Aggregator
【安全圈】报告显示,诈骗者一年内窃取超过 1 万亿美元
9 months 4 weeks ago
【安全圈】安理会讨论黑客的会议上,美国直接点名莫斯科
9 months 4 weeks ago
【安全圈】乌克兰人遇到 GPS 欺骗:手机显示错误的位置和时间
9 months 4 weeks ago
CVE-2023-3843 | mooSocial mooDating 1.2 URL /matchmakings/question cross site scripting (ID 173691 / EDB-51628)
9 months 4 weeks ago
A vulnerability was found in mooSocial mooDating 1.2. It has been classified as problematic. Affected is an unknown function of the file /matchmakings/question of the component URL Handler. The manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2023-3843. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
We tried to contact the vendor early about the disclosure but the official mail address was not working properly.
We tried to contact the vendor early about the disclosure but the official mail address was not working properly.
vuldb.com
A Threat Actor Has Allegedly Leaked the Data of Rightful Connect
9 months 4 weeks ago
A Threat Actor Has Allegedly Leaked the Data of Rightful Connect
Dark Web Informer
CVE-2015-8414 | Adobe Flash Player up to 11.2.202.548/18.0.0.261/19.0.0.245 use after free (APSB15-32 / EDB-39042)
9 months 4 weeks ago
A vulnerability was found in Adobe Flash Player up to 11.2.202.548/18.0.0.261/19.0.0.245. It has been classified as critical. This affects an unknown part. The manipulation leads to use after free.
This vulnerability is uniquely identified as CVE-2015-8414. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
【反恐】2024年10月青年党在东非肯尼亚和索马里的活动
9 months 4 weeks ago
2024 年 10 月,肯尼亚和索马里的恐怖主义事件急剧增加,基地组织附属青年党声称对 70 多起袭击事件负责,而 9 月份的袭击事件仅为 50 多起。这次升级凸显了针对当地和国际部队的持续而广泛的行
【资料】宗教、仇恨言论和暴力
9 months 4 weeks ago
今天给大家推送一本1157页的书籍《宗教、仇恨言论和暴力》,该书籍由欧洲安全与合作组织民主制度与人权办公室容忍与非歧视部和国际法研究与政策中心的莫滕·贝尔斯莫和基山·马诺查撰写。仇恨言论既是更深层次社
CVE-2015-7289 | Arris DG860A/TG862A/TG862G up to TS0705125D_031115 SSH/Telnet/SNMP Service credentials management (VU#419568)
9 months 4 weeks ago
A vulnerability, which was classified as critical, was found in Arris DG860A, TG862A and TG862G up to TS0705125D_031115. Affected is an unknown function of the component SSH/Telnet/SNMP Service. The manipulation leads to credentials management.
This vulnerability is traded as CVE-2015-7289. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2015-7288 | CSL DualCom GPRS CS2300-R up to 3.53 SMS Message 4 2 Command 7pk security (VU#428280 / SBV-54580)
9 months 4 weeks ago
A vulnerability, which was classified as critical, was found in CSL DualCom GPRS CS2300-R up to 3.53. Affected is an unknown function of the component SMS Message Handler. The manipulation as part of 4 2 Command leads to 7pk security features.
This vulnerability is traded as CVE-2015-7288. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2008-6510 | Igniterealtime Openfire up to 3.6.0a login.jsp cross site scripting (EDB-7075 / Nessus ID 34839)
9 months 4 weeks ago
A vulnerability classified as problematic was found in Igniterealtime Openfire. Affected by this vulnerability is an unknown functionality of the file login.jsp. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2008-6510. The attack can be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2008-6949 | Collabtive 0.4.8 cross-site request forgery (EDB-7076)
9 months 4 weeks ago
A vulnerability classified as critical has been found in Collabtive 0.4.8. Affected is an unknown function. The manipulation leads to cross-site request forgery.
This vulnerability is traded as CVE-2008-6949. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-6960 | X10media X10 Automatic Mp3 Script up to 1.6 Search Engine download.php url access control (EDB-7074 / XFDB-46489)
9 months 4 weeks ago
A vulnerability, which was classified as critical, has been found in X10media X10 Automatic Mp3 Script up to 1.6. This issue affects some unknown processing of the file download.php of the component Search Engine. The manipulation of the argument url leads to improper access controls.
The identification of this vulnerability is CVE-2008-6960. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-6508 | Igniterealtime Openfire up to 3.6.0a path traversal (EDB-19432 / Nessus ID 34725)
9 months 4 weeks ago
A vulnerability was found in Igniterealtime Openfire. It has been rated as critical. This issue affects some unknown processing. The manipulation leads to path traversal.
The identification of this vulnerability is CVE-2008-6508. The attack may be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2008-6511 | Igniterealtime Openfire up to 3.6.0a login.jsp input validation (EDB-7075 / Nessus ID 34839)
9 months 4 weeks ago
A vulnerability, which was classified as problematic, has been found in Igniterealtime Openfire. Affected by this issue is some unknown functionality of the file login.jsp. The manipulation leads to improper input validation.
This vulnerability is handled as CVE-2008-6511. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2008-5782 | Zeeways ZeeMatri 3.0 bannerclick.php adid sql injection (EDB-7072 / XFDB-46494)
9 months 4 weeks ago
A vulnerability, which was classified as critical, was found in Zeeways ZeeMatri 3.0. Affected is an unknown function of the file bannerclick.php. The manipulation of the argument adid leads to sql injection.
This vulnerability is traded as CVE-2008-5782. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
DataCon2024倒计时3天!数据安全盛宴即将开启
9 months 4 weeks ago
CVE-2008-6912 | Zeeways SHAADICLONE 2.0 admin/home.php improper authentication (EDB-7066 / XFDB-46502)
9 months 4 weeks ago
A vulnerability was found in Zeeways SHAADICLONE 2.0. It has been declared as critical. This vulnerability affects unknown code of the file admin/home.php. The manipulation leads to improper authentication.
This vulnerability was named CVE-2008-6912. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-5042 | Zeeways PhotoVideoTube 1.1 improper authentication (EDB-7070 / XFDB-46501)
9 months 4 weeks ago
A vulnerability classified as critical was found in Zeeways PhotoVideoTube 1.1. This vulnerability affects unknown code. The manipulation leads to improper authentication.
This vulnerability was named CVE-2008-5042. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com