Aggregator
“噪音风暴”伪造大量互联网流量
11 months 1 week ago
胡金鱼
Охотник становится жертвой: как Sniper Dz обманывает фишеров
11 months 1 week ago
Платформа скрывает свои действия за публичными серверами.
CVE-2016-1863 | Apple iOS up to 9.3.2 Kernel memory corruption (HT206902 / EDB-40652)
11 months 1 week ago
A vulnerability was found in Apple iOS up to 9.3.2. It has been classified as critical. This affects an unknown part of the component Kernel. The manipulation leads to memory corruption.
This vulnerability is uniquely identified as CVE-2016-1863. An attack has to be approached locally. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2007-4171 | auraCMS Modul Forum Sederhana komentar.php id sql injection (EDB-4254 / XFDB-35814)
11 months 1 week ago
A vulnerability, which was classified as critical, was found in auraCMS Modul Forum Sederhana. This affects an unknown part of the file komentar.php. The manipulation of the argument id leads to sql injection.
This vulnerability is uniquely identified as CVE-2007-4171. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
以明文形式存储数亿个密码,Meta被罚1亿美元
11 months 1 week ago
主站 分类 漏洞 工具 极客
CVE-2007-4183 | PHP Arena paBugs 2.0 Beta 3 main.php cid sql injection (EDB-4253 / XFDB-35758)
11 months 1 week ago
A vulnerability classified as critical has been found in PHP Arena paBugs 2.0 Beta 3. Affected is an unknown function of the file main.php. The manipulation of the argument cid leads to sql injection.
This vulnerability is traded as CVE-2007-4183. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2007-4140 | LFS Live For Speed S2 Alpha_patch_0.5 memory corruption (EDB-4252 / XFDB-35729)
11 months 1 week ago
A vulnerability was found in LFS Live For Speed S2 Alpha_patch_0.5 and classified as critical. This issue affects some unknown processing. The manipulation leads to memory corruption.
The identification of this vulnerability is CVE-2007-4140. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2024-36929 | Linux Kernel up to 5.10.216/5.15.158/6.1.90/6.6.30/6.8.9 skb_copy_expand denial of service (Nessus ID 207884)
11 months 1 week ago
A vulnerability was found in Linux Kernel up to 5.10.216/5.15.158/6.1.90/6.6.30/6.8.9. It has been rated as critical. Affected by this issue is the function skb_copy_expand. The manipulation leads to denial of service.
This vulnerability is handled as CVE-2024-36929. Access to the local network is required for this attack to succeed. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-6923 | Python Software CPython up to 3.13.0rc2 Email Module deserialization (Nessus ID 207883)
11 months 1 week ago
A vulnerability has been found in Python Software CPython up to 3.13.0rc2 and classified as problematic. Affected by this vulnerability is an unknown functionality of the component Email Module. The manipulation leads to deserialization.
This vulnerability is known as CVE-2024-6923. The attack can only be done within the local network. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2023-3610 | Linux Kernel Netfilter nf_tables use after free (DLA 3512-1 / Nessus ID 207884)
11 months 1 week ago
A vulnerability, which was classified as critical, was found in Linux Kernel. Affected is the function nf_tables of the component Netfilter. The manipulation leads to use after free.
This vulnerability is traded as CVE-2023-3610. It is possible to launch the attack on the local host. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-38602 | Linux Kernel up to 6.1.92/6.6.32/6.8.11/6.9.2 ax25_addr_ax25dev reference count (Nessus ID 207884)
11 months 1 week ago
A vulnerability has been found in Linux Kernel up to 6.1.92/6.6.32/6.8.11/6.9.2 and classified as critical. This vulnerability affects the function ax25_addr_ax25dev. The manipulation leads to improper update of reference count.
This vulnerability was named CVE-2024-38602. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-38554 | Linux Kernel up to 6.1.92/6.6.32/6.8.11/6.9.2 ax25_dev_device_down reference count (Nessus ID 207884)
11 months 1 week ago
A vulnerability has been found in Linux Kernel up to 6.1.92/6.6.32/6.8.11/6.9.2 and classified as critical. Affected by this vulnerability is the function ax25_dev_device_down. The manipulation leads to improper update of reference count.
This vulnerability is known as CVE-2024-38554. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
All in Windows 的失败,是傲慢还是必然?
11 months 1 week ago
All in Windows 的失败,是傲慢还是必然?Matrix 首页推荐 Matrix 是少数派的写作社区,我们主张分享真实的产品体验,有实用价值的经验与思考。我们会不定期挑选 Matrix 最优
HookChain: A New Approach to Bypassing EDR Solutions
11 months 1 week ago
Background Cybersecurity risks in today’s quickly changing digital environment are getting more complex and challenging to identify. As organizations strengthen […]
The post HookChain: A New Approach to Bypassing EDR Solutions appeared first on HawkEye.
HawkEye
CVE-2024-9323 | SourceCodester Inventory Management System 1.0 add_staff.php cross site scripting
11 months 1 week ago
A vulnerability was found in SourceCodester Inventory Management System 1.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /app/action/add_staff.php. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2024-9323. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
Backdoor.Win32.Benju.a / Unauthenticated Remote Command Execution
11 months 1 week ago
Full Disclosuremailing list archivesFrom: malvuln Date
Backdoor.Win32.Prorat.jz / Remote Stack Buffer Overflow (SEH)
11 months 1 week ago
Full Disclosuremailing list archivesFrom: malvuln Date
Backdoor.Win32.Amatu.a / Remote Arbitrary File Write (RCE)
11 months 1 week ago
Full Disclosuremailing list archivesFrom: malvuln Date
Backdoor.Win32.Agent.pw / Remote Stack Buffer Overflow (SEH)
11 months 1 week ago
Full Disclosuremailing list archivesFrom: malvuln Date