Aggregator
SecWiki News 2024-11-21 Review
5 days 12 hours ago
执法机构能破解哪些手机 by ourren
2024 年第三季度 DDoS 威胁趋势报告 by ourren
美军JIE(联合信息环境)研究及数字蓝军靶场建设思考 by ourren
更多最新文章,请访问SecWiki
2024 年第三季度 DDoS 威胁趋势报告 by ourren
美军JIE(联合信息环境)研究及数字蓝军靶场建设思考 by ourren
更多最新文章,请访问SecWiki
新型 “Helldown ”勒索软件变种将攻击范围扩大到 VMware 和 Linux 系统
5 days 12 hours ago
安全客
CVE-2024-11068 | D-Link DSL6740C Web/SSH/Telnet incorrect privileged apis (Nessus ID 211678)
5 days 12 hours ago
A vulnerability was found in D-Link DSL6740C. It has been classified as very critical. Affected is an unknown function of the component Web/SSH/Telnet. The manipulation leads to incorrect use of privileged apis. NOTE: This vulnerability only affects products that are no longer supported by the maintainer.
This vulnerability is traded as CVE-2024-11068. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
Chinese APT Gelsemium Targets Linux Systems with New WolfsBane Backdoor
5 days 12 hours ago
The China-aligned advanced persistent threat (APT) actor known as Gelsemium has been observed using a new Linux backdoor dubbed WolfsBane as part of cyber attacks likely targeting East and Southeast Asia.
That's according to findings from cybersecurity firm ESET based on multiple Linux samples uploaded to the VirusTotal platform from Taiwan, the Philippines, and Singapore in March 2023.
The Hacker News
太空技术巨头 Maxar 证实攻击者获取了员工数据
5 days 12 hours ago
安全客
US seizes PopeyeTools cybercrime marketplace, charges administrators
5 days 12 hours ago
The U.S. has seized the cybercrime website 'PopeyeTools' and unsealed charges against three of its administrators, Abdul Ghaffar, Abdul Sami, and Javed Mirza, for selling stolen data. [...]
Bill Toulas
CVE-2015-5868 | Apple iOS up to 8.4.1 Kernel memory corruption (HT205212 / ID 370192)
5 days 12 hours ago
A vulnerability was found in Apple iOS up to 8.4.1. It has been classified as problematic. This affects an unknown part of the component Kernel. The manipulation leads to memory corruption.
This vulnerability is uniquely identified as CVE-2015-5868. Attacking locally is a requirement. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2015-5896 | Apple iOS up to 8.4.1 Kernel memory corruption (HT205212 / ID 370192)
5 days 12 hours ago
A vulnerability was found in Apple iOS up to 8.4.1 and classified as problematic. This issue affects some unknown processing of the component Kernel. The manipulation leads to memory corruption.
The identification of this vulnerability is CVE-2015-5896. Local access is required to approach this attack. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2015-5868 | Apple Watch up to 1.0.2 Kernel memory corruption (HT205213 / ID 370192)
5 days 12 hours ago
A vulnerability classified as critical has been found in Apple Watch up to 1.0.2. This affects an unknown part of the component Kernel. The manipulation leads to memory corruption.
This vulnerability is uniquely identified as CVE-2015-5868. An attack has to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2015-5896 | Apple Watch up to 1.0.2 Kernel memory corruption (HT205213 / ID 370192)
5 days 12 hours ago
A vulnerability classified as critical was found in Apple Watch up to 1.0.2. This vulnerability affects unknown code of the component Kernel. The manipulation leads to memory corruption.
This vulnerability was named CVE-2015-5896. Local access is required to approach this attack. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2015-5867 | Apple iOS up to 8.4.1 IOHIDFamily memory corruption (HT205212 / ID 370192)
5 days 12 hours ago
A vulnerability classified as critical has been found in Apple iOS up to 8.4.1. This affects an unknown part of the component IOHIDFamily. The manipulation leads to memory corruption.
This vulnerability is uniquely identified as CVE-2015-5867. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2015-5863 | Apple iOS up to 8.4.1 IOStorageFamily Kernel Memory information disclosure (HT205212 / ID 370192)
5 days 12 hours ago
A vulnerability, which was classified as problematic, was found in Apple iOS up to 8.4.1. Affected is an unknown function of the component IOStorageFamily. The manipulation leads to information disclosure (Kernel Memory).
This vulnerability is traded as CVE-2015-5863. The attack needs to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2015-5863 | Apple Watch up to 1.0.2 IOStorageFamily Kernel Memory information disclosure (HT205213 / ID 370192)
5 days 12 hours ago
A vulnerability was found in Apple Watch up to 1.0.2. It has been rated as problematic. Affected by this issue is some unknown functionality of the component IOStorageFamily. The manipulation leads to information disclosure (Kernel Memory).
This vulnerability is handled as CVE-2015-5863. The attack needs to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
如何将DOM XSS升级为一键帐户接管(上集)
5 days 13 hours ago
CVE-2009-0707 | Powerscripts PowerClan 1.14a admin/index.php loginemail sql injection (EDB-7642 / XFDB-47702)
5 days 13 hours ago
A vulnerability was found in Powerscripts PowerClan 1.14a. It has been declared as critical. This vulnerability affects unknown code of the file admin/index.php. The manipulation of the argument loginemail leads to sql injection.
This vulnerability was named CVE-2009-0707. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2009-0177 | vmware Player up to 2.5.1 vmware-authd vmware-authd.exe resource management (EDB-7647 / Nessus ID 36117)
5 days 13 hours ago
A vulnerability classified as problematic has been found in vmware Player. Affected is an unknown function in the library vmwarebase.dll of the file vmware-authd.exe of the component vmware-authd. The manipulation leads to improper resource management.
This vulnerability is traded as CVE-2009-0177. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2009-0177 | VMware Player 2.5.1 vmware-authd denial of service (EDB-7647 / ID 116348)
5 days 13 hours ago
A vulnerability was found in VMware Player 2.5.1 and classified as problematic. Affected by this issue is some unknown functionality of the component vmware-authd. The manipulation leads to denial of service.
This vulnerability is handled as CVE-2009-0177. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2009-0705 | PowerScripts PowerNews 2.5.4 news.php newsid sql injection (EDB-7641 / XFDB-47701)
5 days 13 hours ago
A vulnerability was found in PowerScripts PowerNews 2.5.4 and classified as critical. Affected by this issue is some unknown functionality of the file news.php. The manipulation of the argument newsid leads to sql injection.
This vulnerability is handled as CVE-2009-0705. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2009-0491 | Elecard Elecard MPEG Player 5.5 memory corruption (EDB-7637 / SA33355)
5 days 13 hours ago
A vulnerability was found in Elecard Elecard MPEG Player 5.5. It has been declared as very critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to memory corruption.
This vulnerability is known as CVE-2009-0491. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com