Aggregator
Атака в один клик. Новый хакерский инструмент содержит Kali Linux и функцию самоуничтожения
4 weeks ago
10 000 разработчиков уже скачали «легальный» инструмент для автоматических атак.
CVE-2002-0789 | mnoGoSearch 3.1.19 search.cgi q memory corruption (ID 10671 / XFDB-9060)
4 weeks ago
A vulnerability described as critical has been identified in mnoGoSearch 3.1.19. The impacted element is an unknown function of the file search.cgi. Such manipulation of the argument q leads to memory corruption.
This vulnerability is traded as CVE-2002-0789. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2002-0796 | Sun Solaris 2.6/7.0/8.0 snmpdx format string (Nessus ID 11335 / ID 78037)
4 weeks ago
A vulnerability was found in Sun Solaris 2.6/7.0/8.0. It has been classified as critical. This vulnerability affects unknown code of the component snmpdx. Performing manipulation results in format string.
This vulnerability is identified as CVE-2002-0796. The attack can be initiated remotely. There is not any exploit available.
It is suggested to install a patch to address this issue.
vuldb.com
CVE-2002-0799 | YoungZSoft CMailServer 3.30 Command User memory corruption (EDB-21466 / Nessus ID 10184)
4 weeks ago
A vulnerability categorized as critical has been discovered in YoungZSoft CMailServer 3.30. The affected element is an unknown function of the component Command Handler. The manipulation of the argument User results in memory corruption.
This vulnerability is cataloged as CVE-2002-0799. The attack may be launched remotely. Furthermore, there is an exploit available.
It is advisable to upgrade the affected component.
vuldb.com
CVE-2002-0797 | Sun Solaris 2.6/7.0/8.0 mibiisa memory corruption (Nessus ID 11335 / ID 78038)
4 weeks ago
A vulnerability was found in Sun Solaris 2.6/7.0/8.0. It has been declared as critical. This issue affects some unknown processing of the component mibiisa. Executing manipulation can lead to memory corruption.
This vulnerability is tracked as CVE-2002-0797. The attack can be launched remotely. No exploit exists.
A patch should be applied to remediate this issue.
vuldb.com
CVE-2002-0800 | Working Resources Inc. BadBlue 1.7.0 Encoded URL Directory information disclosure (ID 86355 / XFDB-9239)
4 weeks ago
A vulnerability identified as problematic has been detected in Working Resources Inc. BadBlue 1.7.0. The impacted element is an unknown function of the component Encoded URL Handler. This manipulation with the input <url>% causes information disclosure (Directory).
This vulnerability is registered as CVE-2002-0800. Remote exploitation of the attack is possible. No exploit is available.
vuldb.com
CVE-2002-0802 | PostgreSQL 6.5.0 Multibyte Character sql injection (ID 86229 / XFDB-10328)
4 weeks ago
A vulnerability marked as critical has been reported in PostgreSQL 6.5.0. This impacts an unknown function of the component Multibyte Character Handler. Performing manipulation results in sql injection.
This vulnerability is reported as CVE-2002-0802. The attack is possible to be carried out remotely. No exploit exists.
vuldb.com
CVE-2015-7940 | Oracle Retail Open Commerce Platform 4.0/5.0/5.1/5.3/6.0 Framework information disclosure (EUVD-2018-0502 / Nessus ID 89298)
4 weeks ago
A vulnerability has been found in Oracle Retail Open Commerce Platform 4.0/5.0/5.1/5.3/6.0 and classified as critical. This impacts an unknown function of the component Framework. Performing manipulation results in information disclosure.
This vulnerability is identified as CVE-2015-7940. The attack can be initiated remotely. There is not any exploit available.
The affected component should be upgraded.
vuldb.com
CVE-2015-7940 | Oracle Enterprise Repository 12.1.3.0.0 Bouncy Castle information disclosure (EUVD-2018-0502 / Nessus ID 89298)
4 weeks ago
A vulnerability was found in Oracle Enterprise Repository 12.1.3.0.0. It has been declared as critical. This impacts an unknown function of the component Bouncy Castle. Executing manipulation can lead to information disclosure.
This vulnerability is handled as CVE-2015-7940. The attack can be executed remotely. There is not any exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2015-7940 | Oracle Secure Enterprise Search 11.2.2.2.0 Bouncy Castle information disclosure (EUVD-2018-0502 / Nessus ID 89298)
4 weeks ago
A vulnerability was found in Oracle Secure Enterprise Search 11.2.2.2.0. It has been rated as critical. Affected is an unknown function of the component Bouncy Castle. The manipulation leads to information disclosure.
This vulnerability is uniquely identified as CVE-2015-7940. The attack is possible to be carried out remotely. No exploit exists.
Upgrading the affected component is advised.
vuldb.com
CVE-2015-7940 | Oracle Business Transaction Management 11.1.x/12.1.x Security information disclosure (EUVD-2018-0502 / Nessus ID 89298)
4 weeks ago
A vulnerability identified as critical has been detected in Oracle Business Transaction Management 11.1.x/12.1.x. This issue affects some unknown processing of the component Security. Performing manipulation results in information disclosure.
