Aggregator
CVE-2022-2884 | GitLab Community Edition/Enterprise Edition up to 15.1.4/15.2.2/15.3.0 GitHub API Endpoint os command injection (Issue 37109 / EDB-51181)
1 year 7 months ago
A vulnerability classified as critical was found in GitLab Community Edition and Enterprise Edition up to 15.1.4/15.2.2/15.3.0. This vulnerability affects unknown code of the component GitHub API Endpoint. The manipulation leads to os command injection.
This vulnerability was named CVE-2022-2884. The attack can be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2008-2952 | OpenLDAP 2.3.7 resource management (EDB-32000 / Nessus ID 67724)
1 year 7 months ago
A vulnerability was found in OpenLDAP 2.3.7. It has been rated as problematic. This issue affects some unknown processing. The manipulation leads to improper resource management.
The identification of this vulnerability is CVE-2008-2952. The attack may be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-22355 | IBM QRadar Suite Products/Cloud Pak for Security weak password (XFDB-280781)
1 year 7 months ago
A vulnerability was found in IBM QRadar Suite Products and Cloud Pak for Security. It has been declared as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to weak password requirements.
This vulnerability is known as CVE-2024-22355. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
APT73
1 year 7 months ago
cohenido
Lockbit
1 year 7 months ago
cohenido
CVE-2023-27291 | IBM Watson CP4D Data Stores 4.6.0/4.6.1/4.6.2/4.6.3 missing encryption (XFDB-248740)
1 year 7 months ago
A vulnerability was found in IBM Watson CP4D Data Stores 4.6.0/4.6.1/4.6.2/4.6.3. It has been rated as problematic. Affected by this issue is some unknown functionality. The manipulation leads to missing encryption of sensitive data.
This vulnerability is handled as CVE-2023-27291. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Ученые измерили скорость работы человеческого мозга
1 year 7 months ago
Как мозг превращает сенсорный хаос в осознанное мышление.
Lockbit
1 year 7 months ago
cohenido
Lockbit
1 year 7 months ago
cohenido
Randall Munroe’s XKCD ‘Exclusion Principle’
1 year 7 months ago
Marc Handelman
CVE-2007-4939 | mympc CD-Storm 1.0.0.1 Media Player mplayerc.exe memory corruption (EDB-30579 / XFDB-36583)
1 year 7 months ago
A vulnerability was found in mympc CD-Storm 1.0.0.1. It has been classified as very critical. Affected is an unknown function of the file mplayerc.exe of the component Media Player. The manipulation leads to memory corruption.
This vulnerability is traded as CVE-2007-4939. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2001-0991 | Scott R. Lemmon Proxomitron Naoko-4 up to Beta4 Error Message cross site scripting (EDB-21025 / XFDB-6887)
1 year 7 months ago
A vulnerability, which was classified as problematic, was found in Scott R. Lemmon Proxomitron Naoko-4 up to Beta4. This affects an unknown part of the component Error Message Handler. The manipulation leads to basic cross site scripting.
This vulnerability is uniquely identified as CVE-2001-0991. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
McCoy Global Inc. Has Been Claimed a Victim to RansomHub Ransomware
1 year 7 months ago
McCoy Global Inc. Has Been Claimed a Victim to RansomHub Ransomware
Dark Web Informer - Cyber Threat Intelligence
Железные силачи размером с пылинку: микророботы готовы покорять грядки и медицину
1 year 7 months ago
Чудо инженерии, вдохновленное муравьями.
Billet Precision Ltd. Has Been Claimed a Victim to Akira Ransomware
1 year 7 months ago
Billet Precision Ltd. Has Been Claimed a Victim to Akira Ransomware
Dark Web Informer - Cyber Threat Intelligence
CVE-2024-27255 | IBM MQ Operator up to 2.0.18/2.2.2/2.3.3/2.4.7/3.0.1 risky encryption (XFDB-283905)
1 year 7 months ago
A vulnerability was found in IBM MQ Operator up to 2.0.18/2.2.2/2.3.3/2.4.7/3.0.1. It has been classified as problematic. Affected is an unknown function. The manipulation leads to risky cryptographic algorithm.
This vulnerability is traded as CVE-2024-27255. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-47745 | IBM MQ Operator up to 2.0.18/2.2.2/2.3.3/2.4.7/3.0.1 cleartext transmission (XFDB-272638)
1 year 7 months ago
A vulnerability was found in IBM MQ Operator up to 2.0.18/2.2.2/2.3.3/2.4.7/3.0.1. It has been rated as problematic. Affected by this issue is some unknown functionality. The manipulation leads to cleartext transmission of sensitive information.
This vulnerability is handled as CVE-2023-47745. Local access is required to approach this attack. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
A Threat Actor Claims to be Selling the Data of Ardyss Digital and ArdyssLife
1 year 7 months ago
A Threat Actor Claims to be Selling the Data of Ardyss Digital and ArdyssLife
Dark Web Informer - Cyber Threat Intelligence
Битва алгоритмов: ИИ научился делать вредоносный код невидимым
1 year 7 months ago
Нулевое детектирование на VirusTotal подчёркивает масштаб угрозы.