The latest draft version of NIST's password guidelines simplifies password management best practices and eliminates those that did not promote stronger security.
A vulnerability classified as critical has been found in Modelisme Forum and Portal 3.6.9. Affected is an unknown function of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
This vulnerability is traded as CVE-2014-7022. The attack needs to be done within the local network. There is no exploit available.
A vulnerability was found in Leg Surgery - Kids Games 1.0.2. It has been rated as critical. This issue affects some unknown processing of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
The identification of this vulnerability is CVE-2014-7021. The attack can only be initiated within the local network. There is no exploit available.
A vulnerability was found in Apache Tomcat up to 1.2.48. It has been classified as critical. Affected is an unknown function of the component mod_jk. The manipulation leads to improper access controls.
This vulnerability is traded as CVE-2023-41081. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in sidekiq up to 7.1.2. It has been declared as problematic. This vulnerability affects unknown code of the file dashboard-charts.js. The manipulation of the argument localStorage leads to denial of service.
This vulnerability was named CVE-2023-26141. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in GNOME Time Tracker 3.0.2. It has been declared as problematic. This vulnerability affects unknown code. The manipulation leads to csv injection.
This vulnerability was named CVE-2023-36250. The attack needs to be approached locally. There is no exploit available.
A vulnerability classified as problematic has been found in Cheese Cafe Line 13.6.1. This affects an unknown part of the component Message Handler. The manipulation leads to information disclosure.
This vulnerability is uniquely identified as CVE-2023-39040. The attack can only be initiated within the local network. There is no exploit available.
A vulnerability, which was classified as problematic, was found in TonTon-Tei_waiting Line 13.6.1. Affected is an unknown function of the component Message Handler. The manipulation leads to information disclosure.
This vulnerability is traded as CVE-2023-39046. Access to the local network is required for this attack. There is no exploit available.
A vulnerability was found in Heimdal up to 2.6.9/3.4.2 and classified as critical. Affected by this issue is some unknown functionality of the component Thor Agent. The manipulation leads to improper access controls.
This vulnerability is handled as CVE-2023-29485. The attack needs to be approached within the local network. There is no exploit available.
A vulnerability was found in Heimdal up to 2.6.9/3.4.2 on Windows. It has been declared as problematic. This vulnerability affects unknown code of the component Thor Agent. The manipulation leads to denial of service.
This vulnerability was named CVE-2023-29487. The attack can only be initiated within the local network. There is no exploit available.
A vulnerability, which was classified as critical, was found in WP Mail Log Plugin up to 1.1.2 on WordPress. This affects an unknown part of the component REST API Endpoint. The manipulation leads to improper authorization.
This vulnerability is uniquely identified as CVE-2023-5644. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Fortinet FortiOS and FortiProxy and classified as very critical. Affected by this issue is some unknown functionality of the component Administrative Interface. The manipulation leads to authentication bypass using alternate channel.
This vulnerability is handled as CVE-2022-40684. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as critical, was found in HP AdvanceStack 10Base-T Switching Hub J3210a up to A.03.07. Affected is an unknown function of the file web_access.html of the component Configuration Utility. The manipulation leads to improper privilege management.
This vulnerability is traded as CVE-2002-0250. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to apply restrictive firewalling.
A vulnerability, which was classified as problematic, has been found in Linux Kernel 2.6.20.1. Affected by this issue is some unknown functionality of the component pt_chown Command. The manipulation leads to improper privilege management.
This vulnerability is handled as CVE-1999-0720. Attacking locally is a requirement. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Diabetes Forum 3.9.30. It has been declared as critical. This vulnerability affects unknown code of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
This vulnerability was named CVE-2014-7020. The attack can only be done within the local network. There is no exploit available.
A vulnerability was found in Blynk Clarks Inn 3.3.0. It has been classified as critical. This affects an unknown part of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
This vulnerability is uniquely identified as CVE-2014-7019. The attack needs to be approached within the local network. There is no exploit available.
A vulnerability classified as critical has been found in It747 Realtor 747. This affects an unknown part of the file index.php. The manipulation of the argument categoryid leads to sql injection.
This vulnerability is uniquely identified as CVE-2007-3810. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
There will be four major categories in the 2025 retread of the hacking competition, with prizes ranging for each challenge, from $20,000 to half a million.