Aggregator
A Threat Actor Has Allegedly Leaked Data of UMEKEN USA
1 year 5 months ago
A Threat Actor Has Allegedly Leaked Data of UMEKEN USA
Dark Web Informer
IDC报告解读:实用型靶场将成为下一代网络靶场的必然方向
1 year 5 months ago
赛宁网安
RipperSec Targeted the Website of Keren Kayemet LeYisrael – Jewish National Fund
1 year 5 months ago
RipperSec Targeted the Website of Keren Kayemet LeYisrael – Jewish National Fund
Dark Web Informer
Pro-Russian Hacktivists Target South Korea as North Korea Joins Ukraine War
1 year 5 months ago
South Korea warned that pro-Russian groups have attacked government and private sector websites following the deployment of North Korean soldiers in Ukraine
A Threat Actor is Allegedly Selling Data of Altissia
1 year 5 months ago
A Threat Actor is Allegedly Selling Data of Altissia
Dark Web Informer
CVE-2023-3844 | mooSocial mooDating 1.2 URL /friends cross site scripting (ID 173691 / EDB-51628)
1 year 5 months ago
A vulnerability was found in mooSocial mooDating 1.2. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /friends of the component URL Handler. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2023-3844. The attack can be launched remotely. Furthermore, there is an exploit available.
We tried to contact the vendor early about the disclosure but the official mail address was not working properly.
We tried to contact the vendor early about the disclosure but the official mail address was not working properly.
vuldb.com
APT73
1 year 5 months ago
cohenido
CVE-2015-8476 | PHPMailer up to 5.2.13 class.phpmailer.php sendCommand input validation (Nessus ID 87268 / ID 124706)
1 year 5 months ago
A vulnerability was found in PHPMailer up to 5.2.13. It has been rated as critical. This issue affects the function sendCommand of the file class.phpmailer.php. The manipulation leads to improper input validation.
The identification of this vulnerability is CVE-2015-8476. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
rufusdomando Has Allegedly Leaked the Data of Hospital Management System Argentina
1 year 5 months ago
rufusdomando Has Allegedly Leaked the Data of Hospital Management System Argentina
Dark Web Informer
Healthcare Management Systems Has Been Claimed a Victim to BianLian Ransomware
1 year 5 months ago
Healthcare Management Systems Has Been Claimed a Victim to BianLian Ransomware
Dark Web Informer
Otto Simon Ltd Has Been Claimed a Victim to Cactus Ransomware
1 year 5 months ago
Otto Simon Ltd Has Been Claimed a Victim to Cactus Ransomware
Dark Web Informer
Submit #434927: netgear R6220 The Version is less than Version 1.1.0.086 Command Injection [Duplicate]
1 year 5 months ago
Submit #434927 / VDB-169791
theRaz0r
CVE-2024-47190 | Northern.tech Hosted Mender prior 2024.07.11 server-side request forgery
1 year 5 months ago
A vulnerability, which was classified as critical, has been found in Northern.tech Hosted Mender. Affected by this issue is some unknown functionality. The manipulation leads to server-side request forgery.
This vulnerability is handled as CVE-2024-47190. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-46948 | Northern.tech Mender up to 3.6.4/3.7.4 access control
1 year 5 months ago
A vulnerability classified as critical was found in Northern.tech Mender up to 3.6.4/3.7.4. Affected by this vulnerability is an unknown functionality. The manipulation leads to improper access controls.
This vulnerability is known as CVE-2024-46948. Access to the local network is required for this attack to succeed. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-46947 | Northern.tech Mender up to 3.6.5/3.7.6 server-side request forgery
1 year 5 months ago
A vulnerability classified as critical has been found in Northern.tech Mender up to 3.6.5/3.7.6. Affected is an unknown function. The manipulation leads to server-side request forgery.
This vulnerability is traded as CVE-2024-46947. Access to the local network is required for this attack. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-50966 | dingfanzu CMS 1.0 doAdminAction.php?act=addAdmin cross-site request forgery
1 year 5 months ago
A vulnerability was found in dingfanzu CMS 1.0. It has been rated as problematic. This issue affects some unknown processing of the file /admin/doAdminAction.php?act=addAdmin. The manipulation leads to cross-site request forgery.
The identification of this vulnerability is CVE-2024-50966. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2015-6003 | QNAP QTS up to 4.1.3/4.2.0 RC1 AFP path traversal (VU#751328 / ID 1033794)
1 year 5 months ago
A vulnerability, which was classified as problematic, was found in QNAP QTS up to 4.1.3/4.2.0 RC1. This affects an unknown part of the component AFP. The manipulation leads to path traversal.
This vulnerability is uniquely identified as CVE-2015-6003. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
RansomHub
1 year 5 months ago
cohenido
2024 TechWorld | 绿盟科技发布5款数据安全新品
1 year 5 months ago
数据要素流通安全能力正式发布