Aggregator
CVE-2014-5794 | Passion4profession 8 Minutes Abs Workout 2.0.9 X.509 Certificate cryptographic issues (VU#582497)
1 year 6 months ago
A vulnerability has been found in Passion4profession 8 Minutes Abs Workout 2.0.9 and classified as critical. Affected by this vulnerability is an unknown functionality of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
This vulnerability is known as CVE-2014-5794. The attack needs to be done within the local network. There is no exploit available.
vuldb.com
CVE-2017-2961 | Adobe Acrobat Reader up to 11.0.18/15.006.30244/15.020.20042 XFA Engine use after free (APSB17-01 / Nessus ID 96455)
1 year 6 months ago
A vulnerability was found in Adobe Acrobat Reader up to 11.0.18/15.006.30244/15.020.20042 and classified as critical. Affected by this issue is some unknown functionality of the component XFA Engine. The manipulation leads to use after free.
This vulnerability is handled as CVE-2017-2961. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2017-2960 | Adobe Acrobat Reader up to 11.0.18/15.006.30244/15.020.20042 EXIF Metadata memory corruption (APSB17-01 / Nessus ID 96455)
1 year 6 months ago
A vulnerability has been found in Adobe Acrobat Reader up to 11.0.18/15.006.30244/15.020.20042 and classified as critical. Affected by this vulnerability is an unknown functionality of the component EXIF Metadata Handler. The manipulation leads to memory corruption.
This vulnerability is known as CVE-2017-2960. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2007-1790 | Kaqoo Auction Software rdal_object.inc.php install_root code injection (EDB-3607 / XFDB-33335)
1 year 6 months ago
A vulnerability was found in Kaqoo Auction Software. It has been rated as critical. Affected by this issue is some unknown functionality of the file include/core/rdal_object.inc.php. The manipulation of the argument install_root leads to code injection.
This vulnerability is handled as CVE-2007-1790. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
Автоматизация по-африкански: роботы подают кофе, а люди теряют работу
1 year 6 months ago
Роботы-официанты стали реальностью в столице Кении.
CVE-2014-5793 | mobilecraft Bilgi Yarisi 1.8 X.509 Certificate cryptographic issues (VU#582497)
1 year 6 months ago
A vulnerability, which was classified as critical, was found in mobilecraft Bilgi Yarisi 1.8. Affected is an unknown function of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
This vulnerability is traded as CVE-2014-5793. The attack can only be initiated within the local network. There is no exploit available.
vuldb.com
CVE-2007-1790 | Kaqoo Auction Software function.inc.php install_root code injection (EDB-3607 / XFDB-33335)
1 year 6 months ago
A vulnerability was found in Kaqoo Auction Software. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file include/core/function.inc.php. The manipulation of the argument install_root leads to code injection.
This vulnerability is known as CVE-2007-1790. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2007-1790 | Kaqoo Auction Software Interfaces support.inc.php install_root code injection (EDB-3607 / XFDB-33335)
1 year 6 months ago
A vulnerability has been found in Kaqoo Auction Software and classified as critical. This vulnerability affects unknown code of the file support.inc.php of the component Interfaces. The manipulation of the argument install_root leads to code injection.
This vulnerability was named CVE-2007-1790. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
Двойная игра Дурова: как создатель Telegram тайно сотрудничал со спецслужбами
1 year 6 months ago
Публичный защитник конфиденциальности оказался в сложной ситуации.
CVE-2014-5792 | Drecom Reign of Dragons: Build-Battle 2.4.2 X.509 Certificate cryptographic issues (VU#582497)
1 year 6 months ago
A vulnerability, which was classified as critical, has been found in Drecom Reign of Dragons: Build-Battle 2.4.2. This issue affects some unknown processing of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
The identification of this vulnerability is CVE-2014-5792. The attack can only be done within the local network. There is no exploit available.
vuldb.com
CVE-2007-1791 | Alexscriptengine Picture-Engine 1.2.0 wall.php cat sql injection (EDB-3605 / XFDB-33325)
1 year 6 months ago
A vulnerability was found in Alexscriptengine Picture-Engine 1.2.0 and classified as critical. This issue affects some unknown processing of the file wall.php. The manipulation of the argument cat leads to sql injection.
The identification of this vulnerability is CVE-2007-1791. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
AlpacaHack Round 2 (Web)
1 year 6 months ago
Name: AlpacaHack Round 2 (Web) (an AlpacaHack event.)
Date: Sept. 1, 2024, 3 a.m. — 01 Sept. 2024, 09:00 UTC [add to calendar]
Format: Jeopardy
On-line
Offical URL: https://alpacahack.com/ctfs/round-2
Rating weight: 0
Event organizers: AlpacaHack
Date: Sept. 1, 2024, 3 a.m. — 01 Sept. 2024, 09:00 UTC [add to calendar]
Format: Jeopardy
On-line
Offical URL: https://alpacahack.com/ctfs/round-2
Rating weight: 0
Event organizers: AlpacaHack
CVE-2011-2921 | ktsuss up to 1.4 Privileges dropped privileges (ID 154307 / EDB-47344)
1 year 6 months ago
A vulnerability was found in ktsuss up to 1.4. It has been classified as critical. Affected is an unknown function of the component Privileges. The manipulation leads to improper check for dropped privileges.
This vulnerability is traded as CVE-2011-2921. The attack needs to be approached locally. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Кибератаки за $10: Telegram превращает DDoS в доступную услугу
1 year 6 months ago
DDoS-as-a-Service набирает популярность среди киберпреступников.
CVE-2017-2959 | Adobe Acrobat Reader up to 11.0.18/15.006.30244/15.020.20042 Image Conversion Engine memory corruption (APSB17-01 / Nessus ID 96455)
1 year 6 months ago
A vulnerability, which was classified as critical, was found in Adobe Acrobat Reader up to 11.0.18/15.006.30244/15.020.20042. Affected is an unknown function of the component Image Conversion Engine. The manipulation leads to memory corruption.
This vulnerability is traded as CVE-2017-2959. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2017-2958 | Adobe Acrobat Reader up to 11.0.18/15.006.30244/15.020.20042 Javascript Engine use after free (APSB17-01 / Nessus ID 96455)
1 year 6 months ago
A vulnerability, which was classified as critical, has been found in Adobe Acrobat Reader up to 11.0.18/15.006.30244/15.020.20042. This issue affects some unknown processing of the component Javascript Engine. The manipulation leads to use after free.
The identification of this vulnerability is CVE-2017-2958. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2004-0734 | eXtropia Webstore 1.0/2.0 Web_Store.cgi page privileges management (EDB-1048 / XFDB-16710)
1 year 6 months ago
A vulnerability was found in eXtropia Webstore 1.0/2.0 and classified as critical. Affected by this issue is some unknown functionality of the file Web_Store.cgi. The manipulation of the argument page leads to improper privilege management.
This vulnerability is handled as CVE-2004-0734. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2014-5791 | Daumcorp Daum Cloud 1.6.18 X.509 Certificate cryptographic issues (VU#582497)
1 year 6 months ago
A vulnerability classified as critical was found in Daumcorp Daum Cloud 1.6.18. This vulnerability affects unknown code of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
This vulnerability was named CVE-2014-5791. The attack needs to be approached within the local network. There is no exploit available.
vuldb.com
【即刻说】第8期 | 极客育儿经
1 year 6 months ago