Aggregator
Massive Data Leak Claims to Expose Israeli Doctors and Government Records on Darknet
1 year ago
cohenido
Ransomware Attack Update for 15th of February 2025
1 year ago
Ransomware Attack Update for 15th of February 2025
Dark Web Informer - Cyber Threat Intelligence
The Tortured Responders Department: Scott & Rebekah's Version
1 year ago
SANS Digital Forensics and Incident Response
RansomHub
1 year ago
cohenido
Keeping Your Cloud Data Safe: What You Need to Know
1 year ago
Why is Cloud Data Safety a Paramount Concern? With the increasing movement of organizations to the cloud, ensuring data security has become a top priority. It’s a well-known fact that organizations thrive on data. But what if this data falls into the wrong hands due to weak cloud security? The results can be catastrophic, leading […]
The post Keeping Your Cloud Data Safe: What You Need to Know appeared first on Entro.
The post Keeping Your Cloud Data Safe: What You Need to Know appeared first on Security Boulevard.
Amy Cohn
SonicWall防火墙认证绕过漏洞正遭大规模利用
1 year ago
SonicWall防火墙的CVE-2024-53704认证绕过漏洞正被大规模利用,攻击者通过PoC代码劫持VPN会话,严重威胁企业网络安全。
Терабайт в миллиметре: прорыв в технологии хранения цифровых данных
1 year ago
Оптические технологии обеспечивают новую степень плотности информации.
测试过微信官方支持的 DeepSeek R1 后,我搞明白腾讯要怎么押注 AI 应用了
1 year ago
没有操作系统的微信,却在 AI 能力的应用上有着与苹果相同的理念。
В Беларуси заблокировали ряд сайтов из-за критических уязвимостей
1 year ago
Наццентр кибербезопасности предупреждает о риске утечек информации.
OpenAI сняла запреты: ChatGPT разрешили генерировать эротику и насилие
1 year ago
OpenAI пересмотрела политику и ослабила фильтры.
CVE-2025-21391 | Microsoft Windows up to Server 2025 Storage link following
1 year ago
A vulnerability was found in Microsoft Windows. It has been classified as problematic. This affects an unknown part of the component Storage. The manipulation leads to link following.
This vulnerability is uniquely identified as CVE-2025-21391. Attacking locally is a requirement. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-55896 | IBM i 7.4/7.5 PowerHA SystemMirror clickjacking
1 year ago
A vulnerability was found in IBM i 7.4/7.5. It has been classified as problematic. Affected is an unknown function of the component PowerHA SystemMirror. The manipulation leads to clickjacking.
This vulnerability is traded as CVE-2024-55896. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-48814 | Silverpeas 6.4.1 findbywhereclause ViewType sql injection
1 year ago
A vulnerability was found in Silverpeas 6.4.1. It has been rated as critical. Affected by this issue is the function findbywhereclause. The manipulation of the argument ViewType leads to sql injection.
This vulnerability is handled as CVE-2024-48814. The attack may be launched remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-35365 | FFmpeg 6.1.1 ffmpeg_mux_init.c new_stream_audio double free
1 year ago
A vulnerability was found in FFmpeg 6.1.1. It has been classified as critical. This affects the function new_stream_audio of the file fftools/ffmpeg_mux_init.c. The manipulation leads to double free.
This vulnerability is uniquely identified as CVE-2024-35365. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2025-21610 | basecamp trix up to 2.1.11 link cross site scripting (GHSA-j386-3444-qgwg)
1 year ago
A vulnerability was found in basecamp trix up to 2.1.11. It has been rated as problematic. This issue affects some unknown processing. The manipulation of the argument link leads to cross site scripting.
The identification of this vulnerability is CVE-2025-21610. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-12701 | WP Smart Import Plugin up to 1.1.2 on WordPress cross site scripting
1 year ago
A vulnerability classified as problematic was found in WP Smart Import Plugin up to 1.1.2 on WordPress. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2024-12701. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-11974 | Media Library Assistant Plugin up to 3.23 on WordPress Setting cross site scripting
1 year ago
A vulnerability has been found in Media Library Assistant Plugin up to 3.23 on WordPress and classified as problematic. This vulnerability affects unknown code of the component Setting Handler. The manipulation of the argument smc_settings_tab/unattachfixit-action/woofixit-action leads to cross site scripting.
This vulnerability was named CVE-2024-11974. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2025-21418 | Microsoft Windows up to Server 2025 Ancillary Function Driver for WinSock heap-based overflow
1 year ago
A vulnerability was found in Microsoft Windows. It has been classified as critical. Affected is an unknown function of the component Ancillary Function Driver for WinSock. The manipulation leads to heap-based buffer overflow.
This vulnerability is traded as CVE-2025-21418. Local access is required to approach this attack. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2004-0275 | Bosdev Bosdates 3.0/3.1/3.2 calendar_download.php calendar sql injection (EDB-23685 / XFDB-15133)
1 year ago
A vulnerability classified as critical has been found in Bosdev Bosdates 3.0/3.1/3.2. This affects an unknown part of the file calendar_download.php. The manipulation of the argument calendar leads to sql injection.
This vulnerability is uniquely identified as CVE-2004-0275. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com