Aggregator
【资讯】全球特定国家每日动态2025.6.9
【资料】256份美国空军资料
CVE-2025-5913 | PHPGurukul Vehicle Record Management System 1.0 search-vehicle.php searchinputdata sql injection
CVE-2025-5912 | D-Link DIR-632 FW103B08 HTTP POST Request do_file stack-based overflow
CVE-2025-5894 | Honding Smart Parking Management System up to 1.4 authorization (EUVD-2025-17442)
CVE-2025-5911 | TOTOLINK EX1200T up to 4.1.2cu.5232_B20210713 HTTP POST Request /boafrm/formDMZ buffer overflow
CVE-2025-5910 | TOTOLINK EX1200T up to 4.1.2cu.5232_B20210713 HTTP POST Request /boafrm/formWsc buffer overflow
CVE-2025-5909 | TOTOLINK EX1200T up to 4.1.2cu.5232_B20210713 HTTP POST Request formReflashClientTbl buffer overflow
Submit #592310: PHPGurukul Vehicle Record Management System V1.0 SQL Injection [Accepted]
CVE-2025-5908 | TOTOLINK EX1200T up to 4.1.2cu.5232_B20210713 HTTP POST Request /boafrm/formIpQoS buffer overflow
CVE-2025-5907 | TOTOLINK EX1200T up to 4.1.2cu.5232_B20210713 HTTP POST Request /boafrm/formFilter buffer overflow
Submit #592307: dlink DIR-632 FW103B08 Stack-based buffer overflow [Accepted]
CVE-2025-5906 | code-projects Laundry System 1.0 /data/ missing authentication
HelloTDS Malware Spread via FakeCaptcha Infrastructure Infects Millions of Devices
In a Gen Threat Labs, a complex Traffic Direction System (TDS) dubbed “HelloTDS” has been uncovered, orchestrating the delivery of FakeCaptcha and other malicious campaigns to millions of users worldwide. This elaborate infrastructure employs advanced fingerprinting techniques and social engineering to selectively target victims, infecting over 4.3 million devices in April and May 2025 alone. […]
The post HelloTDS Malware Spread via FakeCaptcha Infrastructure Infects Millions of Devices appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
漏洞通告 | Roundcube Webmail存在反序列化漏洞
Critical Salesforce Vulnerability Exposes Global Users to SOQL Injection Attacks
In June 2025, a security researcher uncovered a critical SOQL (Salesforce Object Query Language) injection vulnerability in a default Salesforce Aura controller, affecting potentially thousands of deployments and millions of user records. The discovery highlights the risks of dynamic query construction and the importance of secure coding practices in enterprise cloud platforms. Discovery and Exploitation […]
The post Critical Salesforce Vulnerability Exposes Global Users to SOQL Injection Attacks appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.