Aggregator
这几项国家标准10月即将实施......
1 year ago
CVE-2024-8457 | PLANET Technology GS-4210-24P2S Hardware 3.0 cross site scripting
1 year ago
A vulnerability was found in PLANET Technology GS-4210-24PL4C Hardware 2.0 and GS-4210-24P2S Hardware 3.0. It has been rated as problematic. This issue affects some unknown processing. The manipulation leads to cross site scripting.
The identification of this vulnerability is CVE-2024-8457. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-45200 | Nintendo Mario Kart 8 Deluxe up to 3.0.2 Local Multiplayer KartLANPwn stack-based overflow
1 year ago
A vulnerability was found in Nintendo Mario Kart 8 Deluxe up to 3.0.2. It has been declared as critical. This vulnerability affects unknown code of the component Local Multiplayer. The manipulation leads to stack-based buffer overflow.
This vulnerability was named CVE-2024-45200. The attack can only be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-8452 | PLANET Technology GS-4210-24P2S Hardware 3.0 SNMPv3 Service risky encryption
1 year ago
A vulnerability was found in PLANET Technology GS-4210-24PL4C Hardware 2.0 and GS-4210-24P2S Hardware 3.0. It has been classified as problematic. This affects an unknown part of the component SNMPv3 Service. The manipulation leads to risky cryptographic algorithm.
This vulnerability is uniquely identified as CVE-2024-8452. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-8459 | PLANET Technology GS-4210-24P2S Hardware 3.0 SNMPv3 User Password cleartext storage
1 year ago
A vulnerability was found in PLANET Technology GS-4210-24PL4C Hardware 2.0 and GS-4210-24P2S Hardware 3.0 and classified as problematic. Affected by this issue is some unknown functionality of the component SNMPv3 User Password Handler. The manipulation leads to cleartext storage of sensitive information.
This vulnerability is handled as CVE-2024-8459. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
蓝队宝典 | 利用黑客指纹情报构建高级威胁防御战略
1 year ago
在数字时代,网络安全形势愈发严峻。黑客指纹情报库作为创新安全理念与技术,为网络安全带来新的希望。本文以专业视角深入探讨其概念、构建及应用,为网络安全从业者提供全面且有力的参考,助力守护网络安全。
CVE-2024-9329 | Eclipse Glassfish up to 7.0.16 /management/domain Host parameters
1 year ago
A vulnerability has been found in Eclipse Glassfish up to 7.0.16 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /management/domain. The manipulation of the argument Host leads to improper handling of parameters.
This vulnerability is known as CVE-2024-9329. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-8449 | PLANET Technology GS-4210-24P2S Hardware 3.0 Serial Console hard-coded credentials
1 year ago
A vulnerability, which was classified as critical, was found in PLANET Technology GS-4210-24PL4C Hardware 2.0 and GS-4210-24P2S Hardware 3.0. Affected is an unknown function of the component Serial Console. The manipulation leads to hard-coded credentials.
This vulnerability is traded as CVE-2024-8449. It is possible to launch the attack on the physical device. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-8454 | PLANET Technology IGS-5225-4UP1T2S Hardware 1.0 swctrl Service null pointer dereference
1 year ago
A vulnerability, which was classified as critical, has been found in PLANET Technology GS-4210-24PL4C Hardware 2.0, GS-4210-24P2S Hardware 3.0 and IGS-5225-4UP1T2S Hardware 1.0. This issue affects some unknown processing of the component swctrl Service. The manipulation leads to null pointer dereference.
The identification of this vulnerability is CVE-2024-8454. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-8450 | PLANET Technology GS-4210-24P2S Hardware 3.0 SNMPv1 Service hard-coded credentials
1 year ago
A vulnerability classified as critical was found in PLANET Technology GS-4210-24PL4C Hardware 2.0 and GS-4210-24P2S Hardware 3.0. This vulnerability affects unknown code of the component SNMPv1 Service. The manipulation leads to hard-coded credentials.
This vulnerability was named CVE-2024-8450. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-8456 | PLANET Technology GS-4210-24P2S Hardware 3.0 Firmware missing authentication
1 year ago
A vulnerability classified as very critical has been found in PLANET Technology GS-4210-24PL4C Hardware 2.0 and GS-4210-24P2S Hardware 3.0. This affects an unknown part of the component Firmware Handler. The manipulation leads to missing authentication.
This vulnerability is uniquely identified as CVE-2024-8456. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-8448 | PLANET Technology GS-4210-24P2S Hardware 3.0 Command-Line Interface hard-coded credentials
1 year ago
A vulnerability was found in PLANET Technology GS-4210-24PL4C Hardware 2.0 and GS-4210-24P2S Hardware 3.0. It has been rated as critical. Affected by this issue is some unknown functionality of the component Command-Line Interface. The manipulation leads to hard-coded credentials.
This vulnerability is handled as CVE-2024-8448. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-8455 | PLANET Technology IGS-5225-4UP1T2S Hardware 1.0 swctrl Service weak encoding for password
1 year ago
A vulnerability was found in PLANET Technology GS-4210-24PL4C Hardware 2.0, GS-4210-24P2S Hardware 3.0 and IGS-5225-4UP1T2S Hardware 1.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component swctrl Service. The manipulation leads to weak encoding for password.
This vulnerability is known as CVE-2024-8455. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-8453 | PLANET Technology GS-4210-24P2S Hardware 3.0 Configuration File weak hash
1 year ago
A vulnerability was found in PLANET Technology GS-4210-24PL4C Hardware 2.0 and GS-4210-24P2S Hardware 3.0. It has been classified as problematic. Affected is an unknown function of the component Configuration File Handler. The manipulation leads to use of weak hash.
This vulnerability is traded as CVE-2024-8453. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-8451 | PLANET Technology GS-4210-24P2S Hardware 3.0 SSH Service resource consumption
1 year ago
A vulnerability was found in PLANET Technology GS-4210-24PL4C Hardware 2.0 and GS-4210-24P2S Hardware 3.0 and classified as critical. This issue affects some unknown processing of the component SSH Service. The manipulation leads to resource consumption.
The identification of this vulnerability is CVE-2024-8451. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Critical NVIDIA Container Toolkit flaw could allow access to the underlying host
1 year ago
A critical vulnerability in the NVIDIA Container Toolkit could allow a container to escape and gain full access to the underlying host. Critical vulnerability CVE-2024-0132 (CVSS score 9.0) in the NVIDIA Container Toolkit could allow an attacker to escape the container and gain full access to the underlying host. The vulnerability is a Time-of-check Time-of-Use […]
Pierluigi Paganini
Калькулятор - троян: как мошенники обманули Google Play и украли $70 000
1 year ago
Невидимый вор гулял по магазину приложений 5 месяцев.
盛世华诞,举国同庆!(内附默安小福利)
1 year ago
The Hidden Gem of Pentest Certifications in 2024
1 year ago