This vulnerability was named CVE-2015-7940. The attack may be initiated remotely. There is no available exploit.
You should upgrade the affected component.
vuldb.com
CVE-2015-7940 | Oracle Communications Convergence 3.0/3.0.1 Bouncy Castle information disclosure (EUVD-2018-0502 / Nessus ID 89298)
4 weeks ago
A vulnerability, which was classified as critical, has been found in Oracle Communications Convergence 3.0/3.0.1. This vulnerability affects unknown code of the component Bouncy Castle. This manipulation causes information disclosure.
The identification of this vulnerability is CVE-2015-7940. It is possible to initiate the attack remotely. There is no exploit available.
It is advisable to upgrade the affected component.
vuldb.com
CVE-2015-7940 | Oracle Business Process Management Suite Bouncy Castle Java Package cryptographic issues (EUVD-2018-0502 / Nessus ID 87266)
4 weeks ago
A vulnerability marked as critical has been reported in Oracle Business Process Management Suite 11.1.1.7.0/11.1.1.9.0/12.1.3.0.0/12.2.1.1.0/12.2.1.2.0. This affects an unknown part of the component Bouncy Castle Java Package. The manipulation leads to cryptographic issues.
This vulnerability is uniquely identified as CVE-2015-7940. The attack is possible to be carried out remotely. No exploit exists.
It is suggested to upgrade the affected component.
vuldb.com
CVE-2015-7940 | Oracle FLEXCUBE Universal Banking up to 12.2.0 Bouncy Castle information disclosure (EUVD-2018-0502 / Nessus ID 89298)
4 weeks ago
A vulnerability classified as critical has been found in Oracle FLEXCUBE Universal Banking up to 12.2.0. Affected is an unknown function of the component Bouncy Castle. The manipulation leads to information disclosure.
This vulnerability is listed as CVE-2015-7940. The attack may be initiated remotely. There is no available exploit.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2015-7940 | Oracle MICROS Lucas 2.9.1/2.9.2/2.9.3/2.9.4/2.9.5 information disclosure (EUVD-2018-0502 / Nessus ID 89298)
4 weeks ago
A vulnerability identified as critical has been detected in Oracle MICROS Lucas 2.9.1/2.9.2/2.9.3/2.9.4/2.9.5. This issue affects some unknown processing. This manipulation causes information disclosure.
This vulnerability is handled as CVE-2015-7940. The attack can be initiated remotely. There is not any exploit available.
You should upgrade the affected component.
vuldb.com
CVE-2015-7940 | Oracle Insurance Istream up to 4.3.2 IStream Publisher information disclosure (EUVD-2018-0502 / Nessus ID 89298)
4 weeks ago
A vulnerability identified as critical has been detected in Oracle Insurance Istream up to 4.3.2. The affected element is an unknown function of the component IStream Publisher. Performing manipulation results in information disclosure.
This vulnerability is known as CVE-2015-7940. Remote exploitation of the attack is possible. No exploit is available.
You should upgrade the affected component.
vuldb.com
CVE-2015-7940 | Oracle Communications up to 1.0.5 Indexing/Search Service information disclosure (EUVD-2018-0502 / Nessus ID 89298)
4 weeks ago
A vulnerability categorized as critical has been discovered in Oracle Communications up to 1.0.5. Impacted is an unknown function of the component Indexing/Search Service. The manipulation results in information disclosure.
This vulnerability was named CVE-2015-7940. The attack may be performed from remote. There is no available exploit.
It is advisable to upgrade the affected component.
vuldb.com
CVE-2025-10340 | WhatCD Gazelle up to 63b337026d49b5cf63ce4be20fdabdc880112fa3 Commit Message change_log.php cross site scripting (EUVD-2025-29089)
4 weeks ago
A vulnerability categorized as problematic has been discovered in WhatCD Gazelle up to 63b337026d49b5cf63ce4be20fdabdc880112fa3. The affected element is an unknown function of the file /sections/tools/managers/change_log.php of the component Commit Message Handler. Executing manipulation of the argument Message can lead to cross site scripting.
This vulnerability appears as CVE-2025-10340. The attack may be performed from remote. In addition, an exploit is available.
This product utilizes a rolling release system for continuous delivery, and as such, version information for affected or updated releases is not disclosed.
vuldb.com
ChatGPT’s New Support for MCP Tools Let Attackers Exfiltrate All Private Details From Email
4 weeks ago
A newly introduced feature in ChatGPT that allows it to connect with personal data applications can be exploited by attackers to exfiltrate private information from a user’s email account. The attack requires only the victim’s email address and leverages a malicious calendar invitation to hijack the AI agent. On Wednesday, OpenAI announced that ChatGPT would […]
The post ChatGPT’s New Support for MCP Tools Let Attackers Exfiltrate All Private Details From Email appeared first on Cyber Security News.
Guru Baran