Aggregator
Google's mysterious 'search.app' links leave Android users concerned
1 year 4 months ago
The most recent update to the Google Android app has startled users as they notice the mysterious "search.app" links being generated when sharing content and links from the Google app externally. [...]
Ax Sharma
张忠谋曾邀请黄仁勋担任台积电 CEO
1 year 4 months ago
英特尔曾考虑收购英伟达,AMD 也曾有意与英伟达合并但因为其 CEO 黄仁勋想要担任合并后公司的 CEO 而放弃,现在台积电创始人张忠谋据报也曾邀请黄仁勋担任台积电 CEO 但黄对此没有兴趣。根据即将出版的张忠谋传记,2013 年 82 岁年事已高的张忠谋开始寻找接班人,他有两个选择,从公司外部找一位有成功记录的人,或者从公司内部提拔。英伟达当时远没有今天如日中天,但在 GPU 市场占据了六成份额,正向数据中心、智能手机和消费电子产品领域扩张。因此黄仁勋对成为台积电 CEO 没什么兴趣。张忠谋选择了内部挖掘人才,任命魏哲家和刘德音担任联席 CEO,他在 2018 年退休时刘成为董事长(刘在 2024 年退休),魏哲家成为 CEO。
CVE-2021-31989 | AXIS Device Manager Client Machine Hosting information disclosure
1 year 4 months ago
A vulnerability was found in AXIS Device Manager Client. It has been declared as problematic. This vulnerability affects unknown code of the component Machine Hosting. The manipulation leads to information disclosure.
This vulnerability was named CVE-2021-31989. The attack needs to be done within the local network. There is no exploit available.
vuldb.com
CVE-2021-31986 | Axis OS up to 6.40 SMTP Notification buffer overflow
1 year 4 months ago
A vulnerability was found in Axis OS up to 6.40 and classified as critical. This issue affects some unknown processing of the component SMTP Notification Handler. The manipulation leads to buffer overflow.
The identification of this vulnerability is CVE-2021-31986. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-31987 | Axis OS SMTP Test access control
1 year 4 months ago
A vulnerability was found in Axis OS. It has been classified as critical. Affected is an unknown function of the component SMTP Test Handler. The manipulation leads to improper access controls.
This vulnerability is traded as CVE-2021-31987. The attack needs to be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-31988 | Axis OS SMTP Test crlf injection
1 year 4 months ago
A vulnerability was found in Axis OS. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component SMTP Test Handler. The manipulation leads to crlf injection.
This vulnerability is known as CVE-2021-31988. Access to the local network is required for this attack. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-23410 | AXIS IP Utility up to 4.16.x IPUtility.exe access control
1 year 4 months ago
A vulnerability, which was classified as critical, has been found in AXIS IP Utility up to 4.16.x. Affected by this issue is some unknown functionality of the file IPUtility.exe. The manipulation leads to improper access controls.
This vulnerability is handled as CVE-2022-23410. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-21415 | AXIS AxOS VAPIX API overlay_del.cgi path traversal
1 year 4 months ago
A vulnerability, which was classified as critical, was found in AXIS AxOS. This affects an unknown part of the file overlay_del.cgi of the component VAPIX API. The manipulation leads to path traversal.
This vulnerability is uniquely identified as CVE-2023-21415. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2023-21414 | AXIS OS Secure Boot Local Privilege Escalation
1 year 4 months ago
A vulnerability has been found in AXIS OS and classified as critical. Affected by this vulnerability is an unknown functionality of the component Secure Boot. The manipulation leads to Local Privilege Escalation.
This vulnerability is known as CVE-2023-21414. It is possible to launch the attack on the physical device. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2023-21416 | AXIS AXIS OS up to 11.6 VAPIX API dynamicoverlay.cgi denial of service
1 year 4 months ago
A vulnerability was found in AXIS AXIS OS up to 11.6. It has been rated as critical. This issue affects some unknown processing of the file dynamicoverlay.cgi of the component VAPIX API. The manipulation leads to denial of service.
The identification of this vulnerability is CVE-2023-21416. The attack may be initiated remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2023-21417 | AXIS AXIS OS up to 11.6 VAPIX API manageoverlayimage.cgi path traversal
1 year 4 months ago
A vulnerability, which was classified as critical, was found in AXIS AXIS OS up to 11.6. This affects an unknown part of the file manageoverlayimage.cgi of the component VAPIX API. The manipulation leads to path traversal.
This vulnerability is uniquely identified as CVE-2023-21417. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2023-21418 | AXIS AXIS OS up to 11.6 VAPIX API irissetup.cgi path traversal
1 year 4 months ago
A vulnerability has been found in AXIS AXIS OS up to 11.6 and classified as critical. This vulnerability affects unknown code of the file irissetup.cgi of the component VAPIX API. The manipulation leads to path traversal.
This vulnerability was named CVE-2023-21418. The attack can be initiated remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2008-6870 | Merlix Educate Server config.asp access control (EDB-7348 / XFDB-47107)
1 year 4 months ago
A vulnerability was found in Merlix Educate Server and classified as problematic. This issue affects some unknown processing of the file config.asp. The manipulation leads to improper access controls.
The identification of this vulnerability is CVE-2008-6870. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
Бизнес на пороге обязательного подключения к ГосСОПКА
1 year 4 months ago
НКЦКИ готовит закон о расширении системы киберзащиты.
CVE-2024-50589 | Hasomed Elefant 1.4.2.1811/24.03.03 FHIR API missing authentication
1 year 4 months ago
A vulnerability, which was classified as critical, was found in Hasomed Elefant 1.4.2.1811/24.03.03. This affects an unknown part of the component FHIR API. The manipulation leads to missing authentication.
This vulnerability is uniquely identified as CVE-2024-50589. The attack needs to be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-50593 | Hasomed Elefant 1.4.2.1811 Hotline hard-coded credentials
1 year 4 months ago
A vulnerability was found in Hasomed Elefant 1.4.2.1811. It has been classified as critical. Affected is an unknown function of the component Hotline. The manipulation leads to hard-coded credentials.
This vulnerability is traded as CVE-2024-50593. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-50591 | Hasomed Elefant prior 1.4.2.1811 Update Service command injection
1 year 4 months ago
A vulnerability was found in Hasomed Elefant and classified as critical. This issue affects some unknown processing of the component Update Service. The manipulation leads to command injection.
The identification of this vulnerability is CVE-2024-50591. An attack has to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-50590 | Hasomed Elefant 1.4.2.1811/24.03.03 fbserver.exe default permission
1 year 4 months ago
A vulnerability has been found in Hasomed Elefant 1.4.2.1811/24.03.03 and classified as critical. This vulnerability affects unknown code of the file C:\Elefant1\Firebird_2\bin\fbserver.exe. The manipulation leads to incorrect default permissions.
This vulnerability was named CVE-2024-50590. The attack needs to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-50589 | Hasomed Elefant 1.4.2.1811/24.03.03 FHIR API missing authentication
1 year 4 months ago
A vulnerability, which was classified as critical, was found in Hasomed Elefant 1.4.2.1811/24.03.03. This affects an unknown part of the component FHIR API. The manipulation leads to missing authentication.
This vulnerability is uniquely identified as CVE-2024-50589. The attack needs to be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com