Linux Kernel ptrace SYSRET path Elevation Vulnerability

Linux Kernel ptrace SYSRET path Elevation Vulnerability Release date:Updated on: Affected Systems:Linux kernel 3.xLinux kernel 2.xDescription:--------------------------------------------------------------------------------CVE (CAN) ID: CVE-2014-4699 

Malicious programs target Apache and hijack 20 thousand websites

Malicious programs target Apache and hijack 20 thousand websites The malicious program tool named Darkleech is targeting the most popular Web server Apache and redirecting viewers to a third-party malicious website by embedding malicious code on

ZeroCMS article_id parameter SQL Injection Vulnerability

ZeroCMS article_id parameter SQL Injection Vulnerability Release date:Updated on: Affected Systems:ZeroCMS: ZeroCMS 1.0Description:--------------------------------------------------------------------------------CVE (CAN) ID: CVE-2014-4034 ZeroCMS

WebKit Memory Corruption Vulnerability

WebKit Memory Corruption Vulnerability Release date:Updated on: Affected Systems:Apple SafariWebKit Open Source Project WebKit 2WebKit Open Source Project WebKit 1.2.5WebKit Open Source Project WebKit 1.2.3WebKit Open Source Project WebKit

Nagios "process_cgivars ()" single-byte overflow vulnerability

Release date:Updated on: Affected Systems:Nagios 4.xNagios 3.xDescription:--------------------------------------------------------------------------------Nagios is a free open-source host and service monitoring software that can be used in a

OpenSSL 'ssl _ get_algorithm2 () 'function Remote Denial of Service Vulnerability

Release date:Updated on: Affected Systems:OpenSSL Project OpenSSL 1.0.2Description:--------------------------------------------------------------------------------Bugtraq id: 64530CVE (CAN) ID: CVE-2013-6449 OpenSSL is an open-source SSL

IBM I Operating System OSPFv2 routing protocol Remote Security Restriction Bypass Vulnerability

Release date: 2013-08-01Updated on: Affected Systems:IBM I Operating systems 7.1IBM I Operating systems 6.1Description:--------------------------------------------------------------------------------Bugtraq id: 65006CVE (CAN) ID: CVE-2013-5385 IBM

Cisco TelePresence ISDN Gateway Data Channel Denial of Service Vulnerability

Release date:Updated on: Affected Systems:Cisco TelePresence ISDN Gateway 2.2 (1.92)Cisco TelePresence ISDN GatewayDescription:--------------------------------------------------------------------------------Bugtraq id: 65072CVE (CAN) ID: CVE-2014-066

Cells Blog SQL injection and Cross-Site Scripting

Release date:Updated on: Affected Systems:Cells Blog 3.3Description:--------------------------------------------------------------------------------Bugtraq id: 65094 Cells Blog 3.3 and other versions do not effectively filter users. php, errmsg.

Core FTP 'USER' command information leakage Vulnerability

Release date:Updated on: Affected Systems:Core FTP 1.xDescription:--------------------------------------------------------------------------------Bugtraq id: 65428CVE (CAN) ID: CVE-2014-1443 CoreFTP is a free FTP client. Core FTP 1.2 build 511

Siemens RuggedCom resource depletion Vulnerability

Release date:Updated on: Affected Systems:Siemens RuggedCom ROS-based Description:--------------------------------------------------------------------------------CVE (CAN) ID: CVE-2014-1966 RuggedCom ROS products are switches and

Oracle Java SE Remote Vulnerabilities (CVE-2014-0417)

Release date:Updated on: Affected Systems:Oracle Java SE 7u45Oracle Java SE 6u65Oracle Java SE 5.0u55Oracle JavaFX 2.2.45Oracle Java SE Embedded 7u45Description:--------------------------------------------------------------------------------Bugtraq

Multiple vulnerabilities in D-Link DIR-100

Release date:Updated on: Affected Systems:D-Link DIR-100 4.03B07Description:--------------------------------------------------------------------------------Bugtraq id: 65290CVE (CAN) ID: CVE-2013-7051, CVE-2013-7052, CVE-2013-7053, CVE-2013-7054,

SYNPROXY: a cheap anti-DoS Solution

DoS attacks are an eternal problem. Although professional firewall and Server Load balancer gateway devices can effectively defend against DoS attacks, however, hackers prefer the combination of x86 + GNU/Linux for the simple reason: cheap enough.

SuperMicro IPMI 49152 port password leakage Vulnerability

2014.06.20 SuperMicro IPMI 49152 port password leakage vulnerability was spread by foreign media (http://arstechnica.com/security/2014/06/at-least-32000-servers-broadcast-admin-passwords-in-the-clear-advisory-warns/), the original author also has a

Elder Trojan generation fakedebugadh. B Analysis Report

Author: Dong Qing, Wang Huan, Shi Haoran   Three months ago, we found a Trojan horse that has been lurking in the mobile phone for many years-the Elders Trojan (fakedebugadh), which was automatically started by replacing the system

Hazards of eval functions in php and correct disabling methods

This article mainly introduces the hazards of eval functions in php and the correct ways to disable them. For more information, see Php's eval function is not a system component function, so we cannot disable it by using disable_functions in php.

XSS front-end firewall-seamless protection

The previous article (http://www.bkjia.com/Article/201406/310933.html) explained the hook program attack and defense practices, and achieved a set of framework page monitoring solution, will protect all sub pages. So far, our protection depth is

ThinkPHP's Ubb Tag Vulnerability reads arbitrary content

The Ubb tag of ThinkPHP has a code highlighting function that meets the following requirements: When xxx [/c ode] or [p hp] xxx [/p hp], it reads the xxx in the middle and highlights it. xxx is the path, not the specific code, for example, 1. After

The CmsEasy_5.5_UTF-8_20140420 has a storage-type xss that can be used by administrators and parallel users

First case (attack administrator): After registering a user, then access/CmsEasy_5.5_UTF-8_20140420/uploads/bbs/add-archive.php? Cid = 1. Enter "oninput = alert (1)> $ra1 = array('javascript', 'vbscript', 'expression', 'applet', 'meta', 'xml',

Total Pages: 1330 1 .... 554 555 556 557 558 .... 1330 Go to: GO

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.