Discuz4 has the SQL injection vulnerability. Members can escalate permissions.

Vulnerability Type: SQL Injection Hazard level: high Involved version: Discuz! 4.0.0 Discuz! 4.1.0 Vulnerability description Because Discuz! Without strict data filtering, users can use special tools to forge illegal data and inject SQL statements

Analyzes and uses the Download Vulnerability to launch network attacks on the database

As the No. 1 killer of script vulnerabilities-database download vulnerabilities, they are now becoming increasingly familiar to more and more people. In this era of rapid information technology updates, vulnerabilities are followed by various

How to create a secure and easy-to-remember Password

Users often forget their passwords. In order not to forget the password, they just use some simple information to create the password, such as using the dog name, son name and birthday, the name of the current month-or anything that helps them

Manually scan and kill common Trojan viruses!

1. Please go to security mode and install suspicious programs (plug-ins, etc.) to delete: \ WINDOWS \ TEMP \ 2. Delete all files under C: \ Documents ents and Settings \ ******* \ Local Settings \ Temp \. 3. Delete all files under C: \ Documents

Microsoft Vista security vulnerabilities are frequently exposed

I am afraid this sentence is not appropriate for Microsoft products. For Microsoft products, I am afraid we can only make up for the latest three years. Both IE browser and VISTA operating systems coexist with vulnerability patches at the

Recognize the two traps of QQ account theft

Of course, QQ has been stolen! QQ has contact information from so many friends, as well as so many important personal and customer information! Therefore, do not wait until the QQ number is stolen to find out why the number is lost.It is no

Note: "QQ thief" Trojans inject QQ processes to record QQ accounts and passwords

The "QQ thief" variant AC (Win32.PSWTroj. QQPass. ac) is a trojan virus that steals QQ accounts and passwords. The "Online Game chaser" variant CD (Win32.Troj. LipGame. cd) is a trojan virus that steals multiple online game accounts. I. Threat Level

It is too easy to remotely steal ADSL accounts

Most of the ADSL modem's built-in routing functions, but its random software does not support using this function in the PPPoE virtual dial-up access mode, so many friends want to be able to connect to the Internet with multiple computers, an

Are you afraid of Trojans? Use Linux

Countless viruses, once and again. The same rogue software as the pig, the cleaning again and again, but still cannot stand up. System Upgrade traps make you blind.Why don't you replace your system with LINUX! A world-recognized security system!I

Network security in the crazy broadband environment with QQ coins

With the rapid development of the Internet, more and more users are using broadband access to the Internet. Security issues related to broadband have become increasingly prominent, the series of problems such as account theft, password loss, and

Python 'ssl. match_hostname () 'function ssl certificate verification security measure Bypass Vulnerability

Release date:Updated on: Affected Systems:Python python 3.xDescription:--------------------------------------------------------------------------------Bugtraq id: 63915 Python is an object-oriented, literal translation computer programming

Cisco NX-OS Command Line Interface (CLI) Local Arbitrary File Access Vulnerability

Release date:Updated on: Affected Systems:Cisco NX-OSDescription:--------------------------------------------------------------------------------Bugtraq id: 64450CVE (CAN) ID: CVE-2012-4135 Cisco NX-OS is a data center-Level Operating System. The

XnView RGB File Processing Heap Buffer Overflow Vulnerability

Release date:Updated on: Affected Systems:XnView 2.xDescription:--------------------------------------------------------------------------------Bugtraq id: 64441CVE (CAN) ID: CVE-2013-3939 XnView is a browser Image Viewer that supports multiple

Huawei eSight Arbitrary File Upload Vulnerability

Release date:Updated on: Affected Systems:Huawei eSight V200R003C01SPC200Huawei eSight Description:--------------------------------------------------------------------------------Bugtraq id: 64633 The Huawei eSight ict o & M system is a new

Avanset Visual CertExam Manager Multiple SQL Injection Vulnerabilities

Release date:Updated on: Affected Systems:Avanset Visual CertExam Manager Description:--------------------------------------------------------------------------------Bugtraq id: 65104CVE (CAN) ID: CVE-2013-7175 Avanset Visual CertExam Manager is

Pidgin 'process _ chunked_data () 'Function Buffer Overflow Vulnerability

Release date:Updated on: Affected Systems:Pidgin Description:--------------------------------------------------------------------------------Bugtraq id: 65243CVE (CAN) ID: CVE-2013-6485 Pidgin is a multi-in-One world mainstream instant messaging

OpenSSH 'schnorr. c' Remote Memory Corruption Vulnerability

Release date:Updated on: Affected Systems:OpenSSH Description:--------------------------------------------------------------------------------Bugtraq id: 65230CVE (CAN) ID: CVE-2014-1692 OpenSSH is an open-source implementation of the SSH protocol.

Multiple Remote Denial of Service Vulnerabilities in MariaDB versions earlier than 5.5.35

Release date:Updated on: Affected Systems:MariaDB Description:--------------------------------------------------------------------------------Bugtraq id: 65757 MariaDB is a MySQL branch version that uses the Maria storage engine. MariaDB versions

SpagoBI Remote Privilege Escalation Vulnerability

Release date:Updated on: Affected Systems:SpagoBI 4.0Description:--------------------------------------------------------------------------------Bugtraq id: 65925CVE (CAN) ID: CVE-2013-6231 SpagoBI is an open-source business intelligence software

Check_MK Multiple HTML injection and Cross-Site Scripting Vulnerabilities (CVE-2014-2329)

Release date:Updated on: Affected Systems:Mathias-ketaskcheck_mk 1.2.2p2Description:--------------------------------------------------------------------------------Bugtraq id: 66391CVE (CAN) ID: CVE-2014-2329 Check_MK is a common Nagios/Icinga data

Total Pages: 1330 1 .... 623 624 625 626 627 .... 1330 Go to: GO

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.