Aggregator
Android malware detection collapses when the context stage comes out
3 hours 17 minutes ago
A phone backup app asks for storage, contacts, SMS, and call logs. A device-management tool asks for more than that. Run either one past a machine learning malware scanner and it comes back flagged. Six Android detectors in wide research use, including Drebin, MalScan, and MaskDroid, produced that result on more than half the apps in a benign test set assembled from 49 Google Play categories. The worst performer, an LLM-based detector called LAMD, flagged … More →
The post Android malware detection collapses when the context stage comes out appeared first on Help Net Security.
Anamarija Pogorelec
CVE-2025-50647 | D-Link DI-8003 16.07.26A1 qos.asp wans buffer overflow
5 hours 47 minutes ago
A vulnerability has been found in D-Link DI-8003 16.07.26A1 and classified as critical. Impacted is an unknown function of the file qos.asp. This manipulation of the argument wans causes buffer overflow.
This vulnerability is tracked as CVE-2025-50647. The attack is possible to be carried out remotely. No exploit exists.
vuldb.com
CVE-2025-50648 | D-Link DI-8003 16.07.26A1 /tggl.asp buffer overflow
5 hours 47 minutes ago
A vulnerability was found in D-Link DI-8003 16.07.26A1 and classified as critical. The affected element is an unknown function of the file /tggl.asp. Such manipulation leads to buffer overflow.
This vulnerability is listed as CVE-2025-50648. The attack may be performed from remote. There is no available exploit.
vuldb.com
CVE-2025-50649 | D-Link DI-8003 16.07.26A1 /shut_set.asp vlan_name buffer overflow
5 hours 47 minutes ago
A vulnerability was found in D-Link DI-8003 16.07.26A1. It has been classified as critical. The impacted element is an unknown function of the file /shut_set.asp. Performing a manipulation of the argument vlan_name results in buffer overflow.
This vulnerability is cataloged as CVE-2025-50649. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
CVE-2025-50650 | D-Link DI-8003 16.07.26A1 /router.asp routes_static buffer overflow
5 hours 47 minutes ago
A vulnerability was found in D-Link DI-8003 16.07.26A1. It has been declared as critical. This affects an unknown function of the file /router.asp. Executing a manipulation of the argument routes_static can lead to buffer overflow.
This vulnerability is registered as CVE-2025-50650. It is possible to launch the attack remotely. No exploit is available.
vuldb.com
CVE-2025-50652 | D-Link DI-8003 16.07.26A1 /saveparm_usb.asp ID buffer overflow
5 hours 47 minutes ago
A vulnerability was found in D-Link DI-8003 16.07.26A1. It has been rated as critical. This impacts an unknown function of the file /saveparm_usb.asp. The manipulation of the argument ID leads to buffer overflow.
This vulnerability is documented as CVE-2025-50652. The attack can be initiated remotely. There is not any exploit available.
vuldb.com
CVE-2025-50653 | D-Link DI-8003 16.07.26A1 /time_group.asp mem buffer overflow
5 hours 47 minutes ago
A vulnerability categorized as critical has been discovered in D-Link DI-8003 16.07.26A1. Affected is an unknown function of the file /time_group.asp. The manipulation of the argument mem results in buffer overflow.
This vulnerability is reported as CVE-2025-50653. The attack can be launched remotely. No exploit exists.
vuldb.com
CVE-2025-50654 | D-Link DI-8003 16.07.26A1 /thd_member.asp ID buffer overflow
5 hours 47 minutes ago
A vulnerability identified as critical has been detected in D-Link DI-8003 16.07.26A1. Affected by this vulnerability is an unknown functionality of the file /thd_member.asp. This manipulation of the argument ID causes buffer overflow.
This vulnerability appears as CVE-2025-50654. The attack may be initiated remotely. There is no available exploit.
vuldb.com
CVE-2025-50657 | D-Link DI-8003 16.07.26A1 /trace.asp pid buffer overflow
5 hours 47 minutes ago
A vulnerability labeled as critical has been found in D-Link DI-8003 16.07.26A1. Affected by this issue is some unknown functionality of the file /trace.asp. Such manipulation of the argument pid leads to buffer overflow.
This vulnerability is traded as CVE-2025-50657. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2025-50659 | D-Link DI-8003 16.07.26A1 /user.asp custom_error buffer overflow
5 hours 47 minutes ago
A vulnerability marked as critical has been reported in D-Link DI-8003 16.07.26A1. This affects an unknown part of the file /user.asp. Performing a manipulation of the argument custom_error results in buffer overflow.
