Aggregator
Конец фрагментации: RVA23 становится единым языком для экосистемы RISC-V
地平线上市,终于可以说说余凯的故事了
ISC Stormcast For Thursday, October 24th, 2024 https://isc.sans.edu/podcastdetail/9194, (Thu, Oct 24th)
Mastering Production-Ready AI with Elastic & Google Cloud
CVE-2002-0564 | Oracle9i 9.0/9.0.1 PL/SQL Module improper authentication (VU#193523 / Nessus ID 57619)
Lazarus Group Exploits Google Chrome Vulnerability to Control Infected Devices
关于VMware vCenter Server存在堆溢出漏洞的安全公告
CVE-2002-0562 | Oracle9i 9.0/9.0.1 JSP global.jsa Password information disclosure (VU#698467 / Nessus ID 10850)
CVE-2003-1092 | Christos Zoulas File up to 3.40 Automatic File Content Type Recognition memory corruption (EDB-22326 / Nessus ID 13787)
CVE-2024-8667 | HurryTimer Plugin up to 2.10.0 on WordPress authorization
CVE-2024-10050 | Elementor Header & Footer Builder Plugin up to 1.6.43 on WordPress Shortcode information disclosure
CVE-2024-9943 | MultiVendorX Plugin up to 4.2.4 on WordPress cross-site request forgery
CVE-2024-8717 | PDF Flipbook, 3D Flipbook, PDF Embed, PDF Viewer Plugin cross site scripting
Cybersecurity Teams Largely Ignored in AI Policy Development
香港首次发现恐龙化石
Majority of SaaS Applications, AI Tools Unmanaged
Unmanaged software as a service (SaaS) applications and AI tools within organizations are posing a growing security risk as vulnerabilities increase, according to a report from Grip Security.
The post Majority of SaaS Applications, AI Tools Unmanaged appeared first on Security Boulevard.
Фейковые визиты и поддельные анкеты: как GPS-мошенничество подрывает кампанию Трампа
CVE-2002-0561 | Oracle9i 9.0/9.0.1 Web Administration Interface privileges management (VU#611776 / Nessus ID 11452)
Fortinet FortiManager flaw exploited in zero-day attacks (CVE-2024-47575)
Fortinet has finally made public information about CVE-2024-47575, a critical FortiManager vulnerability that attackers have exploited as a zero-day. About CVE-2024-47575 CVE-2024-47575 is a vulnerability stemming from missing authentication for a critical function in FortiManager’s fgfmd daemon. Remote, unauthenticated attackers could exploit the flaw to execute arbitrary code or commands via specially crafted requests. It affects various versions of FortiManager and FortiManager Cloud, as well as some older FortiAnalyzer models. “Reports have shown this vulnerability … More →
The post Fortinet FortiManager flaw exploited in zero-day attacks (CVE-2024-47575) appeared first on Help Net Security.