Aggregator
CVE-2024-34671 | Samsung Internet up to 26.0.3.0 Translation implicit intent
11 months 2 weeks ago
A vulnerability has been found in Samsung Internet up to 26.0.3.0 and classified as problematic. This vulnerability affects unknown code of the component Translation. The manipulation leads to use of implicit intent for sensitive communication.
This vulnerability was named CVE-2024-34671. The attack needs to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-34662 | Samsung Devices ActivityManager access control
11 months 2 weeks ago
A vulnerability, which was classified as critical, was found in Samsung Devices. This affects an unknown part of the component ActivityManager. The manipulation leads to improper access controls.
This vulnerability is uniquely identified as CVE-2024-34662. It is possible to launch the attack on the local host. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-34667 | Samsung Devices h.265 Format Parser librtppayload.so out-of-bounds write
11 months 2 weeks ago
A vulnerability, which was classified as critical, has been found in Samsung Devices. Affected by this issue is some unknown functionality in the library librtppayload.so of the component h.265 Format Parser. The manipulation leads to out-of-bounds write.
This vulnerability is handled as CVE-2024-34667. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-47095 | Follet School Solutions Destiny up to 22.0.1 AU0 handleloginform.do handleloginform expiredSupportMessage cross site scripting
11 months 2 weeks ago
A vulnerability classified as problematic has been found in Follet School Solutions Destiny up to 22.0.1 AU0. Affected is the function handleloginform of the file handleloginform.do. The manipulation of the argument expiredSupportMessage leads to cross site scripting.
This vulnerability is traded as CVE-2024-47095. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-8983 | Custom Twitter Feeds Plugin up to 2.2.2 on WordPress Setting cross site scripting
11 months 2 weeks ago
A vulnerability classified as problematic was found in Custom Twitter Feeds Plugin up to 2.2.2 on WordPress. Affected by this vulnerability is an unknown functionality of the component Setting Handler. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2024-8983. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-34668 | Samsung Devices h.263 Format Parser librtppayload.so out-of-bounds write
11 months 2 weeks ago
A vulnerability was found in Samsung Devices. It has been declared as critical. This vulnerability affects unknown code in the library librtppayload.so of the component h.263 Format Parser. The manipulation leads to out-of-bounds write.
This vulnerability was named CVE-2024-34668. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-34665 | Samsung Devices h.264 Format Parser librtppayload.so out-of-bounds write
11 months 2 weeks ago
A vulnerability was found in Samsung Devices. It has been rated as critical. This issue affects some unknown processing in the library librtppayload.so of the component h.264 Format Parser. The manipulation leads to out-of-bounds write.
The identification of this vulnerability is CVE-2024-34665. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-9021 | Relevanssi Plugin up to 4.23.0 on WordPress cross site scripting
11 months 2 weeks ago
A vulnerability was found in Relevanssi Plugin up to 4.23.0 on WordPress. It has been classified as problematic. This affects an unknown part. The manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2024-9021. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-34669 | Samsung Devices h.263+ Format Parser librtppayload.so out-of-bounds write
11 months 2 weeks ago
A vulnerability was found in Samsung Devices and classified as critical. Affected by this issue is some unknown functionality in the library librtppayload.so of the component h.263+ Format Parser. The manipulation leads to out-of-bounds write.
This vulnerability is handled as CVE-2024-34669. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-34666 | Samsung Devices h.264 Format Parser librtppayload.so out-of-bounds write
11 months 2 weeks ago
A vulnerability has been found in Samsung Devices and classified as critical. Affected by this vulnerability is an unknown functionality in the library librtppayload.so of the component h.264 Format Parser. The manipulation leads to out-of-bounds write.
This vulnerability is known as CVE-2024-34666. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
纯血鸿蒙今日开启公测;苹果或将放弃硬件的一年一更的模式;2024 国庆档总票房破 20 亿元|极客早知道
11 months 2 weeks ago
乐道换电服务费收费模式正式公布:服务费每月调整一次;
黄金周累计售出车票 1.64 亿张,全国铁路迎来返程客流高峰;
育碧回应将被腾讯和 GUILLEMOT 收购传闻:会定期审查所有战略选择并适时通报
CVE-2016-3227 | Microsoft Windows Server 2012/Server 2012 R2 DNS Server use after free (MS16-071 / Nessus ID 91599)
11 months 2 weeks ago
A vulnerability classified as critical was found in Microsoft Windows Server 2012/Server 2012 R2. This vulnerability affects unknown code of the component DNS Server. The manipulation leads to use after free.
This vulnerability was named CVE-2016-3227. The attack can be initiated remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2014-7485 | tinytap Not Lost Just Somewhere Else 1.6.1 X.509 Certificate cryptographic issues (VU#582497)
11 months 2 weeks ago
A vulnerability, which was classified as critical, was found in tinytap Not Lost Just Somewhere Else 1.6.1. This affects an unknown part of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
This vulnerability is uniquely identified as CVE-2014-7485. The attack needs to be initiated within the local network. There is no exploit available.
vuldb.com
Хакеры нацелились на Qualcomm: CVE-2024-43047 активно используется в реальных атаках
11 months 2 weeks ago
Никто не знает, сколько устройств могло быть скомпрометировано в результате действий преступников.
威努特100%国产化工业交换机助力构建车路云一体化神经网络
11 months 2 weeks ago
提升交通系统智能化水平,助力车路云一体化技术发展。
SimSpace’s OT content enhancements improve critical infrastructure security
11 months 2 weeks ago
SimSpace announced its enhanced OT (Operational Technology) content, now offering more realistic and high-fidelity training and emulation. As OT cybersecurity becomes increasingly critical for industries relying on operational systems, SimSpace has invested in this content to ensure that organizations are fully prepared to defend against sophisticated attacks targeting their critical infrastructure. A key element in achieving this level of quality is SimSpace’s partnership with Fortiphyd Logic. Fortiphyd’s expertise has been instrumental in developing the new … More →
The post SimSpace’s OT content enhancements improve critical infrastructure security appeared first on Help Net Security.
Industry News
派早报:育碧回应收购传闻、浏览器厂商要求欧盟限制 Edge 等
11 months 2 weeks ago
你可能错过的新鲜事育碧回应收购传闻10 月 7 日,育碧发布公司声明,称已注意到近期媒体关于公司潜在利益的猜测,且公司会「定期审查所有战略选择」,并重申管理层目前专注于现有战略,即以开放世界冒险和
Quickpost: The Electric Energy Consumption Of LLMs – No GPU
11 months 2 weeks ago
Quickpost: The Electric Energy Consumption Of LLMs – No GPU Filed under: Quickpost — Did
Тонкая настройка MaxPatrol SIEM и MaxPatrol VM
11 months 2 weeks ago
Вебинар Positive Technologies состоится 15 октября в 14:00 (мск)