Aggregator
Is fixed wireless access the new frontier for threats to the mobile network?
2 days 19 hours ago
4G/5G fixed wireless access (FWA) represents a major growth opportunity for mobile network operators (MNOs) because they bring more traffic, new services, new subscribers, and, importantly, new revenue streams. According to Ericsson, there will be 330 million FWA 5G connections by 2029. With all this potential new...
Heather Broughton
CVE-2024-53426 | ntopng 6.2 Flow::dissectMDNS heap-based overflow
2 days 19 hours ago
A vulnerability classified as critical was found in ntopng 6.2. Affected by this vulnerability is the function Flow::dissectMDNS. The manipulation leads to heap-based buffer overflow.
This vulnerability is known as CVE-2024-53426. The attack can only be initiated within the local network. There is no exploit available.
vuldb.com
CVE-2024-7130 | Kion Computer KION Exchange Programs Software up to 21.11.2024 cross site scripting
2 days 19 hours ago
A vulnerability classified as problematic has been found in Kion Computer KION Exchange Programs Software up to 21.11.2024. Affected is an unknown function. The manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2024-7130. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-7026 | Teknogis Informatics Closed Circuit Vehicle Tracking Software up to 21.11.2024 sql injection
2 days 19 hours ago
A vulnerability was found in Teknogis Informatics Closed Circuit Vehicle Tracking Software up to 21.11.2024. It has been rated as problematic. This issue affects some unknown processing. The manipulation leads to sql injection hibernate.
The identification of this vulnerability is CVE-2024-7026. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-53425 | Assimp 5.4.3 SkipSpacesAndLineEnd heap-based overflow
2 days 19 hours ago
A vulnerability was found in Assimp 5.4.3. It has been declared as critical. This vulnerability affects the function SkipSpacesAndLineEnd. The manipulation leads to heap-based buffer overflow.
This vulnerability was named CVE-2024-53425. Access to the local network is required for this attack to succeed. There is no exploit available.
vuldb.com
BianLian Ransomware Group Adopts New Tactics, Posing Significant Risk
2 days 19 hours ago
The BianLian ransomware group has shifted exclusively to exfiltration-based extortion and is deploying multiple new TTPs for initial access and persistence
Building and Enhancing OT/ICS Security Programs Through Governance, Risk, and Compliance (GRC)
2 days 19 hours ago
Operational Technology (OT) and Industrial Control Systems (ICS) are critical components of many industries, especially those within the 16 critical […]
The post Building and Enhancing OT/ICS Security Programs Through Governance, Risk, and Compliance (GRC) appeared first on Security Boulevard.
Christopher Warner
《网络空间安全科学学报》校园行——走进兰州理工大学
2 days 19 hours ago
CVE-2004-1474 | Symantec Enterprise Firewall/VPN Appliances up to 1.62 Configuration File (VU#173910 / EDB-20892)
2 days 19 hours ago
A vulnerability classified as problematic was found in Symantec Enterprise Firewall and VPN Appliances up to 1.62. This vulnerability affects unknown code of the component Configuration File. The manipulation leads to an unknown weakness.
This vulnerability was named CVE-2004-1474. The attack can be initiated remotely. Furthermore, there is an exploit available.
It is recommended to apply restrictive firewalling.
vuldb.com
CVE-2004-1477 | Macromedia JRun 3.0/3.1/4.0 Management Console cross site scripting (VU#668206 / Nessus ID 14810)
2 days 19 hours ago
A vulnerability has been found in Macromedia JRun 3.0/3.1/4.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the component Management Console. The manipulation leads to basic cross site scripting.
This vulnerability is known as CVE-2004-1477. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2004-1478 | Hitachi Cosminexus Enterprise 4.0 memory corruption (VU#584958 / Nessus ID 14810)
2 days 19 hours ago
A vulnerability was found in Hitachi Cosminexus Enterprise 4.0 and classified as critical. Affected by this issue is some unknown functionality. The manipulation leads to memory corruption.
This vulnerability is handled as CVE-2004-1478. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2004-1472 | Symantec Enterprise Firewall 320/360/360r denial of service (VU#441078 / ID 78045)
2 days 19 hours ago
A vulnerability, which was classified as critical, was found in Symantec Enterprise Firewall 320/360/360r. This affects an unknown part. The manipulation leads to denial of service.
This vulnerability is uniquely identified as CVE-2004-1472. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2004-1473 | Symantec Enterprise Firewall/VPN Appliances up to 1.62 information disclosure (VU#329230 / Nessus ID 11580)
2 days 19 hours ago
A vulnerability classified as problematic has been found in Symantec Enterprise Firewall and VPN Appliances up to 1.62. This affects an unknown part. The manipulation leads to information disclosure.
This vulnerability is uniquely identified as CVE-2004-1473. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to apply restrictive firewalling.
vuldb.com
CVE-2009-0711 | Vlad Alexa Mancini PHPFootball 1.5/1.6 filter.php dbfield information disclosure (EDB-7636 / SA33367)
2 days 19 hours ago
A vulnerability, which was classified as critical, has been found in Vlad Alexa Mancini PHPFootball 1.5/1.6. Affected by this issue is some unknown functionality of the file filter.php. The manipulation of the argument dbfield leads to information disclosure.
This vulnerability is handled as CVE-2009-0711. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-6726 | CMScout 2.06 admin.php bit path traversal (EDB-7625 / XFDB-47660)
2 days 19 hours ago
A vulnerability classified as problematic was found in CMScout 2.06. This vulnerability affects unknown code of the file admin.php. The manipulation of the argument bit leads to path traversal.
This vulnerability was named CVE-2008-6726. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2009-0490 | Audacity up to 1.3.6 strparse.cpp get_nonspace_quoted memory corruption (EDB-7634 / Nessus ID 40190)
2 days 19 hours ago
A vulnerability was found in Audacity up to 1.3.6. It has been classified as very critical. Affected is the function String_parse::get_nonspace_quoted of the file lib-src/allegro/strparse.cpp. The manipulation leads to memory corruption.
This vulnerability is traded as CVE-2009-0490. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2008-6153 | Jayeshp Pixel8 Web Photo Album 3.0 Photo.asp AlbumID sql injection (EDB-7627 / XFDB-47662)
2 days 19 hours ago
A vulnerability was found in Jayeshp Pixel8 Web Photo Album 3.0. It has been declared as critical. This vulnerability affects unknown code of the file Photo.asp. The manipulation of the argument AlbumID leads to sql injection.
This vulnerability was named CVE-2008-6153. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2009-0703 | ASPThai.Net Webboard 6.0 bview.asp id sql injection (EDB-7635 / XFDB-47722)
2 days 19 hours ago
A vulnerability, which was classified as critical, was found in ASPThai.Net Webboard 6.0. Affected is an unknown function of the file bview.asp. The manipulation of the argument id leads to sql injection.
This vulnerability is traded as CVE-2009-0703. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-6725 | CMScout 2.06 index.php id sql injection (EDB-7625 / XFDB-47659)
2 days 19 hours ago
A vulnerability classified as critical has been found in CMScout 2.06. This affects an unknown part of the file index.php. The manipulation of the argument id leads to sql injection.
This vulnerability is uniquely identified as CVE-2008-6725. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com