Aggregator
探测文件写入权限,通过 Sharp4CheckWrite 扫描 Windows 可写目录
8 months 4 weeks ago
CVE-2025-30125 | Marbela Dashcam KR8S/Dashcam KRX default credentials
8 months 4 weeks ago
A vulnerability, which was classified as critical, has been found in Marbela Dashcam KR8S and Dashcam KRX. This issue affects some unknown processing. The manipulation leads to use of default credentials.
The identification of this vulnerability is CVE-2025-30125. The attack can only be done within the local network. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-8250 | code-projects Exam Form Submission 1.0 /admin/update_s4.php credits sql injection (EUVD-2025-22839)
8 months 4 weeks ago
A vulnerability, which was classified as critical, was found in code-projects Exam Form Submission 1.0. Affected is an unknown function of the file /admin/update_s4.php. The manipulation of the argument credits leads to sql injection.
This vulnerability is traded as CVE-2025-8250. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-8251 | code-projects Exam Form Submission 1.0 /admin/delete_s4.php ID sql injection
8 months 4 weeks ago
A vulnerability has been found in code-projects Exam Form Submission 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /admin/delete_s4.php. The manipulation of the argument ID leads to sql injection.
This vulnerability is known as CVE-2025-8251. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-8269 | code-projects Exam Form Submission 1.0 /admin/delete_s1.php ID sql injection
8 months 4 weeks ago
A vulnerability was found in code-projects Exam Form Submission 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /admin/delete_s1.php. The manipulation of the argument ID leads to sql injection.
This vulnerability is handled as CVE-2025-8269. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-8270 | code-projects Exam Form Submission 1.0 /admin/delete_s2.php ID sql injection
8 months 4 weeks ago
A vulnerability was found in code-projects Exam Form Submission 1.0. It has been classified as critical. This affects an unknown part of the file /admin/delete_s2.php. The manipulation of the argument ID leads to sql injection.
This vulnerability is uniquely identified as CVE-2025-8270. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-8271 | code-projects Exam Form Submission 1.0 /admin/delete_s3.php ID sql injection
8 months 4 weeks ago
A vulnerability was found in code-projects Exam Form Submission 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /admin/delete_s3.php. The manipulation of the argument ID leads to sql injection.
This vulnerability was named CVE-2025-8271. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-8272 | code-projects Exam Form Submission 1.0 /admin/update_fst.php credits sql injection
8 months 4 weeks ago
A vulnerability was found in code-projects Exam Form Submission 1.0. It has been rated as critical. This issue affects some unknown processing of the file /admin/update_fst.php. The manipulation of the argument credits leads to sql injection.
The identification of this vulnerability is CVE-2025-8272. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-8273 | code-projects Exam Form Submission 1.0 /admin/update_s8.php credits sql injection
8 months 4 weeks ago
A vulnerability classified as critical has been found in code-projects Exam Form Submission 1.0. Affected is an unknown function of the file /admin/update_s8.php. The manipulation of the argument credits leads to sql injection.
This vulnerability is traded as CVE-2025-8273. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-30126 | Marbella KR8s Dashcam FF 2.0.8 Service Port 7777 improper authorization
8 months 4 weeks ago
A vulnerability, which was classified as critical, was found in Marbella KR8s Dashcam FF 2.0.8. This affects an unknown part of the component Service Port 7777. The manipulation leads to improper authorization.
This vulnerability is uniquely identified as CVE-2025-30126. The attack needs to be approached within the local network. There is no exploit available.
vuldb.com
CVE-2025-30124 | Marbella KR8s Dashcam FF 2.0.8 SD Card missing encryption
8 months 4 weeks ago
A vulnerability has been found in Marbella KR8s Dashcam FF 2.0.8 and classified as problematic. This vulnerability affects unknown code of the component SD Card Handler. The manipulation leads to missing encryption of sensitive data.
This vulnerability was named CVE-2025-30124. It is possible to launch the attack on the physical device. There is no exploit available.
vuldb.com
CVE-2025-30133 | IROAD FX2 IROAD X View Registration default password
8 months 4 weeks ago
A vulnerability was found in IROAD FX2 and classified as critical. This issue affects some unknown processing of the component IROAD X View Registration. The manipulation leads to use of default password.
The identification of this vulnerability is CVE-2025-30133. The attack can only be initiated within the local network. There is no exploit available.
vuldb.com
CVE-2024-42644 | halfgaar FlashMQ 1.14.0 getNewPublish QoS assertion
8 months 4 weeks ago
A vulnerability classified as problematic has been found in halfgaar FlashMQ 1.14.0. This affects the function PublishCopyFactory::getNewPublish. The manipulation of the argument QoS leads to reachable assertion.
This vulnerability is uniquely identified as CVE-2024-42644. The attack can only be initiated within the local network. There is no exploit available.
vuldb.com
CVE-2024-42645 | halfgaar FlashMQ 1.14.0 Retain Message denial of service
8 months 4 weeks ago
A vulnerability was found in halfgaar FlashMQ 1.14.0. It has been declared as problematic. This vulnerability affects unknown code of the component Retain Message Handler. The manipulation leads to denial of service.
This vulnerability was named CVE-2024-42645. The attack can only be initiated within the local network. There is no exploit available.
vuldb.com
王燃 | 电子数据真实性判断的时间审查
8 months 4 weeks ago
当前环境出现异常提示,需完成验证后才能继续访问。
【遵循取证规范准确审查聊天记录证据】
8 months 4 weeks ago
当前环境异常,请完成验证后继续访问。
王燃 | 电子数据真实性判断的时间审查
8 months 4 weeks ago
法学专论
【遵循取证规范准确审查聊天记录证据】
8 months 4 weeks ago
司法人员必须立足微信聊天记录“迁移与备份”证据的特性,准确审查其合法性、真实性、关联性... ...
ArmouryLoader: New Sophisticated Malware Evades EDRs by Exploiting ASUS Gaming Software and OpenCL GPU Decryption
8 months 4 weeks ago
ArmouryLoader has once again captured the attention of cybersecurity experts, emerging as one of the most technically sophisticated malware loaders in recent memory. Its architecture reflects a mature approach to evading defenses, employing stealthy...
The post ArmouryLoader: New Sophisticated Malware Evades EDRs by Exploiting ASUS Gaming Software and OpenCL GPU Decryption appeared first on Penetration Testing Tools.
ddos