefox ESR < 128.10.1, Firefox ESR < 115.23.1, Thunderbird < 128.10.2, and Thunderbird < 138.0.2.
CVE-2017-13784 | Apple iOS up to 11.0.3 WebKit memory corruption (HT208222 / EDB-43171)
10 months 2 weeks ago
A vulnerability, which was classified as critical, has been found in Apple iOS up to 11.0.3. Affected by this issue is some unknown functionality of the component WebKit. The manipulation leads to memory corruption.
This vulnerability is handled as CVE-2017-13784. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
诚邀渠道合作伙伴共启新征程
10 months 2 weeks ago
【火绒安全周报】电费大额优惠或为洗钱陷阱/维密官网因安全事件关闭
10 months 2 weeks ago
CVE-2025-5290 | Borderless Plugin up to 1.7.1 on WordPress cross site scripting
10 months 2 weeks ago
A vulnerability was found in Borderless Plugin up to 1.7.1 on WordPress and classified as problematic. This issue affects some unknown processing. The manipulation leads to cross site scripting.
The identification of this vulnerability is CVE-2025-5290. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2025-4691 | Free Booking Plugin for Hotels, Restaurants and Car Rentals Plugin view_request_details resource injection
10 months 2 weeks ago
A vulnerability has been found in Free Booking Plugin for Hotels, Restaurants and Car Rentals Plugin up to 1.3.18/1.3.21 on WordPress and classified as problematic. This vulnerability affects the function view_request_details. The manipulation leads to improper control of resource identifiers.
This vulnerability was named CVE-2025-4691. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-4857 | Newsletters Plugin up to 4.9.9.9 on WordPress File file inclusion
10 months 2 weeks ago
A vulnerability, which was classified as problematic, was found in Newsletters Plugin up to 4.9.9.9 on WordPress. This affects an unknown part. The manipulation of the argument File leads to file inclusion.
This vulnerability is uniquely identified as CVE-2025-4857. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
CVE-2018-25111 | django-helpdesk 0.x models.py os.umask(0) insecure inherited permissions (ID 591)
10 months 2 weeks ago
A vulnerability, which was classified as problematic, has been found in django-helpdesk 0.x. Affected by this issue is the function os.umask(0) of the file models.py. The manipulation leads to insecure inherited permissions.
This vulnerability is handled as CVE-2018-25111. An attack has to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Flocker
10 months 2 weeks ago
You must login to view this content
cohenido
Роботы на месте Зевса: Олимпийские игры выходят в апгрейд
10 months 2 weeks ago
От бега и прыжков до метания копья — машины соревнуются по-человечески.
Dire Wolf
10 months 2 weeks ago
You must login to view this content
cohenido
CVE-2019-4716 | IBM Planning Analytics up to 2.0.8 TM1 Script privileges management (ID 156953 / EDB-48273)
10 months 2 weeks ago
A vulnerability classified as critical has been found in IBM Planning Analytics up to 2.0.8. This affects an unknown part of the component TM1 Script Handler. The manipulation leads to improper privilege management.
This vulnerability is uniquely identified as CVE-2019-4716. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
Dire Wolf
10 months 2 weeks ago
You must login to view this content
cohenido