Tag: MemoryCorruption

  • Vulnerability Watch No27

    H3C NX15 Web API Exposes Dangerous Routine • UTT HiPER 1200GW Hit by Remote Buffer Overflow • UTT HiPER 1250GW TempName Overflow Exposed • UTT HiPER 1250GW 5 GHz Endpoint Overflow • ESAFENET CDG KeyID Parameter Enables SQL Injection…

  • Vulnerability Watch No25

    Crafted Images Can Trigger GIMP Memory Corruption • Zyxel Firewall Path Traversal Enables Malicious Config Execution • Zyxel WAX650S Command Injection Exposes Device OS • Node.js HTTP2 Flaw Enables Remote Memory Exhaustion • CustomSounds Path Traversal Exposes Arbitrary Files…

  • Vulnerability Watch No16

    NoteGen Shell Permissions Enable Full Remote Code Execution • Unsanitized AI Responses Expose NoteGen Users to XSS • WordPress Membership Flaw Lets Visitors Claim Elevated Roles • Critical SQL Injection Hits WordPress Issue-Tracking Plugin • CAFEHAUS API Bug Enables Administrator Account Takeover…

  • Vulnerability Watch No15

    Pre-Auth Heap Overflow in libssh2 Clients • libssh2 Bounds Check Bug Leaks Memory • Stored XSS Hits Loytec OPC XML-DA • Loytec Privilege Management Flaw Enables Password Resets • Critical Symlink Attack Leads to Root on Loytec…

  • Vulnerability Watch No14

    Exim .forward Flaw Enables Privilege Escalation • Exim Directory Traversal Leads to Privilege Gain • OpenStack Ironic Agent Exposed to Code Execution • WordPress Wpify Woo Plugin Allows Admin Takeover • Azure DNS Authorization Flaw Rated Critical…

  • Topics Everyone Is Talking About No392

    Why Programming Languages Still Matter in the AI Era • John C. Dvorak Dies at 74 • Passkeys Face Criticism Over User Experience • LG Bans Residential Proxy SDKs in Smart TV Apps • Allegations Over Moonshot AIs K3 Model Training…

  • Vulnerability Watch No7

    Network-AI Backup Prune Arbitrary File Deletion • xrdp DoS Bug Enables CPU Exhaustion • Network-AI Sandbox Bypass Leads to Command Execution • Network-AI MCP Server Authentication Bypass • WhatsApp MCP Server Exposes Files and Messaging…

  • Vulnerability Watch No4

    Missing Authentication Flaw in SimpleUI AjaxAdmin • Gerapy Project Upload Endpoint Authentication Bypass • Authorization Bug Exposes RT-Claw RPC Handler • QueryWeaver Signup Flow Authentication Bypass • SQL Injection in Class and Exam Timetabling System…