Aggregator
CVE-2023-32646 | Intel VROC Software prior 8.0.8.1001 uncontrolled search path (intel-sa-00953)
1 year 4 months ago
A vulnerability was found in Intel VROC Software. It has been rated as critical. Affected by this issue is some unknown functionality. The manipulation leads to uncontrolled search path.
This vulnerability is handled as CVE-2023-32646. The attack needs to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-33870 | Intel Ethernet Tools and Driver Install Software insecure inherited permissions (intel-sa-00993)
1 year 4 months ago
A vulnerability classified as critical has been found in Intel Ethernet Tools and Driver Install Software. This affects an unknown part. The manipulation leads to insecure inherited permissions.
This vulnerability is uniquely identified as CVE-2023-33870. An attack has to be approached locally. There is no exploit available.
vuldb.com
CVE-2024-49671 | Dogu Pekgoz AI Image Generator for Your Content & Featured Images Plugin unrestricted upload
1 year 4 months ago
A vulnerability, which was classified as critical, has been found in Dogu Pekgoz AI Image Generator for Your Content & Featured Images Plugin up to 1.1.8 on WordPress. This issue affects some unknown processing. The manipulation leads to unrestricted upload.
The identification of this vulnerability is CVE-2024-49671. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-49676 | Michael Bourne Custom Icons for Elementor Plugin up to 0.3.3 on WordPress unrestricted upload
1 year 4 months ago
A vulnerability was found in Michael Bourne Custom Icons for Elementor Plugin up to 0.3.3 on WordPress and classified as problematic. Affected by this issue is some unknown functionality. The manipulation leads to unrestricted upload.
This vulnerability is handled as CVE-2024-49676. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-49684 | Revmakx Backup and Staging by WP Time Capsule Plugin up to 1.22.21 on WordPress deserialization
1 year 4 months ago
A vulnerability was found in Revmakx Backup and Staging by WP Time Capsule Plugin up to 1.22.21 on WordPress. It has been declared as problematic. This vulnerability affects unknown code. The manipulation leads to deserialization.
This vulnerability was named CVE-2024-49684. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-49658 | Ecomerciar Woocommerce Custom Profile Picture Plugin up to 1.0 on WordPress unrestricted upload
1 year 4 months ago
A vulnerability classified as critical was found in Ecomerciar Woocommerce Custom Profile Picture Plugin up to 1.0 on WordPress. Affected by this vulnerability is an unknown functionality of the component Profile Picture Handler. The manipulation leads to unrestricted upload.
This vulnerability is known as CVE-2024-49658. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-49669 | Alexander De Ridder INK Official Plugin up to 4.1.2 on WordPress unrestricted upload
1 year 4 months ago
A vulnerability has been found in Alexander De Ridder INK Official Plugin up to 4.1.2 on WordPress and classified as critical. This vulnerability affects unknown code. The manipulation leads to unrestricted upload.
This vulnerability was named CVE-2024-49669. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-49668 | Admin Verbalize WP Plugin up to 1.0 on WordPress unrestricted upload
1 year 4 months ago
A vulnerability was found in Admin Verbalize WP Plugin up to 1.0 on WordPress and classified as critical. This issue affects some unknown processing. The manipulation leads to unrestricted upload.
The identification of this vulnerability is CVE-2024-49668. The attack may be initiated remotely. There is no exploit available.
vuldb.com
More From Our Main Blog: Safely Expanding the Frontiers of AI & LLMs | S Ventures’ Investment in Galileo
1 year 4 months ago
S Ventures announces an investment in Galileo to ensure that the models powering AI applications are secure, trustworthy, and reliable.
The post Safely Expanding the Frontiers of AI & LLMs | S Ventures’ Investment in Galileo appeared first on SentinelOne.
David Kellenberger
Change Healthcare Breach Affects 100 Million Americans
1 year 4 months ago
Updated figures from the HHS revealed that 100 million patients have been notified that their data was breached in the Change Healthcare ransomware attack
My Journey From the Air Force to Cybersecurity
1 year 4 months ago
Cybersecurity is mission-driven, meaningful work that coincides with the service branches' goals to protect, defend, and create a safer world.
Ryan Williams Sr.
Amerikanen hebben oog voor Nederlandse defensie-innovaties
1 year 4 months ago
De Verenigde Staten zien veel potentie in samenwerking met Nederland op het gebied van defensie-innovaties. Dat is afgelopen dagen gebleken tijdens een bezoek van Heidi Shyu, de Amerikaanse portefeuillehouder voor innovatie van het Pentagon. Staatssecretaris Gijs Tuinman ontving haar.
首创旁路解密,微步发布加密流量检测技术创新解决方案
1 year 4 months ago
目前,微步威胁感知平台TDP、威胁防御系统OneSIG已同时支持SSL/TLS加密流量的高性能解密和精准检测。
Google Play 上超过 200 个恶意应用被下载了数百万次
1 year 4 months ago
用户还应检查安装时请求的权限,如果应用程序所需的权限不适合其活动,则应中止该过程。
【挖掘练习答案】美军运输机是否降落老挝机场?
1 year 4 months ago
从视频中可看到该运输机编号5153,和2021年6月6日窜访台湾的C17运输机属于同一个部队:美国空军第15联队/夏威夷空军国民警卫队第154联队第 535 空运中队。
Researchers Discover Command Injection Flaw in Wi-Fi Alliance's Test Suite
1 year 4 months ago
A security flaw impacting the Wi-Fi Test Suite could enable unauthenticated local attackers to execute arbitrary code with elevated privileges.
The CERT Coordination Center (CERT/CC) said the susceptible code from the Wi-Fi Alliance has been found deployed on Arcadyan FMIMG51AX000J routers. The vulnerability is being tracked as CVE-2024-41992.
"This flaw allows an unauthenticated local attacker
The Hacker News
CVE-2024-49370 | Pimcore up to 3.1.15/4.1.6 Portal Engine credentials storage (GHSA-74p5-77rq-gfqc)
1 year 4 months ago
A vulnerability classified as problematic has been found in Pimcore up to 3.1.15/4.1.6. This affects an unknown part of the component Portal Engine. The manipulation leads to unprotected storage of credentials.
This vulnerability is uniquely identified as CVE-2024-49370. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-49657 | ReneeCussack 3D Work In Progress Plugin up to 1.0.3 on WordPress authorization
1 year 4 months ago
A vulnerability was found in ReneeCussack 3D Work In Progress Plugin up to 1.0.3 on WordPress. It has been classified as problematic. This affects an unknown part. The manipulation leads to missing authorization.
This vulnerability is uniquely identified as CVE-2024-49657. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-49653 | James Eggers Portfolleo Plugin up to 1.2 on WordPress unrestricted upload
1 year 4 months ago
A vulnerability, which was classified as critical, has been found in James Eggers Portfolleo Plugin up to 1.2 on WordPress. Affected by this issue is some unknown functionality. The manipulation leads to unrestricted upload.
This vulnerability is handled as CVE-2024-49653. The attack may be launched remotely. There is no exploit available.
vuldb.com