Aggregator
Operation MiddleFloor: Disinformation campaign targets Moldova ahead of presidential elections and EU membership referendum
11 months 2 weeks ago
Introduction Beginning in early August, Check Point Research observed a cyber-enabled disinformation campaign primarily targeting Moldova’s government and education sectors. Acting ahead of Moldova’s elections on October 20th, attackers behind this campaign likely seek to foster negative perceptions of European values and the EU membership process in addition to Moldova’s current pro-European leadership, with the […]
The post Operation MiddleFloor: Disinformation campaign targets Moldova ahead of presidential elections and EU membership referendum appeared first on Check Point Research.
stcpresearch
Improving platform resilience at Cloudflare through automation
11 months 2 weeks ago
We realized that we need a way to automatically heal our platform from an operations perspective, and designed and built a workflow orchestration platform to provide these self-healing capabilities across our global network. We explore how this has helped us to reduce the impact on our customers due to operational issues, and the rich variety of similar problems it has empowered us to solve.
Opeyemi Onikute
Pixel6刷机包,eBPF学习环境供下载
11 months 2 weeks ago
CVE-2016-2510 | Red Hat JBoss 6.2.1 BeanShell Library data processing (RHSA-2016:0539-01 / Nessus ID 89976)
11 months 2 weeks ago
A vulnerability has been found in Red Hat JBoss 6.2.1 and classified as critical. Affected by this vulnerability is an unknown functionality of the component BeanShell Library. The manipulation leads to data processing error.
This vulnerability is known as CVE-2016-2510. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2004-2344 | Vocaltec VGW480 Telephony Gateway asn.1/h.323/h.225 denial of service (EDB-24143 / XFDB-16240)
11 months 2 weeks ago
A vulnerability classified as problematic was found in Vocaltec VGW480 Telephony Gateway. Affected by this vulnerability is an unknown functionality of the file asn.1/h.323/h.225. The manipulation leads to denial of service.
This vulnerability is known as CVE-2004-2344. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
Зомби-слои: «мертвые» данные оживают в Docker-реестрах
11 months 2 weeks ago
Удаленные Docker-слои отказываются умирать и раскрывают конфиденциальные данные.
CVE-2016-2511 | WebSVN up to 2.3.3 log.php path cross site scripting (ID 135886 / Nessus ID 88939)
11 months 2 weeks ago
A vulnerability was found in WebSVN up to 2.3.3. It has been classified as problematic. Affected is an unknown function of the file log.php. The manipulation of the argument path leads to cross site scripting.
This vulnerability is traded as CVE-2016-2511. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
诺贝尔化学奖授予了计算蛋白质设计和蛋白质结构预测的科学家
11 months 2 weeks ago
2024 年度的诺贝尔化学奖授予了三位科学家:美国华盛顿大学的 David Baker,以表彰他在计算蛋白质设计上的贡献;英国 Google DeepMind 的 Demis Hassabis 和 John M. Jumper,以表彰他们在蛋白质结构预测上的贡献。Baker 通过构建全新的蛋白质而完成了几乎不可能的任务,Google 旗下 AI 公司 DeepMind 的两位科学家则通过开发出 AI 模型解决了预测蛋白质复杂结构的难题。生命多样性证明了蛋白质作为化学工具的惊人能力,蛋白质控制和驱动了所有构成生命基础的化学反应。蛋白质还可作为激素、信号物质、抗体和不同组织的构建基础。
CVE-2021-4118 | pytorch-lightning deserialization
11 months 2 weeks ago
A vulnerability classified as critical has been found in pytorch-lightning. Affected is an unknown function. The manipulation leads to deserialization.
This vulnerability is traded as CVE-2021-4118. The attack needs to be approached locally. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2022-0845 | pytorch-lightning up to 1.5.x code injection
11 months 2 weeks ago
A vulnerability has been found in pytorch-lightning up to 1.5.x and classified as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to code injection.
