Aggregator
AI大模型漏洞挖掘
2 months 2 weeks ago
声明:文章中涉及的程序(方法)可能带有攻击性,仅供安全研究与教学之用,读者将其信息做其他用途,由用户承担全部
叠加618优惠券更划算!7天打造 IDA 9.0 大师
2 months 2 weeks ago
7天系统学习,掌握通用方法论。
积累实战经验,提升技术竞争力。
安全,岂能由天?2025看雪T恤开售
2 months 2 weeks ago
暗网毒市 “Archetyp” 被端!累计交易额超 2.5 亿欧元,抓捕管理员及核心卖家
2 months 2 weeks ago
多国警方联合,成功捣毁运营 5 年、用户超 60 万的暗网毒市 “Archetyp”,抓捕管理员及核心卖家,冻结千万欧元资产。
Linux 3.10 版本编译 qemu仿真 busybox
2 months 2 weeks ago
看雪论坛作者ID:GotEOF
Мы — не просто тела. Мы — маяки. Свет разума проходит сквозь череп, даже когда мы молчим
2 months 2 weeks ago
Оказывается, наш мозг умеет излучать фотоны… и кому же это выгодно?
报告:以色列对伊朗发动军事行动以来面临的网络攻击激增700%
2 months 2 weeks ago
以色列网络安全公司称以色列面临的网络威胁形势急剧升级
神秘厂商可以获得谷歌、脸书、币安等知名服务的短信验证码
2 months 2 weeks ago
短信验证码不安全
«Мы здесь, чтобы мстить»: Telegram-группа CyberAv3ngers вышла за пределы Израиля
2 months 2 weeks ago
Он управлял насосами США с другого континента — и только сейчас его ник появился в списках Госдепа.
【已复现】泛微 E-cology SQL注入漏洞
2 months 2 weeks ago
检测业务是否受到此漏洞影响,请联系长亭应急服务团队!
CVE-2024-47196 | Siemens ModelSim/Questa prior 2024.3 vsimk.exe uncontrolled search path (ssa-426509)
2 months 2 weeks ago
A vulnerability classified as critical was found in Siemens ModelSim and Questa. Affected by this vulnerability is an unknown functionality of the file vsimk.exe. The manipulation leads to uncontrolled search path.
This vulnerability is known as CVE-2024-47196. Attacking locally is a requirement. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-6141 | GNU ncurses up to 6.5-20250322 tinfo/parse_entry.c postprocess_termcap stack-based overflow
2 months 2 weeks ago
A vulnerability has been found in GNU ncurses up to 6.5-20250322 and classified as problematic. This vulnerability affects the function postprocess_termcap of the file tinfo/parse_entry.c. The manipulation leads to stack-based buffer overflow.
This vulnerability was named CVE-2025-6141. The attack needs to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-6142 | Intera InHire up to 20250530 29chcotoo9 server-side request forgery
2 months 2 weeks ago
A vulnerability was found in Intera InHire up to 20250530. It has been declared as critical. Affected by this vulnerability is an unknown functionality. The manipulation of the argument 29chcotoo9 leads to server-side request forgery.
This vulnerability is known as CVE-2025-6142. The attack can be launched remotely. Furthermore, there is an exploit available.
The vendor was contacted early about this disclosure but did not respond in any way.
vuldb.com
CVE-2025-6143 | TOTOLINK EX1200T 4.1.2cu.5232_B20210713 HTTP POST Request /boafrm/formNtp submit-url buffer overflow
2 months 2 weeks ago
A vulnerability, which was classified as critical, was found in TOTOLINK EX1200T 4.1.2cu.5232_B20210713. Affected is an unknown function of the file /boafrm/formNtp of the component HTTP POST Request Handler. The manipulation of the argument submit-url leads to buffer overflow.
This vulnerability is traded as CVE-2025-6143. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-6144 | TOTOLINK EX1200T 4.1.2cu.5232_B20210713 HTTP POST Request /boafrm/formSysCmd submit-url buffer overflow
2 months 2 weeks ago
A vulnerability has been found in TOTOLINK EX1200T 4.1.2cu.5232_B20210713 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /boafrm/formSysCmd of the component HTTP POST Request Handler. The manipulation of the argument submit-url leads to buffer overflow.
This vulnerability is known as CVE-2025-6144. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-6145 | TOTOLINK EX1200T 4.1.2cu.5232_B20210713 HTTP POST Request /boafrm/formSysLog submit-url buffer overflow
2 months 2 weeks ago
A vulnerability was found in TOTOLINK EX1200T 4.1.2cu.5232_B20210713 and classified as critical. Affected by this issue is some unknown functionality of the file /boafrm/formSysLog of the component HTTP POST Request Handler. The manipulation of the argument submit-url leads to buffer overflow.
This vulnerability is handled as CVE-2025-6145. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-6147 | TOTOLINK A702R 4.0.0-B20230721.1521 HTTP POST Request /boafrm/formSysLog submit-url buffer overflow
2 months 2 weeks ago
A vulnerability was found in TOTOLINK A702R 4.0.0-B20230721.1521. It has been declared as critical. This vulnerability affects unknown code of the file /boafrm/formSysLog of the component HTTP POST Request Handler. The manipulation of the argument submit-url leads to buffer overflow.
This vulnerability was named CVE-2025-6147. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-6149 | TOTOLINK A3002R 4.0.0-B20230531.1404 HTTP POST Request /boafrm/formSysLog submit-url buffer overflow
2 months 2 weeks ago
A vulnerability classified as critical has been found in TOTOLINK A3002R 4.0.0-B20230531.1404. Affected is an unknown function of the file /boafrm/formSysLog of the component HTTP POST Request Handler. The manipulation of the argument submit-url leads to buffer overflow.
This vulnerability is traded as CVE-2025-6149. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-6150 | TOTOLINK X15 1.0.0-B20230714.1105 HTTP POST Request /boafrm/formMultiAP submit-url buffer overflow
2 months 2 weeks ago
A vulnerability classified as critical was found in TOTOLINK X15 1.0.0-B20230714.1105. Affected by this vulnerability is an unknown functionality of the file /boafrm/formMultiAP of the component HTTP POST Request Handler. The manipulation of the argument submit-url leads to buffer overflow.
This vulnerability is known as CVE-2025-6150. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com