Aggregator
CVE-2024-26202 | Microsoft Windows Server 2012 up to Server 2022 DHCP Server heap-based overflow
1 year 5 months ago
A vulnerability classified as critical was found in Microsoft Windows Server 2012 up to Server 2022. Affected by this vulnerability is an unknown functionality of the component DHCP Server. The manipulation leads to heap-based buffer overflow.
This vulnerability is known as CVE-2024-26202. The attack can be launched remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-26207 | Microsoft Windows up to Server 2022 23H2 Remote Access Connection Manager out-of-bounds
1 year 5 months ago
A vulnerability, which was classified as problematic, was found in Microsoft Windows. This affects an unknown part of the component Remote Access Connection Manager. The manipulation leads to out-of-bounds read.
This vulnerability is uniquely identified as CVE-2024-26207. It is possible to launch the attack on the local host. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-26211 | Microsoft Windows up to Server 2022 23H2 Remote Access Connection Manager heap-based overflow
1 year 5 months ago
A vulnerability was found in Microsoft Windows. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component Remote Access Connection Manager. The manipulation leads to heap-based buffer overflow.
This vulnerability is known as CVE-2024-26211. Attacking locally is a requirement. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-26212 | Microsoft Windows Server 2008 R2 SP1 up to Server 2022 DHCP Server resource consumption
1 year 5 months ago
A vulnerability was found in Microsoft Windows. It has been rated as critical. Affected by this issue is some unknown functionality of the component DHCP Server. The manipulation leads to resource consumption.
This vulnerability is handled as CVE-2024-26212. The attack may be launched remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-26222 | Microsoft Windows DNS Server use after free
1 year 5 months ago
A vulnerability classified as critical has been found in Microsoft Windows Server 2016/Server 2019/Server 2022/Server 2022 23H2. Affected is an unknown function of the component DNS Server. The manipulation leads to use after free.
This vulnerability is traded as CVE-2024-26222. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-26223 | Microsoft Windows DNS Server use after free
1 year 5 months ago
A vulnerability classified as critical was found in Microsoft Windows Server 2016/Server 2019/Server 2022/Server 2022 23H2. Affected by this vulnerability is an unknown functionality of the component DNS Server. The manipulation leads to use after free.
This vulnerability is known as CVE-2024-26223. The attack can be launched remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-26224 | Microsoft Windows DNS Server use after free
1 year 5 months ago
A vulnerability, which was classified as critical, has been found in Microsoft Windows Server 2016/Server 2019/Server 2022/Server 2022 23H2. Affected by this issue is some unknown functionality of the component DNS Server. The manipulation leads to use after free.
This vulnerability is handled as CVE-2024-26224. The attack may be launched remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-26226 | Microsoft Windows Server 2008 R2 SP1 up to Server 2022 Distributed File System out-of-bounds
1 year 5 months ago
A vulnerability, which was classified as problematic, was found in Microsoft Windows. This affects an unknown part of the component Distributed File System. The manipulation leads to out-of-bounds read.
This vulnerability is uniquely identified as CVE-2024-26226. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-26227 | Microsoft Windows DNS Server use after free
1 year 5 months ago
A vulnerability has been found in Microsoft Windows Server 2016/Server 2019/Server 2022/Server 2022 23H2 and classified as critical. This vulnerability affects unknown code of the component DNS Server. The manipulation leads to use after free.
This vulnerability was named CVE-2024-26227. The attack can be initiated remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2020-14295 | Cacti 1.2.12 color.php filter sql injection (EDB-49810)
1 year 5 months ago
A vulnerability was found in Cacti 1.2.12. It has been classified as critical. Affected is an unknown function of the file color.php. The manipulation of the argument filter as part of Parameter leads to sql injection.
This vulnerability is traded as CVE-2020-14295. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2009-1422 | HP ProCurve Threat Management Services zl Module up to St.1.0.090213 Remote Code Execution (EDB-33078 / ADV-2009-1869)
1 year 5 months ago
A vulnerability, which was classified as very critical, has been found in HP ProCurve Threat Management Services zl Module up to St.1.0.090213. This issue affects some unknown processing. The manipulation leads to Remote Code Execution.
The identification of this vulnerability is CVE-2009-1422. The attack may be initiated remotely. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CCC Conference Talk: Investigating the Iridium Satellite Network
1 year 5 months ago
January 9, 2025Over the
2025年需要防范这五大恶意软件
1 year 5 months ago
主站 分类 漏洞 工具 极客
2025年需要防范的五大恶意软件
1 year 5 months ago
2024年发生了多起引人注目的网络攻击,到2025年,这样的趋势还将持续下去。本文整理了5种常见的恶意软件家族,现在就可以着手准备应对了。
CVE-2012-5863 | Sinapsitech Esolar Duo Photovoltaic System Monitor Firmware ping.php ip_dominio access control (EDB-21273 / XFDB-80202)
1 year 5 months ago
A vulnerability has been found in Sinapsitech Esolar Duo Photovoltaic System Monitor and classified as critical. This vulnerability affects unknown code of the file ping.php of the component Firmware. The manipulation of the argument ip_dominio leads to improper access controls.
This vulnerability was named CVE-2012-5863. The attack can be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
某银行的网络攻击防御案例:从威胁检测到快速响应
1 year 5 months ago
一、引言在当今数字化时代,银行作为金融体系的核心支柱,承载着海量的资金交易与客户信息,已然成为网络攻击的重点目标。从恶意软件的悄然渗透,到分布式拒绝服务(DDoS)攻击的狂轰滥炸,再到高级持续性威胁(
某银行的网络攻击防御案例:从威胁检测到快速响应
1 year 5 months ago
银行作为金融体系的核心支柱,已然成为网络攻击的重点目标。
CVE-2002-0328 | Ikonboard 2.17/3.0.1 IMG Tag cross site scripting (EDB-21304 / XFDB-7460)
1 year 5 months ago
A vulnerability was found in Ikonboard 2.17/3.0.1. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component IMG Tag Handler. The manipulation leads to basic cross site scripting.
This vulnerability is known as CVE-2002-0328. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
Saveitforparts: Hacking an Motorized RV Satellite Dish for Tracking LEO Satellites
1 year 5 months ago
January 9, 2025Over on