Aggregator
威胁情报:Solana 开源机器人盗币分析
6 months 4 weeks ago
该项目会读取本地敏感信息并将私钥上传至黑客服务器。
CVE-2025-7369 | WP Shortcodes Plugin up to 7.4.2 on WordPress cross-site request forgery
6 months 4 weeks ago
A vulnerability, which was classified as problematic, has been found in WP Shortcodes Plugin up to 7.4.2 on WordPress. Affected by this issue is some unknown functionality. The manipulation leads to cross-site request forgery.
This vulnerability is handled as CVE-2025-7369. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2025-41681 | MB Connect Line mbNET.mini up to 2.3.2 HTTP POST Request cross site scripting (VDE-2025-058 / EUVD-2025-22073)
6 months 4 weeks ago
A vulnerability classified as problematic was found in MB Connect Line mbNET.mini up to 2.3.2. Affected by this vulnerability is an unknown functionality of the component HTTP POST Request Handler. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2025-41681. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
今日开赛!通义大模型首次公开设擂,百万悬赏「AI安全守护者」
6 months 4 weeks ago
💪 💪
CVE-2025-41678 | MB Connect Line mbNET.mini up to 2.3.2 Configuration Database sql injection (VDE-2025-058 / EUVD-2025-22075)
6 months 4 weeks ago
A vulnerability classified as critical has been found in MB Connect Line mbNET.mini up to 2.3.2. Affected is an unknown function of the component Configuration Database Handler. The manipulation leads to sql injection.
This vulnerability is traded as CVE-2025-41678. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-41677 | MB Connect Line mbNET.mini up to 2.3.2 HTTP POST Request resource consumption (VDE-2025-058 / EUVD-2025-22077)
6 months 4 weeks ago
A vulnerability was found in MB Connect Line mbNET.mini up to 2.3.2. It has been rated as problematic. This issue affects some unknown processing of the component HTTP POST Request Handler. The manipulation leads to resource consumption.
The identification of this vulnerability is CVE-2025-41677. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-41676 | MB Connect Line mbNET.mini up to 2.3.2 HTTP POST Request resource consumption (VDE-2025-058 / EUVD-2025-22067)
6 months 4 weeks ago
A vulnerability was found in MB Connect Line mbNET.mini up to 2.3.2. It has been declared as problematic. This vulnerability affects unknown code of the component HTTP POST Request Handler. The manipulation leads to resource consumption.
This vulnerability was named CVE-2025-41676. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-41679 | MB Connect Line mbNET.mini up to 2.3.2 Conftool out-of-bounds write (VDE-2025-058 / EUVD-2025-22074)
6 months 4 weeks ago
A vulnerability was found in MB Connect Line mbNET.mini up to 2.3.2. It has been classified as critical. This affects an unknown part of the component Conftool. The manipulation leads to out-of-bounds write.
This vulnerability is uniquely identified as CVE-2025-41679. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-41675 | MB Connect Line mbNET.mini up to 2.3.2 os command injection (VDE-2025-058 / EUVD-2025-22068)
6 months 4 weeks ago
A vulnerability was found in MB Connect Line mbNET.mini up to 2.3.2 and classified as critical. Affected by this issue is some unknown functionality. The manipulation leads to os command injection.
This vulnerability is handled as CVE-2025-41675. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
AI 上新|正经人谁写日记?但这个 AI 应用让我爱上写日记!
6 months 4 weeks ago
AI 最大的作用,不是和你沟通,而是帮你和自己沟通。
CVE-2025-41674 | MB Connect Line mbNET.mini up to 2.3.2 os command injection (VDE-2025-058 / EUVD-2025-22069)
6 months 4 weeks ago
A vulnerability has been found in MB Connect Line mbNET.mini up to 2.3.2 and classified as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to os command injection.
This vulnerability is known as CVE-2025-41674. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-41673 | MB Connect Line mbNET.mini up to 2.3.2 send_sms os command injection (VDE-2025-058 / EUVD-2025-22070)
6 months 4 weeks ago
A vulnerability, which was classified as critical, was found in MB Connect Line mbNET.mini up to 2.3.2. Affected is the function send_sms. The manipulation leads to os command injection.
This vulnerability is traded as CVE-2025-41673. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-7953 | Sanluan PublicCMS up to 5.202506.a viewer.html File redirect
6 months 4 weeks ago
A vulnerability, which was classified as problematic, has been found in Sanluan PublicCMS up to 5.202506.a. This issue affects some unknown processing of the file publiccms-parent/publiccms/src/main/webapp/resource/plugins/pdfjs/viewer.html. The manipulation of the argument File leads to open redirect.
The identification of this vulnerability is CVE-2025-7953. The attack may be initiated remotely. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
Microsoft: Attackers Actively Compromising On-Prem SharePoint Customers
6 months 4 weeks ago
On-prem SharePoint customers have been told to assume compromise, with attackers observed to be exfiltrating data from victim servers across critical sectors
别再被 MISC 题目劝退!20小时吃透加密/隐写/取证,竞赛拿分稳了
6 months 4 weeks ago
学习如何分析题目+解决题目
7-Zip 曝双重漏洞:恶意文件可致系统崩溃,旧版本用户需紧急升级
6 months 4 weeks ago
升级避风险
CVE-2023-4069:Maglev图建立阶段的一个漏洞
6 months 4 weeks ago
看雪论坛作者ID:flyyyy
2025AI Agent元年:当智能体拥有“行动力”,AI如何真正融入企业业务?
6 months 4 weeks ago
AI Agent的引入,标志着企业知识管理从被动查询迈入主动服务、智能执行的新阶段!
Submit #619279: sanluan https://github.com/sanluan/PublicCMS <=V5.202506.a Open Redirect [Accepted]
6 months 4 weeks ago
Submit #619279 / VDB-317099
ZAST.AI