Fixed the X.509 digital certificate BUG in Linux 4.3.2 maintenance edition.

Fixed the X.509 digital certificate BUG in Linux 4.3.2 maintenance edition. Just one day after the first linux 4.3 kernel maintenance version was updated, the famous kernel maintainer Greg Kroah-Harman published detailed information about the 4.3.

Apple Safari HSTS mechanism Bypass Vulnerability (CVE-2015-7094)

cve

Apple Safari HSTS mechanism Bypass Vulnerability (CVE-2015-7094)Apple Safari HSTS mechanism Bypass Vulnerability (CVE-2015-7094) Release date:Updated on:Affected Systems: Apple iOS Description: CVE (CAN) ID: CVE-2015-7094IOS is an operating

Apache Cordova BridgeSecret weak randomization Vulnerability (CVE-2015-5257)

cve

Apache Cordova BridgeSecret weak randomization Vulnerability (CVE-2015-5257)Apache Cordova BridgeSecret weak randomization Vulnerability (CVE-2015-5257) Release date:Updated on:Affected Systems: Apache Group Cordova Description: CVE (CAN) ID:

Linux kernel Privilege Escalation Vulnerability (CVE-2015-7613)

cve

Linux kernel Privilege Escalation Vulnerability (CVE-2015-7613)Linux kernel Privilege Escalation Vulnerability (CVE-2015-7613) Release date:Updated on:Affected Systems: Linux kernel 〈 4.2.3 Description: CVE (CAN) ID: CVE-2015-7613Linux Kernel is

OpenSMTPD bug found LibreSSL Vulnerability

OpenSMTPD bug found LibreSSL Vulnerability Qualys researchers want to see If OpenSMTPD (open-source SMTP protocol implementation) has a remote code execution vulnerability and cannot be found, so they want to check the library file's C Function

Canonical released two patches to fix the Ubuntu 12.04 LTS Kernel Vulnerability

Canonical released two patches to fix the Ubuntu 12.04 LTS Kernel Vulnerability Canonical released a Kernel update package for Ubuntu October 20 LTS (Precise Pangolin) in 12.04, which is mainly used to fix two Linux Kernel vulnerabilities.

13 million 000Webhost plaintext password exposure

13 million 000Webhost plaintext password exposure More than 13 million webhost that provides free Web hosting service was hacked into the system five months ago by exploiting the vulnerability of the old PHP version, stealing the plaintext

MediaWiki Information Leakage Vulnerability (CVE-2015-8005)

MediaWiki Information Leakage Vulnerability (CVE-2015-8005)MediaWiki Information Leakage Vulnerability (CVE-2015-8005) Release date:Updated on:Affected Systems: MediaWiki MediaWiki 1.25.x-1.25.3MediaWiki 1.24.x-1.24.4 Description: CVE (CAN) ID:

FFmpeg sws_init_context Denial of Service Vulnerability (CVE-2015-6824)

cve

FFmpeg sws_init_context Denial of Service Vulnerability (CVE-2015-6824)FFmpeg sws_init_context Denial of Service Vulnerability (CVE-2015-6824) Release date:Updated on:Affected Systems: FFmpeg FFmpeg Description: CVE (CAN) ID: CVE-2015-6824FFmpeg

MediaWiki SemanticForms XSS Vulnerability (CVE-2015-6732)

MediaWiki SemanticForms XSS Vulnerability (CVE-2015-6732)MediaWiki SemanticForms XSS Vulnerability (CVE-2015-6732) Release date:Updated on: 2015-09-02Affected Systems: MediaWiki MediaWiki MediaWiki Description: CVE (CAN) ID:

Technical analysis: How can attackers use blind injection of system commands to achieve "database theft?

Technical analysis: How can attackers use blind injection of system commands to achieve "database theft? In the penetration test or CTF challenge, you may encounter an application that requires the user to input text information, the application

Java deserialization, object injection can cause code execution vulnerability

Java deserialization, object injection can cause code execution vulnerability 0x01 PrincipleJava deserialization results in the same principle as PHP deserialization, because user input can control the input objects. If the server program does not

Crawler combined with sqlmapi judgment Injection

Crawler combined with sqlmapi judgment Injection Recently, I am working on something that hurts. crawlers and scanning. The scan is sent to sqlmapapi. Currently, there are not many materials, but you can still find some Use sqlmapapi. py batch scan

Unauthorized access to Redis results in remote access to server Permissions

Unauthorized access to Redis results in remote access to server Permissions Recently, the Rubik's Cube security team has detected a new type of attacks against unauthorized access to Redis. In specific conditions, remote attacks can cause server

Baidu qiba URL jump can be used for phishing

Baidu qiba URL jump can be used for phishing Baidu qiba URL jump can be used for phishing Problem URL: http://ssp.baidu.com//ce.wooyun.orgHttp://ssp.baidu.com> http://ssp.baidu.com/homeThat is to say, directly open the http://ssp.baidu.com, the

A Security Test for Hunan Satellite TV

A Security Test for Hunan Satellite TV OA system http: // 222.240.176.22/crackingI won't go into details about the clues I found on Baidu.However, I found that http: // 222.240.176.21/index. php built by phpcms? M = member & c = index & a =

A vulnerability in a GPS Positioning experience platform causes a large amount of user information leakage/remote oil disconnection during GPS Positioning

A vulnerability in a GPS Positioning experience platform causes a large amount of user information leakage/remote oil disconnection during GPS Positioning A vulnerability in a GPS Positioning experience platform causes a large amount of user

Customer Account leakage caused by a management system design defect

Customer Account leakage caused by a management system design defect If you change the bank card information of a customer's account to your own, and then settle... what will happen ........  Http://partner.funshion.com/partner Management SystemNo

Analysis of SQL injection vulnerability in the latest espcms version

Analysis of SQL injection vulnerability in the latest espcms version Version: V6.4.15.05.20 UTF8 official versionUpdated on: 00:05:12 Software size: 7.67 MB In enquiry. php  $ptitle = $this->fun->accept('ptitle', 'P');$tsn = $this->fun->accept('tsn',

ColdFusion explosion: chain reaction from XSS to RCE

ColdFusion explosion: chain reaction from XSS to RCE I found a DOM-based cross-site scripting vulnerability while auditing the Management Panel of ColdFusion 10 and 11. In this article, I will show you how to use this vulnerability to obtain remote

Total Pages: 1330 1 .... 346 347 348 349 350 .... 1330 Go to: GO

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.