Aggregator
Qilin
4 months ago
cohenido
Qilin
4 months ago
cohenido
CVE-2007-4318 | Zyxel Zywall 2 3.62(wk.6) Management Interface sysSystemName cross site scripting (EDB-30485 / XFDB-35913)
4 months ago
A vulnerability was found in Zyxel Zywall 2 3.62(wk.6) and classified as problematic. Affected by this issue is some unknown functionality of the component Management Interface. The manipulation of the argument sysSystemName leads to basic cross site scripting.
This vulnerability is handled as CVE-2007-4318. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
Молекулярная броня: почему мозг некоторых людей не гниет тысячи лет
4 months ago
Неправильно свернутые белки могут сохранять посмертный мозг в течение длительного времени после того, как другие ткани разложились.
Прикосновение ИИ: машины пробуют мир на ощупь с помощью квантовой механики
4 months ago
Алгоритм безошибочно распознает меланому и обнаружит дефекты в любом материале.
联合国塑料条约谈判破裂
4 months ago
联合国塑料条约谈判破裂
CVE-2024-50381 | Snap One OvrC Cloud up to 7.2 MAC Address missing authentication (icsa-23-136-01)
4 months ago
A vulnerability, which was classified as critical, has been found in Snap One OvrC Cloud up to 7.2. This issue affects some unknown processing of the component MAC Address Handler. The manipulation leads to missing authentication.
The identification of this vulnerability is CVE-2024-50381. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-50380 | Snap One OvrC Cloud up to 7.2 MAC Address authentication spoofing (icsa-23-136-01)
4 months ago
A vulnerability classified as critical was found in Snap One OvrC Cloud up to 7.2. This vulnerability affects unknown code of the component MAC Address Handler. The manipulation leads to authentication bypass by spoofing.
This vulnerability was named CVE-2024-50380. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Credential Guard and Kerberos delegation, (Mon, Dec 2nd)
4 months ago
Credential Guard and Kerberos delegation, (Mon, Dec 2nd)
CVE-2024-52596 | SimpleSAMLphp xml-common up to 1.19.x XML Document xml external entity reference (Nessus ID 212000)
4 months ago
A vulnerability classified as critical has been found in SimpleSAMLphp xml-common up to 1.19.x. This affects an unknown part of the component XML Document Handler. The manipulation leads to xml external entity reference.
This vulnerability is uniquely identified as CVE-2024-52596. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
MaxPatrol VM в реестре российского ПО: официальное признание ИИ-технологий
4 months ago
Умный поиск в обновлении 2.7 уже доступен.
Linux安全警报:首个UEFI bootkit恶意软件现身;ThinkPad笔记本曝硬件级漏洞,黑客可偷偷控制摄像头 | 牛览
4 months ago
Linux安全警报:首个UEFI bootkit恶意软件现身;ThinkPad笔记本曝硬件级漏洞,黑客可偷偷控制摄像头 | 牛览
Exploring the Highest Paying Cybersecurity Jobs in 2024
4 months ago
The typical salary ranges for various cybersecurity roles and the elements and factors that impact earning potential in the cybersecurity field.
The post Exploring the Highest Paying Cybersecurity Jobs in 2024 appeared first on Security Boulevard.
Rob Witcher
CVE-2024-53259 | quic-go up to 0.48.1 IP_PMTUDISC_DO denial of service
4 months ago
A vulnerability was found in quic-go up to 0.48.1. It has been rated as critical. Affected by this issue is the function IP_PMTUDISC_DO. The manipulation leads to denial of service.
This vulnerability is handled as CVE-2024-53259. The attack can only be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-53364 | PHPGurukul Vehicle Parking Management System 1.13 /users/view-detail.php viewid sql injection
4 months ago
A vulnerability was found in PHPGurukul Vehicle Parking Management System 1.13. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /users/view-detail.php. The manipulation of the argument viewid leads to sql injection.
This vulnerability is known as CVE-2024-53364. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-52806 | SimpleSAMLphp saml2 up to 4.6.13/5.0.0-alpha.17 XML Document xml external entity reference
4 months ago
A vulnerability was found in SimpleSAMLphp saml2 up to 4.6.13/5.0.0-alpha.17. It has been classified as critical. Affected is an unknown function of the component XML Document Handler. The manipulation leads to xml external entity reference.
This vulnerability is traded as CVE-2024-52806. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Reposition Cybersecurity From a Cost Center to a Business Driver
4 months ago
Repositioning cybersecurity as a business issue ensures that it receives the attention and resources it requires at the highest levels of the organization.
The post Reposition Cybersecurity From a Cost Center to a Business Driver appeared first on Security Boulevard.
Steve Durbin
CVE-2024-9694 | CMSMasters Elementor Addon Plugin up to 1.14.7 on WordPress Widget cross site scripting
4 months ago
A vulnerability was found in CMSMasters Elementor Addon Plugin up to 1.14.7 on WordPress and classified as problematic. This issue affects some unknown processing of the component Widget. The manipulation leads to cross site scripting.
The identification of this vulnerability is CVE-2024-9694. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-45106 | Apache Ozone 1.4.0 S3 Secret improper authentication
4 months ago
A vulnerability has been found in Apache Ozone 1.4.0 and classified as critical. This vulnerability affects unknown code of the component S3 Secret Handler. The manipulation leads to improper authentication.
This vulnerability was named CVE-2024-45106. The attack needs to be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com