Aggregator
Active Directory Pentesting Using Netexec Tool: A Complete Guide
8 months 1 week ago
Active Directory (AD) penetration testing is an essential part of the security asse
CVE-2001-0766 | Apache HTTP Server 1.3.14 on Mac HFS+ File System privileges management (EDB-20911 / XFDB-6687)
8 months 1 week ago
A vulnerability was found in Apache HTTP Server 1.3.14 on Mac. It has been classified as critical. This affects an unknown part of the component HFS+ File System Handler. The manipulation leads to improper privilege management.
This vulnerability is uniquely identified as CVE-2001-0766. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to apply restrictive firewalling.
vuldb.com
CVE-2008-5824 | 68k audiofile 0.2.6 msadpcm.c memory corruption (EDB-32691 / Nessus ID 44837)
8 months 1 week ago
A vulnerability, which was classified as critical, was found in 68k audiofile 0.2.6. This affects an unknown part of the file msadpcm.c. The manipulation leads to memory corruption.
This vulnerability is uniquely identified as CVE-2008-5824. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2015-1368 | Red Hat Ansible Tower up to 2.0.1 next_run cross site scripting (ID 129944 / EDB-35786)
8 months 1 week ago
A vulnerability, which was classified as problematic, has been found in Red Hat Ansible Tower up to 2.0.1. Affected by this issue is some unknown functionality. The manipulation of the argument next_run leads to cross site scripting.
This vulnerability is handled as CVE-2015-1368. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
多少有些尴尬!某网络安全公司的扩展程序被黑客攻击然后对用户投毒
8 months 1 week ago
#安全资讯 多少还是有些尴尬的!某网络安全公司的 Chrome Web Store 管理员账号被黑客钓鱼,然后黑客发布携带恶意代码的扩展程序窃取数据。值得注意的是同一时间黑客对多个扩展
CVE-2024-13008 | code-projects Responsive Hotel Site 1.0 /admin/newsletter.php eid sql injection
8 months 1 week ago
A vulnerability has been found in code-projects Responsive Hotel Site 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /admin/newsletter.php. The manipulation of the argument eid leads to sql injection.
This vulnerability is known as CVE-2024-13008. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
Submit #470575: code-projects Responsive Hotel Site 1.0 SQL Injection [Accepted]
8 months 1 week ago
Submit #470575 / VDB-289669
Unique_4O4
В России закрыли лазейку для телефонных мошенников через интернет
8 months 1 week ago
Правительство вводит новые ограничения.
Submit #470555: IBM Navigator 7.5.0,7.4.0, 7.3.0 HTTP Security Token Bypass [Duplicate]
8 months 1 week ago
Submit #470555 / VDB-289160
hyp3rlinx
Submit #470554: IBM Navigator 7.5.0,7.4.0, 7.3.0 Server-Side Request Forgery [Duplicate]
8 months 1 week ago
Submit #470554 / VDB-289161
hyp3rlinx
CVE-2024-13007 | Codezips Event Management System 1.0 /contact.php title sql injection
8 months 1 week ago
A vulnerability, which was classified as critical, was found in Codezips Event Management System 1.0. Affected is an unknown function of the file /contact.php. The manipulation of the argument title leads to sql injection.
This vulnerability is traded as CVE-2024-13007. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2024-13006 | 1000 Projects Human Resource Management System 1.0 /employeeview.php search sql injection
8 months 1 week ago
A vulnerability, which was classified as critical, has been found in 1000 Projects Human Resource Management System 1.0. This issue affects some unknown processing of the file /employeeview.php. The manipulation of the argument search leads to sql injection.
The identification of this vulnerability is CVE-2024-13006. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
Submit #470304: Event Management System V1.0 sql [Accepted]
8 months 1 week ago
Submit #470304 / VDB-289668
T3rm1n4L
CVE-2024-13005 | 1000 Projects Attendance Tracking Management System 1.0 attendance_action.php attendance_id sql injection
8 months 1 week ago
A vulnerability classified as critical was found in 1000 Projects Attendance Tracking Management System 1.0. This vulnerability affects unknown code of the file /admin/attendance_action.php. The manipulation of the argument attendance_id leads to sql injection.
This vulnerability was named CVE-2024-13005. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
Submit #470260: Human Resource Management System V1.0 sql [Accepted]
8 months 1 week ago
Submit #470260 / VDB-289667
pan jie
Короли криптомошенничества ответят за все свои NFT-аферы
8 months 1 week ago
Империя цифрового лоска разбилась о железную хватку закона.
CVE-2024-13004 | PHPGurukul Complaint Management System 1.0 /admin/category.php state sql injection
8 months 1 week ago
A vulnerability classified as critical has been found in PHPGurukul Complaint Management System 1.0. This affects an unknown part of the file /admin/category.php. The manipulation of the argument state leads to sql injection.
This vulnerability is uniquely identified as CVE-2024-13004. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2000-1037 | Check Point Firewall-1 3.0/4.0/4.1 Session Agent User information disclosure (EDB-20215 / XFDB-5790)
8 months 1 week ago
A vulnerability, which was classified as critical, has been found in Check Point Firewall-1 3.0/4.0/4.1. Affected by this issue is some unknown functionality of the component Session Agent. The manipulation leads to information disclosure (User).
This vulnerability is handled as CVE-2000-1037. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Submit #469688: 1000 Projects Attendance Tracking Management System PHP & MySQL Project V1.0 sql [Accepted]
8 months 1 week ago
Submit #469688 / VDB-289666
Hacker0xOne