Aggregator
CVE-2024-11079 | Red Hat Ansible hostvars Object information disclosure
10 months ago
A vulnerability classified as problematic was found in Red Hat Ansible. Affected by this vulnerability is an unknown functionality of the component hostvars Object Handler. The manipulation leads to information disclosure.
This vulnerability is known as CVE-2024-11079. The attack can only be done within the local network. There is no exploit available.
vuldb.com
QSC 恶意软件框架:CloudComputating Group 网络间谍武器库中的新工具
10 months ago
安全客
CVE-2024-10345 | Helix Core up to 2024.1 shutdown resource consumption
10 months ago
A vulnerability classified as critical has been found in Helix Core up to 2024.1. Affected is the function shutdown. The manipulation leads to resource consumption.
This vulnerability is traded as CVE-2024-10345. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-34014 | Acronis Backup Plugin for cPanel & WHM on Linux symlink
10 months ago
A vulnerability was found in Acronis Backup Plugin for cPanel & WHM, Backup Extension for Plesk and Backup Plugin for DirectAdmin on Linux. It has been rated as problematic. This issue affects some unknown processing. The manipulation leads to symlink following.
The identification of this vulnerability is CVE-2024-34014. Local access is required to approach this attack. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-34015 | Acronis Backup Plugin for cPanel & WHM up to 817 on Linux symlink
10 months ago
A vulnerability was found in Acronis Backup Plugin for cPanel & WHM up to 817 on Linux. It has been declared as critical. This vulnerability affects unknown code. The manipulation leads to symlink following.
This vulnerability was named CVE-2024-34015. An attack has to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-43429 | Moodle up to 4.1.11/4.2.8/4.3.5/4.4.1 Gradebook Report information disclosure
10 months ago
A vulnerability was found in Moodle up to 4.1.11/4.2.8/4.3.5/4.4.1. It has been classified as problematic. This affects an unknown part of the component Gradebook Report. The manipulation leads to information disclosure.
This vulnerability is uniquely identified as CVE-2024-43429. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
FakeBat Loader 重新出现:恶意 Google Ads 针对 Notion 用户
10 months ago
安全客
CVE-2024-43427 | Moodle up to 4.1.11/4.2.8/4.3.5/4.4.1 Site Administration Preset Export missing initialization
10 months ago
A vulnerability was found in Moodle up to 4.1.11/4.2.8/4.3.5/4.4.1 and classified as problematic. Affected by this issue is some unknown functionality of the component Site Administration Preset Export. The manipulation leads to missing initialization of a variable.
This vulnerability is handled as CVE-2024-43427. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-23337 | lodash up to 4.17.20 Template command injection (SNYK-JS-LODASH-1040724)
10 months ago
A vulnerability has been found in lodash up to 4.17.20 and classified as critical. Affected by this vulnerability is an unknown functionality of the component Template Handler. The manipulation leads to command injection.
This vulnerability is known as CVE-2021-23337. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2020-28500 | lodash up to 4.17.20 Regular Expression denial of service (SNYK-JS-LODASH-1018905)
10 months ago
A vulnerability, which was classified as problematic, was found in lodash up to 4.17.20. Affected is an unknown function of the component Regular Expression Handler. The manipulation leads to denial of service.
This vulnerability is traded as CVE-2020-28500. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Black Suit
10 months ago
cohenido
大部分中风是可以预防的
10 months ago
美国中风学会十年来首次更新了指南,帮助病人及其医生预防中风,因为大部分中风是可以预防的。根据美国疾控中心的数据,中风是美国 2023 年第四大死因,每年有逾 50 万美国人中风。但通过改善营养、锻炼和识别风险因素,多达八成的中风是可预防的。预防中风的最佳方法也有助于降低其它健康风险:健康饮食、运动和不吸烟。指南作者之一的 Cheryl Bushnell 博士称,每天站起来走动 10 分钟以上就能大幅降低风险。指南建议肥胖或糖尿病患者服用 Ozempic、Wegovy、Mounjaro 和 Zepbound 等新型减肥药,但仍然需要锻炼和健康饮食。
abuse.ch and Spamhaus: The Impact of Your Contributions
10 months ago
CVE-2008-7080 | PHP Classifieds Script datadump.sql access control (EDB-7206 / XFDB-46803)
10 months ago
A vulnerability was found in PHP Classifieds Script. It has been classified as problematic. Affected is an unknown function of the file admin/backup/datadump.sql. The manipulation leads to improper access controls.
This vulnerability is traded as CVE-2008-7080. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-5939 | MODX CMS up to 0.9.6.2 index.php id cross site scripting (EDB-7204 / XFDB-46796)
10 months ago
A vulnerability has been found in MODX CMS up to 0.9.6.2 and classified as problematic. This vulnerability affects unknown code of the file index.php. The manipulation of the argument id leads to cross site scripting.
This vulnerability was named CVE-2008-5939. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-6118 | Goople CMS 1.7 improper authentication (EDB-7205 / XFDB-46799)
10 months ago
A vulnerability has been found in Goople CMS 1.7 and classified as critical. This vulnerability affects unknown code. The manipulation leads to improper authentication.
This vulnerability was named CVE-2008-6118. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-5938 | MODX CMS up to 0.9.6.2 reflect_base code injection (EDB-7204 / XFDB-46797)
10 months ago
A vulnerability, which was classified as critical, was found in MODX CMS up to 0.9.6.2. This affects an unknown part. The manipulation of the argument reflect_base leads to code injection.
This vulnerability is uniquely identified as CVE-2008-5938. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2024-43432 | Moodle Authorization Header Privilege Escalation
10 months ago
A vulnerability was found in Moodle. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component Authorization Header Handler. The manipulation leads to Privilege Escalation.
This vulnerability is known as CVE-2024-43432. The attack can only be done within the local network. There is no exploit available.
vuldb.com
CVE-2024-43433 | Moodle Matrix Privilege Escalation
10 months ago
A vulnerability was found in Moodle. It has been rated as critical. Affected by this issue is some unknown functionality of the component Matrix. The manipulation leads to Privilege Escalation.
This vulnerability is handled as CVE-2024-43433. The attack can only be initiated within the local network. There is no exploit available.
vuldb.com