Aggregator
CVE-2024-10966 | TOTOLINK X18 9.1.0cu.2024_B20220329 /cgi-bin/cstecgi.cgi enable os command injection
1 year 4 months ago
A vulnerability, which was classified as critical, has been found in TOTOLINK X18 9.1.0cu.2024_B20220329. Affected by this issue is some unknown functionality of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument enable leads to os command injection.
This vulnerability is handled as CVE-2024-10966. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
Canada Orders Shutdown of Local TikTok Branch Over Security Concerns
1 year 4 months ago
TikTok Technology Canada, Inc, the subsidiary of Chinese group ByteDance, will have to cease its operations in Canada
Submit #437310: TOTOLINK X18 9.1.0cu.2024_B20220329 Command Injection [Accepted]
1 year 4 months ago
Submit #437310 / VDB-283412
monologue
VEILDrive 攻击利用微软服务逃避检测并传播恶意软件
1 year 4 months ago
安全客
元支点与伟仕佳杰在京达成战略合作签约
1 year 4 months ago
企业资讯
Detecting and Mitigating Lateral Movement
1 year 4 months ago
Background Lateral movement refers to a post-exploitation activity in which a threat actor attempts to penetrate adjacent devices. After acquiring […]
The post Detecting and Mitigating Lateral Movement appeared first on HawkEye.
HawkEye
双十一开放注册微信抽奖活动,再送40个账号注册码或300论坛币,周日下午两点开奖,详见:【开放注册公告】吾爱破解论坛2024年11月11日光棍节开放注册公告。 PS:上次参加完活动的同学这次参加需要重新分享上传。
1 year 4 months ago
IntelBroker 声称在 BreachForums 上出售诺基亚的源代码
1 year 4 months ago
安全客
CVE-2024-10965 | emqx neuron up to 2.10.0 JSON File /api/v2/schema information disclosure
1 year 4 months ago
A vulnerability classified as problematic was found in emqx neuron up to 2.10.0. Affected by this vulnerability is an unknown functionality of the file /api/v2/schema of the component JSON File Handler. The manipulation leads to information disclosure.
This vulnerability is known as CVE-2024-10965. The attack can be launched remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-10964 | emqx neuron up to 2.10.0 plugin_handle.c handle_add_plugin buffer overflow
1 year 4 months ago
A vulnerability classified as critical has been found in emqx neuron up to 2.10.0. Affected is the function handle_add_plugin in the library cmd.library of the file plugins/restful/plugin_handle.c. The manipulation leads to buffer overflow.
This vulnerability is traded as CVE-2024-10964. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
Submit #435375: emqx neuron neuron version ≤ 2.10.0 Arbitrary JSON File Read [Accepted]
1 year 4 months ago
Submit #435375 / VDB-283411
susu199
Submit #435372: emqx neuron neuron version ≤ 2.10.0 Buffer Overflow [Accepted]
1 year 4 months ago
Submit #435372 / VDB-283410
susu199
Memorial Hospital and Manor 遭受勒索软件攻击
1 year 4 months ago
安全客
CVE-2015-2905 | Actiontec GT784WN Modem up to NCS01-1.0.12 cross-site request forgery (VU#335192)
1 year 4 months ago
A vulnerability was found in Actiontec GT784WN Modem up to NCS01-1.0.12. It has been declared as problematic. This vulnerability affects unknown code. The manipulation leads to cross-site request forgery.
This vulnerability was named CVE-2015-2905. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
NCSC Publishes Tips to Tackle Malvertising Threat
1 year 4 months ago
The UK’s National Cyber Security Centre has released malvertising guidance for brands and their ad partners
元支点与伟仕佳杰在京达成战略合作签约
1 year 4 months ago
元支点与伟仕佳杰在京达成战略合作签约 日期:2024年11月07日 阅:40 11月
ToxicPanda: 16 банков в заложниках у китайского трояна
1 year 4 months ago
Новое мощное оружие в арсенале хакеров, атакующих Android.
Gartner发现人工智能辅助攻击是连续第三季度的头号网络威胁
1 year 4 months ago
安全客
CVE-2024-50162 | Linux Kernel up to 5.15.169/6.1.114/6.6.58/6.11.5 devmap null pointer dereference
1 year 4 months ago
A vulnerability was found in Linux Kernel up to 5.15.169/6.1.114/6.6.58/6.11.5. It has been rated as problematic. This issue affects some unknown processing of the component devmap. The manipulation leads to null pointer dereference.
The identification of this vulnerability is CVE-2024-50162. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com