A vulnerability classified as critical was found in Carrier Enterprise HVAC Assist 4. This vulnerability affects unknown code of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
This vulnerability was named CVE-2014-7608. The attack needs to be done within the local network. There is no exploit available.
一群志愿者编辑成立了 WikiProject AI Cleanup 项目,旨在保护世界最大的在线百科全书维基百科免遭低质量 AI 生成内容的入侵。自 2022 年以来,ChatGPT 之类的大模型成为写作的方便工具,但大模型不能正确引用来源,会经常捏造来源。该项目通过识别 AI 生成内容,验证内容是否遵循维基百科的政策,删除不符合要求的内容;通过识别 AI 生成图像,确保使用恰当。WikiProject AI Cleanup 通过搜索 ChatGPT 常用短语去寻找 AI 生成内容,比如“As of my last knowledge update in January 2022”——即大模型训练数据库最近更新的时间。
A vulnerability classified as problematic has been found in MMS Gallery MMS Gallery PHP 1.0. Affected is an unknown function of the file get_image.php. The manipulation of the argument id leads to path traversal.
This vulnerability is traded as CVE-2007-6323. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
A vulnerability classified as critical was found in City Writer CityWriter 0.9.7. Affected by this vulnerability is an unknown functionality of the file head.php. The manipulation of the argument path leads to code injection.
This vulnerability is known as CVE-2007-6324. The attack can be launched remotely. Furthermore, there is an exploit available.
A vulnerability classified as critical has been found in ViArt Shop Free 3.3.2. Affected is an unknown function of the file block_site_map.php of the component Help. The manipulation of the argument root_folder_path leads to code injection.
This vulnerability is traded as CVE-2007-6347. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
A vulnerability, which was classified as critical, has been found in Fastpublish Fastpublish CMS 1.9999. Affected by this issue is some unknown functionality of the file designconfig.php. The manipulation of the argument config[fsBase] leads to code injection.
This vulnerability is handled as CVE-2007-6325. The attack may be launched remotely. Furthermore, there is an exploit available.
A vulnerability, which was classified as very critical, was found in HP OpenView Network Node Manager 7.0.1. Affected is an unknown function of the file ovlogin.exe of the component Node Manager. The manipulation of the argument Action leads to memory corruption.
This vulnerability is traded as CVE-2007-6204. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability classified as critical has been found in Swamiji.tv 2. This affects an unknown part of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
This vulnerability is uniquely identified as CVE-2014-7607. The attack can only be initiated within the local network. There is no exploit available.
A vulnerability was found in Falcon Series One CMS 1.4.3. It has been declared as problematic. This vulnerability affects unknown code of the file index.php. The manipulation leads to cross-site request forgery.
This vulnerability was named CVE-2007-6490. The attack can be initiated remotely. Furthermore, there is an exploit available.
A vulnerability was found in Mcms Easy Web Make 0. It has been classified as critical. This affects an unknown part of the file modules/cms/index.php. The manipulation of the argument template leads to path traversal.
This vulnerability is uniquely identified as CVE-2007-6344. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
A vulnerability, which was classified as problematic, was found in Sergey Lyubka Simple HTTPD 1.3. This affects an unknown part of the file aux. The manipulation leads to improper input validation.
This vulnerability is uniquely identified as CVE-2007-6326. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
A vulnerability has been found in Avs Media AVSMJPEGFILE.DLL 1.1.1.102 and classified as critical. This vulnerability affects unknown code in the library avsmjpegfile.dll of the component ActiveX Control. The manipulation of the argument first leads to memory corruption.
This vulnerability was named CVE-2007-6327. The attack can be initiated remotely. Furthermore, there is an exploit available.
A vulnerability was found in HP Quick Launch Button up to 6.3. It has been rated as critical. Affected by this issue is some unknown functionality in the library hpinfodll.dll of the component ActiveX Control. The manipulation of the argument first leads to path traversal.
This vulnerability is handled as CVE-2007-6331. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Falcon Series One CMS 1.4.3 and classified as critical. Affected by this issue is some unknown functionality of the file sitemap.xml.php. The manipulation of the argument error leads to improper input validation.
This vulnerability is handled as CVE-2007-6488. The attack may be launched remotely. Furthermore, there is an exploit available.
A vulnerability was found in Falcon Series One CMS 1.4.3. It has been classified as critical. This affects an unknown part of the file index.php. The manipulation leads to basic cross site scripting.
This vulnerability is uniquely identified as CVE-2007-6489. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
A vulnerability was found in Falt4 Cms Falt4 Extreme Rc4 10.9.2007. It has been classified as critical. Affected is an unknown function of the file index.php. The manipulation of the argument nav_ID leads to sql injection.
This vulnerability is traded as CVE-2007-6311. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
A vulnerability has been found in HuangDou UTCMS V9 and classified as critical. This vulnerability affects the function RunSql of the file app/modules/ut-data/admin/sql.php. The manipulation of the argument sql leads to sql injection.
This vulnerability was named CVE-2024-9918. The attack can be initiated remotely. Furthermore, there is an exploit available.
The vendor was contacted early about this disclosure but did not respond in any way.
A vulnerability, which was classified as critical, was found in HuangDou UTCMS V9. This affects an unknown part of the file app/modules/ut-template/admin/template_creat.php. The manipulation of the argument content leads to deserialization.
This vulnerability is uniquely identified as CVE-2024-9917. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
The vendor was contacted early about this disclosure but did not respond in any way.
A vulnerability, which was classified as critical, has been found in HuangDou UTCMS V9. Affected by this issue is some unknown functionality of the file app/modules/ut-cac/admin/cli.php. The manipulation of the argument o leads to os command injection.
This vulnerability is handled as CVE-2024-9916. The attack may be launched remotely. Furthermore, there is an exploit available.
The vendor was contacted early about this disclosure but did not respond in any way.