Aggregator
A vulnerability was found in Microsoft Windows and classified as critical. This issue affects some unknown processing. The manipulation leads to improper resource management.
The identification of this vulnerability is CVE-2008-4114. The attack may be initiated remotely. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
CVE-2008-4203 | Czaries CzarNews 1.12/1.13/1.14/1.20 cn_users.php sql injection (EDB-6462 / XFDB-45127)
1 year 4 months ago
A vulnerability was found in Czaries CzarNews 1.12/1.13/1.14/1.20 and classified as critical. Affected by this issue is some unknown functionality of the file cn_users.php. The manipulation leads to sql injection.
This vulnerability is handled as CVE-2008-4203. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-4135 | Symbian OS S60 3rd Edition resource management (EDB-6459 / XFDB-45158)
1 year 4 months ago
A vulnerability classified as critical was found in Symbian OS S60 3rd Edition. Affected by this vulnerability is an unknown functionality. The manipulation leads to improper resource management.
This vulnerability is known as CVE-2008-4135. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-4181 | Netenberg Fantastico De Luxe up to 2.8.1 fantasticopath path traversal (EDB-6461 / XFDB-45147)
1 year 4 months ago
A vulnerability was found in Netenberg Fantastico De Luxe up to 2.8.1 and classified as critical. Affected by this issue is some unknown functionality. The manipulation of the argument fantasticopath leads to path traversal.
This vulnerability is handled as CVE-2008-4181. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2008-4136 | Michael Roth Software Personal FTP Server 6.0f input validation (EDB-6458 / XFDB-45129)
1 year 4 months ago
A vulnerability was found in Michael Roth Software Personal FTP Server 6.0f and classified as problematic. This issue affects some unknown processing. The manipulation leads to improper input validation.
The identification of this vulnerability is CVE-2008-4136. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-4356 | Kasseler CMS 1.1.0/1.2.0 index.php module sql injection (EDB-6460 / XFDB-45120)
1 year 4 months ago
A vulnerability was found in Kasseler CMS 1.1.0/1.2.0. It has been rated as critical. This issue affects some unknown processing of the file index.php. The manipulation of the argument module leads to sql injection.
The identification of this vulnerability is CVE-2008-4356. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-7007 | Phpversion PHP VX Guestbook 1.06 improper authentication (EDB-6457 / XFDB-45152)
1 year 4 months ago
A vulnerability has been found in Phpversion PHP VX Guestbook 1.06 and classified as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to improper authentication.
This vulnerability is known as CVE-2008-7007. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
安全动态回顾|全国网安标委:关于举办2024年网络安全标准知识竞赛的通知 黑客从暴露的Git配置文件中窃取了15000个云凭据
1 year 4 months ago
往期回顾:
胡金鱼
CVE-2008-7006 | Phpversion PHP VX Guestbook 1.06 admin/backupdb.php improper authentication (EDB-6456 / XFDB-45150)
1 year 4 months ago
A vulnerability, which was classified as problematic, was found in Phpversion PHP VX Guestbook 1.06. Affected is an unknown function of the file admin/backupdb.php. The manipulation leads to improper authentication.
This vulnerability is traded as CVE-2008-7006. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-4353 | Linkarity link.php cat_id sql injection (EDB-6455 / XFDB-45100)
1 year 4 months ago
A vulnerability was found in Linkarity and classified as critical. Affected by this issue is some unknown functionality of the file link.php. The manipulation of the argument cat_id leads to sql injection.
This vulnerability is handled as CVE-2008-4353. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-4352 | phpSmartCom 0.2 uid sql injection (EDB-6452 / XFDB-45126)
1 year 4 months ago
A vulnerability has been found in phpSmartCom 0.2 and classified as critical. Affected by this vulnerability is an unknown functionality. The manipulation of the argument uid leads to sql injection.
This vulnerability is known as CVE-2008-4352. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-4176 | Asp Indir FoT Video scripti 1.1 izle.asp oyun sql injection (EDB-6453 / XFDB-45098)
1 year 4 months ago
A vulnerability classified as critical has been found in Asp Indir FoT Video scripti 1.1. This affects an unknown part of the file izle.asp. The manipulation of the argument oyun leads to sql injection.
This vulnerability is uniquely identified as CVE-2008-4176. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-4351 | phpSmartCom 0.2 index.php path traversal (EDB-6452 / XFDB-45125)
1 year 4 months ago
A vulnerability, which was classified as critical, was found in phpSmartCom 0.2. Affected is an unknown function of the file index.php. The manipulation leads to path traversal.
This vulnerability is traded as CVE-2008-4351. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
Hiring guide: Key skills for cybersecurity researchers
1 year 4 months ago
In this Help Net Security interview, Rachel Barouch, an Organizational Coach for VCs and startups and a former VP HR in both a VC and a Cybersecurity startup, discusses the dynamics of cybersecurity researchers and team-building strategies. She highlights that these researchers, often brilliant and introverted, come with distinctive working styles, making it challenging to foster collaboration. However, with the right approach to assessing, managing, retaining and developing them, organizations can unlock their potential and … More →
The post Hiring guide: Key skills for cybersecurity researchers appeared first on Help Net Security.
Mirko Zorz
CVE-2015-0937 | Blue Coat Malware Analysis Appliance up to 4.2.4 search.php cross site scripting (VU#274244)
1 year 4 months ago
A vulnerability was found in Blue Coat Malware Analysis Appliance up to 4.2.4. It has been declared as problematic. This vulnerability affects unknown code of the file search.php. The manipulation leads to cross site scripting.
This vulnerability was named CVE-2015-0937. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-3849 | mooSocial mooDating 1.2 URL /find-a-match cross site scripting (ID 173691 / EDB-51628)
1 year 4 months ago
A vulnerability, which was classified as problematic, was found in mooSocial mooDating 1.2. Affected is an unknown function of the file /find-a-match of the component URL Handler. The manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2023-3849. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
We tried to contact the vendor early about the disclosure but the official mail address was not working properly.
We tried to contact the vendor early about the disclosure but the official mail address was not working properly.
vuldb.com
Guerre di Rete - Se le banche dati strategiche sono un business
1 year 4 months ago
Tribunale di Milano, WikimediaGuerre di Rete - una newsletter di notizie cyberdi Carola FredianiN.19
Meet Interlock — The new ransomware targeting FreeBSD servers
1 year 4 months ago
error code: 1106
CVE-2024-10759 | itsourcecode Farm Management System 1.0 /edit-pig.php pigno/weight/arrived/breed/remark/status sql injection
1 year 4 months ago
A vulnerability has been found in itsourcecode Farm Management System 1.0 and classified as critical. This vulnerability affects unknown code of the file /edit-pig.php. The manipulation of the argument pigno/weight/arrived/breed/remark/status leads to sql injection.
This vulnerability was named CVE-2024-10759. The attack can be initiated remotely. Furthermore, there is an exploit available.
The initial researcher advisory only mentions the parameter "pigno" to be affected. But it must be assumed that other parameters are affected as well.
vuldb.com
CVE-2015-0934 | Sharelatex up to 0.1.1 Interface command injection (VU#302668)
1 year 4 months ago
A vulnerability was found in Sharelatex up to 0.1.1. It has been classified as critical. Affected is an unknown function of the component Interface. The manipulation leads to command injection.
This vulnerability is traded as CVE-2015-0934. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com