This vulnerability is known as CVE-2022-0845. It is possible to launch the attack on the local host. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-4344 | Broadcom RAID Controller Web Interface random values
11 months 2 weeks ago
A vulnerability was found in Broadcom RAID Controller. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component Web Interface. The manipulation leads to insufficiently random values.
This vulnerability is known as CVE-2023-4344. The attack needs to be initiated within the local network. There is no exploit available.
vuldb.com
CVE-2023-40313 | OpenNMS Horizon/Meridian BeanShell Interpreter state issue
11 months 2 weeks ago
A vulnerability classified as problematic was found in OpenNMS Horizon and Meridian. Affected by this vulnerability is an unknown functionality of the component BeanShell Interpreter. The manipulation leads to state issue.
This vulnerability is known as CVE-2023-40313. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-39743 | lrzip-next 3.c/23.01 LZMA src/libbz3.c memory corruption (Issue 132)
11 months 2 weeks ago
A vulnerability has been found in lrzip-next 3.c/23.01 and classified as critical. This vulnerability affects unknown code in the library src/libbz3.c of the component LZMA. The manipulation leads to memory corruption.
This vulnerability was named CVE-2023-39743. The attack can only be initiated within the local network. There is no exploit available.
vuldb.com
CVE-2023-32626 | Logitec LAN-W300N-RS/LAN-W300N-PR5 Management Console os command injection
11 months 2 weeks ago
A vulnerability, which was classified as critical, has been found in Logitec LAN-W300N-RS and LAN-W300N-PR5. This issue affects some unknown processing of the component Management Console. The manipulation leads to os command injection.
The identification of this vulnerability is CVE-2023-32626. The attack needs to be initiated within the local network. There is no exploit available.
vuldb.com
CVE-2023-38576 | Logitec AN-WH300N-RE Management Console os command injection
11 months 2 weeks ago
A vulnerability has been found in Logitec AN-WH300N-RE and classified as critical. Affected by this vulnerability is an unknown functionality of the component Management Console. The manipulation leads to os command injection.
This vulnerability is known as CVE-2023-38576. Access to the local network is required for this attack to succeed. There is no exploit available.
vuldb.com
CVE-2023-39445 | Logitec LAN-WH300N-RE Management Console Remote Code Execution
11 months 2 weeks ago
A vulnerability was found in Logitec LAN-WH300N-RE and classified as critical. Affected by this issue is some unknown functionality of the component Management Console. The manipulation leads to Remote Code Execution.
This vulnerability is handled as CVE-2023-39445. The attack needs to be approached within the local network. There is no exploit available.
vuldb.com
CVE-2023-40069 | Elecom WRC-F1167ACF Request os command injection
11 months 2 weeks ago
A vulnerability classified as critical has been found in Elecom WRC-F1167ACF, WRC-1750GHBK, WRC-1167GHBK2, WRC-1750GHBK2-I and WRC-1750GHBK-E. Affected is an unknown function of the component Request Handler. The manipulation leads to os command injection.
This vulnerability is traded as CVE-2023-40069. The attack needs to be initiated within the local network. There is no exploit available.
vuldb.com
CVE-2023-38132 | LOGITEC LAN-W451NGR Telnet Service access control
11 months 2 weeks ago
A vulnerability classified as critical was found in LOGITEC LAN-W451NGR. Affected by this vulnerability is an unknown functionality of the component Telnet Service. The manipulation leads to improper access controls.
This vulnerability is known as CVE-2023-38132. Access to the local network is required for this attack. There is no exploit available.
vuldb.com
CVE-2023-36674 | MediaWiki prior 1.35.11/1.38.7/1.39.4/1.40.1 Bad Image List thumb protection mechanism (FEDORA-2023-1fcaba0998)
11 months 2 weeks ago
A vulnerability, which was classified as problematic, was found in MediaWiki. Affected is an unknown function of the component Bad Image List Handler. The manipulation of the argument thumb leads to protection mechanism failure.
This vulnerability is traded as CVE-2023-36674. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com