Aggregator
华为 2024 年手机出货量增长 50%
1 year 3 months ago
华为 2024 年手机出货量增长 50%
1 year 3 months ago
IDC 的数据显示,2024 年第四季度,中国智能手机市场出货量约 7,643 万台,同比增长 3.9%。各价位段新品的集中上市以及部分省市开始的新机购买补贴政策推动整体市场延续了之前 4 个季度的增长趋势。vivo、华为和小米等厂商的强势表现帮助 Android 市场增幅超过 7%;但是 iPhone16 系列销售难有起色,使得 iOS 市场继续同比下降。2024 年全年中国智能手机市场出货量约 2.86 亿台,同比增长 5.6%,时隔两年触底反弹。其中华为出货量同比增长超过 50% 占 16.6% 排名第二,苹果则下降 5.4% 占 15.6% 排名第三,vivo 同比增长 10.3% 占 17.2% 排名第一。苹果在 800 美元以上市场份额依然占据 60%。
CVE-2010-4998 | Maulana Al Matien ardeaCore PHP Framework 2.2 ardeaInit.php pathForArdeaCore code injection (EDB-13832 / BID-40811)
1 year 3 months ago
A vulnerability was found in Maulana Al Matien ardeaCore PHP Framework 2.2 and classified as critical. This issue affects some unknown processing in the library ardeaCore/lib/core/ardeaInit.php of the file ardeaCore/lib/core/ardeaInit.php. The manipulation of the argument pathForArdeaCore leads to code injection.
The identification of this vulnerability is CVE-2010-4998. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
Shiro CVE-2020-17510 路径绕过
1 year 3 months ago
Apache Shiro before 1.7.0, when using Apache Shiro with Spring, a specially crafted HTTP request may
Shiro CVE-2020-17510 路径绕过
1 year 3 months ago
在使用 Apache Shiro 与 Spring 集成时,如果 Apache Shiro 的版本低于 1.7.0,经过精心构造的 HTTP 请求可能会导致身份验证绕过。
梅赛德斯-奔驰信息娱乐系统漏洞详细信息披露
1 year 3 months ago
主站 分类 漏洞 工具 极客
卡巴斯基公布奔驰汽车十几个漏洞
1 year 3 months ago
卡巴斯基披露了在梅赛德斯-奔驰信息娱乐系统中发现的十多个漏洞的细节,但奔驰保证这些安全漏洞已经得到修复。
CVE-2010-2861 | Adobe ColdFusion 8.0/8.0.1/9.0/9.0.1 path traversal (EDB-14641 / Nessus ID 48340)
1 year 3 months ago
A vulnerability, which was classified as problematic, has been found in Adobe ColdFusion 8.0/8.0.1/9.0/9.0.1. This issue affects some unknown processing. The manipulation leads to path traversal.
The identification of this vulnerability is CVE-2010-2861. The attack may be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2010-2882 | Adobe Shockwave Player up to 8.0.195 DIRAPI.dll memory corruption (Nessus ID 48436 / ID 118432)
1 year 3 months ago
A vulnerability was found in Adobe Shockwave Player up to 8.0.195 and classified as very critical. This issue affects some unknown processing in the library DIRAPI.dll. The manipulation leads to memory corruption.
The identification of this vulnerability is CVE-2010-2882. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2010-3658 | Adobe Acrobat Reader up to 8.2.4 memory corruption (RHSA-2010:0743 / Nessus ID 49172)
1 year 3 months ago
A vulnerability has been found in Adobe Acrobat Reader and classified as critical. This vulnerability affects unknown code. The manipulation leads to memory corruption.
This vulnerability was named CVE-2010-3658. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2002-0884 | Solaris/OpenUnix/UnixWare ARP Server in.rarpd syserr/error format string (XFDB-9150 / BID-4791)
1 year 3 months ago
A vulnerability has been found in Solaris, OpenUnix and UnixWare and classified as critical. Affected by this vulnerability is the function syserr/error of the file in.rarpd of the component ARP Server. The manipulation leads to format string.
This vulnerability is known as CVE-2002-0884. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2002-0885 | Solaris/OpenUnix/UnixWare ARP Server syserr/error memory corruption (XFDB-9150 / BID-4791)
1 year 3 months ago
A vulnerability was found in Solaris, OpenUnix and UnixWare and classified as critical. Affected by this issue is the function syserr/error of the component ARP Server. The manipulation leads to memory corruption.
This vulnerability is handled as CVE-2002-0885. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2002-1024 | Cisco IOS up to 12.2 SSH Service resource management (VU#290140 / Nessus ID 48967)
1 year 3 months ago
A vulnerability, which was classified as critical, has been found in Cisco IOS up to 12.2. Affected by this issue is some unknown functionality of the component SSH Service. The manipulation leads to improper resource management.
This vulnerability is handled as CVE-2002-1024. The attack may be launched remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2002-0677 | SGI IRIX up to 6.5.16 CFE ToolTalk Database Server AUTH_UNIX descriptor memory corruption (VU#975403 / Nessus ID 10787)
1 year 3 months ago
A vulnerability was found in SGI IRIX. It has been rated as critical. Affected by this issue is the function AUTH_UNIX of the component CFE ToolTalk Database Server. The manipulation of the argument descriptor leads to memory corruption.
This vulnerability is handled as CVE-2002-0677. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2002-0678 | SGI IRIX up to 6.5.16 CDE ToolTalk Database Server _TT_TRANSACTION symlink (VU#299816 / ID 68510)
1 year 3 months ago
A vulnerability classified as critical has been found in SGI IRIX. This affects the function _TT_TRANSACTION of the component CDE ToolTalk Database Server. The manipulation leads to symlink following.
This vulnerability is uniquely identified as CVE-2002-0678. Attacking locally is a requirement. There is no exploit available.
vuldb.com
CVE-2002-0679 | Xi Graphics Dextop 2.1 ToolTalk rpc.ttdbserverd _TT_CREATE_FILE memory corruption (VU#387387 / Nessus ID 10787)
1 year 3 months ago
A vulnerability was found in Xi Graphics Dextop 2.1 and classified as very critical. This issue affects the function _TT_CREATE_FILE of the file rpc.ttdbserverd of the component ToolTalk. The manipulation leads to memory corruption.
The identification of this vulnerability is CVE-2002-0679. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2002-0573 | Sun Solaris 2.6/7.0/8.0 RPC Wall Daemon syslog format string (VU#638099 / Nessus ID 10950)
1 year 3 months ago
A vulnerability was found in Sun Solaris 2.6/7.0/8.0. It has been classified as critical. This affects the function syslog of the component RPC Wall Daemon. The manipulation leads to format string.
This vulnerability is uniquely identified as CVE-2002-0573. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2002-0572 | FreeBSD 4.4/4.5 File Descriptors privileges management (VU#809347 / EDB-21407)
1 year 3 months ago
A vulnerability was found in FreeBSD 4.4/4.5 and classified as critical. Affected by this issue is some unknown functionality of the component File Descriptors. The manipulation leads to improper privilege management.
This vulnerability is handled as CVE-2002-0572. Local access is required to approach this attack. Furthermore, there is an exploit available.
vuldb.com
CVE-2002-0391 | FreeBSD 4.6.1 RPC Server rpc.cmsd xdr_array integer coercion (VU#192995 / Nessus ID 14983)
1 year 3 months ago
A vulnerability classified as very critical has been found in FreeBSD 4.6.1. Affected is the function xdr_array of the file rpc.cmsd of the component RPC Server. The manipulation leads to integer coercion error.
This vulnerability is traded as CVE-2002-0391. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com