Hackers are abusing Vercel GenAI to create convincing phishing sites that mimic major brands, including Microsoft, Adidas, and Nike, making scams harder to detect.
A vulnerability was found in Python up to 3.3.4. It has been classified as problematic. This impacts the function ZipExtFile._read2 in the library Lib/zipfile.py. Performing a manipulation of the argument ZIP_STORED/ZIP_DEFLATED results in improper input validation.
This vulnerability is reported as CVE-2013-7338. The attack is possible to be carried out remotely. Moreover, an exploit is present.
Upgrading the affected component is recommended.
A vulnerability described as problematic has been identified in WinSCP 5.5/5.5.1/5.5.2. This issue affects some unknown processing of the component X.509 Certificate Handler. Executing a manipulation of the argument CN can lead to improper input validation.
This vulnerability is registered as CVE-2014-2735. It is possible to launch the attack remotely. No exploit is available.
Upgrading the affected component is recommended.
A vulnerability classified as problematic has been found in CubeCart up to 5.2.8. This issue affects some unknown processing of the component Session. The manipulation of the argument PHPSESSID leads to improper authentication.
This vulnerability is referenced as CVE-2014-2341. Remote exploitation of the attack is possible. Furthermore, an exploit is available.
It is recommended to upgrade the affected component.
A vulnerability classified as problematic was found in ASUS RT Router up to 3.0.0.4.245. Impacted is an unknown function of the file Advanced_System_Content.asp of the component Firmware. The manipulation results in information disclosure.
This vulnerability is identified as CVE-2014-2719. The attack can be executed remotely. There is not any exploit available.
Upgrading the affected component is advised.
A vulnerability, which was classified as problematic, has been found in ASUS RT Router up to 3.0.0.4.x. The affected element is an unknown function of the file Advanced_Wireless_Content.asp. This manipulation of the argument current_page causes cross site scripting.
This vulnerability is tracked as CVE-2014-2925. The attack is possible to be carried out remotely. No exploit exists.
It is advisable to upgrade the affected component.
A vulnerability, which was classified as problematic, was found in Craig Knudsen WebCalendar up to 1.2.6. The impacted element is an unknown function of the file category.php. Such manipulation leads to cross site scripting.
This vulnerability is listed as CVE-2013-1421. The attack may be performed from remote. There is no available exploit.
You should upgrade the affected component.
A vulnerability has been found in Jonathan Leung Show In Browser 0.0.3 and classified as problematic. This affects an unknown function. Performing a manipulation results in link following.
This vulnerability is cataloged as CVE-2013-2105. The attack must be initiated from a local position. There is no exploit available.
A vulnerability was found in Apache Archiva up to 1.3.6 and classified as problematic. This impacts an unknown function. Executing a manipulation can lead to cross site scripting.
This vulnerability is registered as CVE-2013-2187. It is possible to launch the attack remotely. Furthermore, an exploit is available.
A vulnerability was found in Npmjs Node Packaged Modules up to 1.3.1. It has been classified as problematic. Affected is an unknown function in the library lib/npm.js. The manipulation leads to link following.
This vulnerability is documented as CVE-2013-4116. The attack needs to be performed locally. There is not any exploit available.
Upgrading the affected component is recommended.
A vulnerability was found in Poppler 0.24.0/0.24.1/0.24.2/0.24.3. It has been declared as problematic. Affected by this vulnerability is the function openTempFile of the component xpdf. The manipulation results in link following.
This vulnerability is reported as CVE-2013-4472. The attack requires a local approach. No exploit exists.
A vulnerability was found in Carbonblack Carbon Black. It has been rated as problematic. Affected by this issue is some unknown functionality. This manipulation causes cross-site request forgery.
This vulnerability appears as CVE-2014-1615. The attack may be initiated remotely. There is no available exploit.
Upgrading the affected component is advised.
A vulnerability categorized as critical has been discovered in MobFox mAdserve 2.0. This affects an unknown part of the file edit_ad_unit.php. Such manipulation of the argument ID leads to sql injection.
This vulnerability is traded as CVE-2014-2654. The attack may be launched remotely. There is no exploit available.
A vulnerability identified as problematic has been detected in Papercut Papercut MF up to 13.0. This vulnerability affects unknown code. Performing a manipulation results in cross-site request forgery.
This vulnerability is known as CVE-2014-2659. Remote exploitation of the attack is possible. No exploit is available.
You should upgrade the affected component.
A vulnerability labeled as critical has been found in KnowledgeTree 3.7/3.7.0.1/3.7.0.2. This issue affects the function getFileName of the component WebService. Executing a manipulation can lead to sql injection.
This vulnerability is handled as CVE-2014-2737. The attack can be executed remotely. There is not any exploit available.