This vulnerability is known as CVE-2025-50659. Remote exploitation of the attack is possible. No exploit is available.
vuldb.com
CVE-2025-50660 | D-Link DI-8003 16.07.26A1 /url_member.asp Name buffer overflow
5 hours 47 minutes ago
A vulnerability described as critical has been identified in D-Link DI-8003 16.07.26A1. This vulnerability affects unknown code of the file /url_member.asp. Executing a manipulation of the argument Name can lead to buffer overflow.
This vulnerability is handled as CVE-2025-50660. The attack can be executed remotely. There is not any exploit available.
vuldb.com
CVE-2025-50655 | D-Link DI-8003 16.07.26A1 /thd_group.asp Name buffer overflow
5 hours 47 minutes ago
A vulnerability classified as critical has been found in D-Link DI-8003 16.07.26A1. This issue affects some unknown processing of the file /thd_group.asp. The manipulation of the argument Name leads to buffer overflow.
This vulnerability is uniquely identified as CVE-2025-50655. The attack is possible to be carried out remotely. No exploit exists.
vuldb.com
CVE-2026-34278 | Oracle MySQL Server up to 8.0.45 Optimizer denial of service (Nessus ID 319583 / WID-SEC-2026-1199)
5 hours 57 minutes ago
A vulnerability, which was classified as problematic, was found in Oracle MySQL Server up to 8.0.45. Impacted is an unknown function of the component Optimizer. Such manipulation leads to denial of service.
This vulnerability is uniquely identified as CVE-2026-34278. The attack can be launched remotely. No exploit exists.
You should upgrade the affected component.
vuldb.com
CVE-2026-34276 | Oracle MySQL Server up to 8.0.45/8.4.8/9.6.0 Group Replication Plugin denial of service (Nessus ID 316818 / WID-SEC-2026-1199)
5 hours 57 minutes ago
A vulnerability classified as problematic was found in Oracle MySQL Server up to 8.0.45/8.4.8/9.6.0. This impacts an unknown function of the component Group Replication Plugin. Executing a manipulation can lead to denial of service.
This vulnerability appears as CVE-2026-34276. The attack may be performed from remote. There is no available exploit.
Upgrading the affected component is advised.
vuldb.com
CVE-2026-34272 | Oracle MySQL Server up to 9.6.0 Optimizer denial of service (WID-SEC-2026-1199)
5 hours 57 minutes ago
A vulnerability described as problematic has been identified in Oracle MySQL Server up to 9.6.0. Affected by this issue is some unknown functionality of the component Optimizer. Executing a manipulation can lead to denial of service.
This vulnerability appears as CVE-2026-34272. The attack may be performed from remote. There is no available exploit.
Upgrading the affected component is recommended.
vuldb.com
CVE-2026-34271 | Oracle MySQL Server up to 8.0.45/8.4.8/9.6.0 Group Replication Plugin denial of service (Nessus ID 316818 / WID-SEC-2026-1199)
5 hours 57 minutes ago
A vulnerability classified as problematic has been found in Oracle MySQL Server up to 8.0.45/8.4.8/9.6.0. This affects an unknown function of the component Group Replication Plugin. Performing a manipulation results in denial of service.
This vulnerability is reported as CVE-2026-34271. The attack is possible to be carried out remotely. No exploit exists.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2026-34270 | Oracle MySQL Server up to 8.0.45/8.4.8/9.6.0 Group Replication Plugin denial of service (Nessus ID 316818 / WID-SEC-2026-1199)
5 hours 57 minutes ago
A vulnerability identified as problematic has been detected in Oracle MySQL Server up to 8.0.45/8.4.8/9.6.0. This issue affects some unknown processing of the component Group Replication Plugin. The manipulation leads to denial of service.
This vulnerability is listed as CVE-2026-34270. The attack may be initiated remotely. There is no available exploit.
You should upgrade the affected component.
vuldb.com
CVE-2025-30650 | Juniper Junos OS up to 25.2R1 missing authentication (JSA107863 / Nessus ID 305585)
6 hours 16 minutes ago
A vulnerability described as critical has been identified in Juniper Junos OS up to 25.2R1. This affects an unknown function. The manipulation results in missing authentication.
This vulnerability was named CVE-2025-30650. The attack needs to be approached locally. There is no available exploit.
Upgrading the affected component is recommended.
vuldb.com
CVE-2025-45058 | D-Link DI-8300 16.07.26A1 jingx_asp fx buffer overflow
6 hours 16 minutes ago
A vulnerability was found in D-Link DI-8300 16.07.26A1. It has been declared as critical. Impacted is the function jingx_asp. Such manipulation of the argument fx leads to buffer overflow.
This vulnerability is documented as CVE-2025-45058. The attack can be executed remotely. There is not any exploit available.
vuldb.com