Aggregator
CVE-2008-4453 | Dspicture Light Imaging Toolkit 4.7.1 ActiveX Control gdpicture4s.ocx access control (EDB-6638 / Nessus ID 34348)
9 months 2 weeks ago
A vulnerability, which was classified as critical, was found in Dspicture Light Imaging Toolkit 4.7.1. This affects an unknown part of the file gdpicture4s.ocx of the component ActiveX Control. The manipulation leads to improper access controls.
This vulnerability is uniquely identified as CVE-2008-4453. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2008-4455 | MySQL Quick Admin up to 1.5.5 index.php path traversal (EDB-6641 / XFDB-45606)
9 months 2 weeks ago
A vulnerability was found in MySQL Quick Admin up to 1.5.5 and classified as critical. This issue affects some unknown processing of the file index.php. The manipulation leads to path traversal.
The identification of this vulnerability is CVE-2008-4455. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-6007 | QuidaScript BookMarks Favourites Script view_group.php id sql injection (EDB-6637 / XFDB-45547)
9 months 2 weeks ago
A vulnerability was found in QuidaScript BookMarks Favourites Script. It has been classified as critical. This affects an unknown part of the file view_group.php. The manipulation of the argument id leads to sql injection.
This vulnerability is uniquely identified as CVE-2008-6007. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-6012 | Hardkap Pritlog 0.2/0.3/0.4 index.php filename path traversal (EDB-6639 / XFDB-45551)
9 months 2 weeks ago
A vulnerability, which was classified as problematic, has been found in Hardkap Pritlog 0.2/0.3/0.4. Affected by this issue is some unknown functionality of the file index.php. The manipulation of the argument filename leads to path traversal.
This vulnerability is handled as CVE-2008-6012. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-6014 | Rianxosencabos CMS 0.9 id sql injection (EDB-6636 / XFDB-45552)
9 months 2 weeks ago
A vulnerability has been found in Rianxosencabos CMS 0.9 and classified as critical. This vulnerability affects unknown code. The manipulation of the argument id leads to sql injection.
This vulnerability was named CVE-2008-6014. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-7026 | eFront up to 3.5.1 File Upload filesystem3.class.php access control (EDB-6633 / XFDB-45574)
9 months 2 weeks ago
A vulnerability, which was classified as critical, was found in eFront up to 3.5.1. This affects an unknown part of the file filesystem3.class.php of the component File Upload. The manipulation leads to improper access controls.
This vulnerability is uniquely identified as CVE-2008-7026. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-6009 | SG Real Estate Portal 2.0 improper authentication (EDB-6635 / XFDB-45577)
9 months 2 weeks ago
A vulnerability was found in SG Real Estate Portal 2.0. It has been rated as critical. This issue affects some unknown processing. The manipulation leads to improper authentication.
The identification of this vulnerability is CVE-2008-6009. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
上周关注度较高的产品安全漏洞(20241028-20241103)
9 months 2 weeks ago
CNVD漏洞周报2024年第44期
9 months 2 weeks ago
先知安全沙龙 - 北京站 11月9日开启!
9 months 2 weeks ago
阿里云先知灯塔系列城市安全沙龙第六场-北京站将于11月8日至11月9日在北京北邮科技大厦举办。11月9日上午场是天地一体化网络安全技术前沿论坛,下午场是先知安全沙龙北京站议题分享。
Meta 核能数据中心受阻于稀有蜜蜂
9 months 2 weeks ago
Meta 的核能数据中心计划受阻于稀有蜜蜂物种。报道没有披露蜜蜂物种名称。Meta 原计划与一家核电运营商达成协议,为其 AI 数据中心提供零排放核电。但该计划面临多个复杂因素,包括环境和
CVE-2008-6006 | Minbank Micronation Banking System 1.5.0 Utility utdb_access.php minsoft_path code injection (EDB-6632 / XFDB-45529)
9 months 2 weeks ago
A vulnerability was found in Minbank Micronation Banking System 1.5.0 and classified as critical. Affected by this issue is some unknown functionality of the file utdb_access.php of the component Utility. The manipulation of the argument minsoft_path leads to code injection.
This vulnerability is handled as CVE-2008-6006. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-6010 | SG Real Estate Portal 2.0 index.php folder path traversal (EDB-6631 / XFDB-45569)
9 months 2 weeks ago
A vulnerability classified as problematic has been found in SG Real Estate Portal 2.0. Affected is an unknown function of the file index.php. The manipulation of the argument folder leads to path traversal.
This vulnerability is traded as CVE-2008-6010. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-6011 | SG Real Estate Portal 2.0 index.php page_id sql injection (EDB-6631 / XFDB-45568)
9 months 2 weeks ago
A vulnerability classified as critical was found in SG Real Estate Portal 2.0. Affected by this vulnerability is an unknown functionality of the file index.php. The manipulation of the argument page_id leads to sql injection.
This vulnerability is known as CVE-2008-6011. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-4471 | Autodesk DWF Viewer 9.0.0.96) ActiveX Control AdView.dll path traversal (EDB-6630 / XFDB-45519)
9 months 2 weeks ago
A vulnerability was found in Autodesk DWF Viewer 9.0.0.96). It has been declared as critical. Affected by this vulnerability is an unknown functionality in the library AdView.dll of the component ActiveX Control. The manipulation leads to path traversal.
This vulnerability is known as CVE-2008-4471. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-4665 | Datingpro Matchmaking news_read.php id sql injection (EDB-6626 / XFDB-45496)
9 months 2 weeks ago
A vulnerability was found in Datingpro Matchmaking. It has been classified as critical. This affects an unknown part of the file news_read.php. The manipulation of the argument id leads to sql injection.
This vulnerability is uniquely identified as CVE-2008-4665. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-4667 | ArabCMS 2.0 rss.php rss path traversal (EDB-6628 / XFDB-45514)
9 months 2 weeks ago
A vulnerability was found in ArabCMS 2.0. It has been rated as critical. This issue affects some unknown processing of the file rss.php. The manipulation of the argument rss leads to path traversal.
The identification of this vulnerability is CVE-2008-4667. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
Suspect behind Snowflake data-theft attacks arrested in Canada
9 months 2 weeks ago
Canadian authorities have arrested a man suspected of having stolen the data of hundreds of millions after targeting over 165 organizations, all of them customers of cloud storage company Snowflake. [...]
Sergiu Gatlan
Hackers Exploit DocuSign APIs for Phishing Campaign
9 months 2 weeks ago
Cybercriminals are exploiting DocuSign’s APIs to send highly authentic-looking fake invoices, wh