Aggregator
直观解读 JuiceFS 的数据和元数据设计(一):看山是山(2024)
10 months 2 weeks ago
Published at 2024-10-27 | Last Update 2024-10-27 本系列分为三篇文章,试图通过简单的实地环境来直观理解 JuiceFS的数
直观解读 JuiceFS 的数据和元数据设计(二):看山不是山(2024)
10 months 2 weeks ago
Published at 2024-10-27 | Last Update 2024-10-27 本系列分为三篇文章,试图通过简单的实地环境来直观理解 JuiceFS的数
直观解读 JuiceFS 的数据和元数据设计(三):看山还是山(2024)
10 months 2 weeks ago
Published at 2024-10-27 | Last Update 2024-10-27 本系列分为三篇文章,试图通过简单的实地环境来直观理解 JuiceFS的数
Google dorking for beginners: how to find more vulnerabilities using Google search
10 months 2 weeks ago
Bug bounty hunters who spend time in content discovery and reconnaissance, in general, are always re
CVE-2013-3597 | SearchBlox up to 7.5 information disclosure (VU#592942 / EDB-38739)
10 months 2 weeks ago
A vulnerability has been found in SearchBlox up to 7.5 and classified as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to information disclosure.
This vulnerability is known as CVE-2013-3597. The attack can be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
攻防实战-fuzz上传接口到内网
10 months 2 weeks ago
前言不更新就是在hwww不是星标不推送文章了。师傅也不想吧~快把极梦C设置成星标吧。信息收集对目标进行系统收集,发现只有一个官网。页面有几个可以跳转的,官网->xxx系统->根据xxx系统title找
Some notes on Windows 11 Notepad
10 months 2 weeks ago
The new win11 version of Notepad accepts a few command line options that i have not seen documen
CVE-2008-2562 | PowerPhlogger 2.0.9/2.2.1/2.2.2a/2.2.5 edcss.php css_str sql injection (EDB-5744 / XFDB-42870)
10 months 2 weeks ago
A vulnerability, which was classified as critical, has been found in PowerPhlogger 2.0.9/2.2.1/2.2.2a/2.2.5. Affected by this issue is some unknown functionality of the file edcss.php. The manipulation of the argument css_str leads to sql injection.
This vulnerability is handled as CVE-2008-2562. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-5269 | Powie pSys 0.7.0 index.php shownews sql injection (EDB-5745 / XFDB-42916)
10 months 2 weeks ago
A vulnerability classified as critical was found in Powie pSys 0.7.0. This vulnerability affects unknown code of the file index.php. The manipulation of the argument shownews leads to sql injection.
This vulnerability was named CVE-2008-5269. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-2560 | Fourtwosevenbb 427BB 2.3.1 showpost.php post sql injection (EDB-5742 / XFDB-42876)
10 months 2 weeks ago
A vulnerability classified as critical has been found in Fourtwosevenbb 427BB 2.3.1. Affected is an unknown function of the file showpost.php. The manipulation of the argument post leads to sql injection.
This vulnerability is traded as CVE-2008-2560. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-2561 | Fourtwosevenbb 427BB 2.3.1 register.php keywords cross site scripting (EDB-5742 / XFDB-42877)
10 months 2 weeks ago
A vulnerability classified as problematic was found in Fourtwosevenbb 427BB 2.3.1. Affected by this vulnerability is an unknown functionality of the file register.php. The manipulation of the argument keywords leads to cross site scripting.
This vulnerability is known as CVE-2008-2561. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-2568 | Simple Shop Galore up to 3.4 on Joomla index.php catid sql injection (EDB-5743 / XFDB-42871)
10 months 2 weeks ago
A vulnerability was found in Simple Shop Galore up to 3.4 on Joomla. It has been rated as critical. Affected by this issue is some unknown functionality of the file index.php. The manipulation of the argument catid leads to sql injection.
This vulnerability is handled as CVE-2008-2568. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2002-1281 | KDE up to 3.0.4 rlogin KIO subsystem memory corruption (Nessus ID 13977 / XFDB-10602)
10 months 2 weeks ago
A vulnerability was found in KDE up to 3.0.4. It has been classified as critical. This affects an unknown part of the component rlogin KIO subsystem. The manipulation leads to memory corruption.
This vulnerability is uniquely identified as CVE-2002-1281. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Суперкомпьютер Summit подтвердил существование загадочных сисионных нейтронов
10 months 2 weeks ago
Скрытые процессы «разрыва шейки» показали неслучайный характер.
CVE-2024-10434 | Tenda AC1206 up to 20241027 /goform/ate ate_Tenda_mfg_check_usb/ate_Tenda_mfg_check_usb3 arg stack-based overflow
10 months 2 weeks ago
A vulnerability was found in Tenda AC1206 up to 20241027. It has been classified as critical. This affects the function ate_Tenda_mfg_check_usb/ate_Tenda_mfg_check_usb3 of the file /goform/ate. The manipulation of the argument arg leads to stack-based buffer overflow.
This vulnerability is uniquely identified as CVE-2024-10434. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
Submit #431291: tenda tenda router AC1206 Buffer Overflow [Accepted]
10 months 2 weeks ago
Submit #431291 / VDB-281985
physicszq
CVE-2024-10433 | Project Worlds Simple Web-Based Chat Application 1.0 /index.php Name/Comment cross site scripting
10 months 2 weeks ago
A vulnerability was found in Project Worlds Simple Web-Based Chat Application 1.0 and classified as problematic. Affected by this issue is some unknown functionality of the file /index.php. The manipulation of the argument Name/Comment leads to cross site scripting.
This vulnerability is handled as CVE-2024-10433. The attack may be launched remotely. Furthermore, there is an exploit available.
The initial researcher advisory mentions different parameters to be affected which do not correlate with the screenshots of a successful attack.
vuldb.com
CVE-2024-10432 | Project Worlds Simple Web-Based Chat Application 1.0 /index.php username sql injection
10 months 2 weeks ago
A vulnerability has been found in Project Worlds Simple Web-Based Chat Application 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /index.php. The manipulation of the argument username leads to sql injection.
This vulnerability is known as CVE-2024-10432. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2024-10431 | Codezips Pet Shop Management System 1.0 /deletebird.php t1 sql injection
10 months 2 weeks ago
A vulnerability, which was classified as critical, was found in Codezips Pet Shop Management System 1.0. Affected is an unknown function of the file /deletebird.php. The manipulation of the argument t1 leads to sql injection.
This vulnerability is traded as CVE-2024-10431. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com