Aggregator
Validate Your APIs With Ease Using WuppieFuzz: Open Source Fuzzing for REST APIs
1 year ago
We reached the limits of manually testing software due to the growing abundance of software around u
CVE-2014-7060 | Your Tango 1 X.509 Certificate cryptographic issues (VU#582497)
1 year ago
A vulnerability has been found in Your Tango 1 and classified as critical. Affected by this vulnerability is an unknown functionality of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
This vulnerability is known as CVE-2014-7060. The attack can only be done within the local network. There is no exploit available.
vuldb.com
人类身上发现来自食品包装的数千种毒素
1 year ago
发表在《Journal of Exposure Science & Environmental Epidemiology》期刊上的一项研究发现,人类身上发现了愈 3,600 种来自食品包装
CVE-2007-4033 | PHP 5.2.3 lib/t1lib/t1env.c imagepsloadfont FileName memory corruption (EDB-4227 / Nessus ID 67607)
1 year ago
A vulnerability was found in PHP 5.2.3. It has been declared as critical. Affected by this vulnerability is the function imagepsloadfont in the library lib/t1lib/t1env.c. The manipulation of the argument FileName leads to memory corruption.
This vulnerability is known as CVE-2007-4033. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
The Future of Healthcare: How AI Is Revolutionizing Personalized Nutrition
1 year ago
In our world today, artificial intelligence applications and models are becoming more and more impor
CVE-2022-30781 | Gitea up to 1.6.6 Fetch Privilege Escalation (EDB-51009)
1 year ago
A vulnerability, which was classified as critical, has been found in Gitea up to 1.6.6. Affected by this issue is some unknown functionality of the component Fetch Handler. The manipulation leads to Privilege Escalation.
This vulnerability is handled as CVE-2022-30781. The attack can only be done within the local network. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
RansomHub
1 year ago
cohenido
RansomHub
1 year ago
cohenido
CVE-2016-5019 | Oracle Rapid Planning 12.1/12.2 Middle Tier deserialization (ID 150254 / BID-93236)
1 year ago
A vulnerability classified as very critical was found in Oracle Rapid Planning 12.1/12.2. This vulnerability affects unknown code of the component Middle Tier. The manipulation leads to deserialization.
This vulnerability was named CVE-2016-5019. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-9295 | SourceCodester Advocate Office Management System 1.0 /control/login.php username sql injection
1 year ago
A vulnerability was found in SourceCodester Advocate Office Management System 1.0 and classified as critical. This issue affects some unknown processing of the file /control/login.php. The manipulation of the argument username leads to sql injection.
The identification of this vulnerability is CVE-2024-9295. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2024-9296 | SourceCodester Advocate Office Management System 1.0 /control/forgot_pass.php username sql injection
1 year ago
A vulnerability was found in SourceCodester Advocate Office Management System 1.0. It has been classified as critical. Affected is an unknown function of the file /control/forgot_pass.php. The manipulation of the argument username leads to sql injection.
This vulnerability is traded as CVE-2024-9296. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2023-32824 | MediaTek MT8788 rpmb double free (ALPS07912966)
1 year ago
A vulnerability was found in MediaTek MT6580, MT6739, MT6761, MT6762, MT6765, MT6768, MT6769, MT6779, MT6781, MT6785, MT6789, MT6833, MT6853, MT6853T, MT6855, MT6873, MT6875, MT6877, MT6879, MT6883, MT6885, MT6889, MT6891, MT6893, MT6895, MT6983, MT6985, MT8666, MT8765 and MT8788. It has been rated as problematic. This issue affects some unknown processing of the component rpmb. The manipulation leads to double free.
The identification of this vulnerability is CVE-2023-32824. Local access is required to approach this attack. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-9294 | dingfanzu CMS up to 29d67d9044f6f93378e6eb6ff92272217ff7225c saveNewPwd.php username sql injection
1 year ago
A vulnerability, which was classified as critical, has been found in dingfanzu CMS up to 29d67d9044f6f93378e6eb6ff92272217ff7225c. Affected by this issue is some unknown functionality of the file saveNewPwd.php. The manipulation of the argument username leads to sql injection.
This vulnerability is handled as CVE-2024-9294. The attack may be launched remotely. Furthermore, there is an exploit available.
Continious delivery with rolling releases is used by this product. Therefore, no version details of affected nor updated releases are available.
vuldb.com
2024全球数字经济大会——数字安全生态建设专题论坛,经纬信安斩获多项荣誉
1 year ago
企业资讯
TSA and DHS Want Your Selfie: The Move Toward Biometric IDs for Travel
1 year ago
The US Department of Homeland Security (DHS), the Transportation Security Administration (TSA), Home
CUPS: Unraveling a Critical Vulnerability Chain in Unix Printing Systems
1 year ago
A series of critical vulnerabilities has been uncovered in the Common Unix Printing System (CUPS), specifically in the
The post CUPS: Unraveling a Critical Vulnerability Chain in Unix Printing Systems appeared first on ARMO.
The post CUPS: Unraveling a Critical Vulnerability Chain in Unix Printing Systems appeared first on Security Boulevard.
Amit Schendel
CVE-2007-4067 | Clever Components Internet ActiveX Suite 6.2 ActiveX Control clinetsuitex6.clwebdav second path traversal (EDB-4226 / XFDB-35590)
1 year ago
A vulnerability has been found in Clever Components Internet ActiveX Suite 6.2 and classified as critical. This vulnerability affects unknown code of the file clinetsuitex6.clwebdav of the component ActiveX Control. The manipulation of the argument second leads to path traversal.
This vulnerability was named CVE-2007-4067. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2003-0853 | fileutils/coreutils Width denial of service (EDB-23274 / Nessus ID 14088)
1 year ago
A vulnerability, which was classified as critical, was found in fileutils and coreutils. This affects an unknown part. The manipulation of the argument Width leads to denial of service.
This vulnerability is uniquely identified as CVE-2003-0853. The attack can only be initiated within the local network. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-38809 | Vmware Spring Framework up to 5.3.37/6.0.22/6.1.11 Conditional HTTP Request ETags denial of service
1 year ago
A vulnerability classified as critical has been found in Vmware Spring Framework up to 5.3.37/6.0.22/6.1.11. Affected is an unknown function of the component Conditional HTTP Request Handler. The manipulation of the argument ETags leads to denial of service.
This vulnerability is traded as CVE-2024-38809. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com