Sec WriteUp ~ CVE Alert
前往频道在 Telegram
NOTIFICATIONS CHANNEL. 🔴 Security_WriteUp: #Medium #CyberSecurity #Hacker_News 🔴 CVE Reports #CVEfeed #Tenable #VulDb 🔴 Exploit Database #Exploit_DB #CXSECURITY #Sploitus Academy : @HackTheBox_Academy
显示更多未指定国家技术与应用43 281
472
订阅者
无数据24 小时
无数据7 天
-1030 天
帖子存档
‼️ CVE ALERT ‼️
***************
🗓Date: Wed, 04 Jun 2025 14:57:11 +0200
***************
✏️Title: CVE-2025-5668 | PHPGurukul Medical Card Generation System 1.0 /admin/readenq.php ID sql injection
***************
📎Link: https://vuldb.com/?id.311157
***************
⚙️Information:
#Vendor: PHPGurukul #Product: Medical Card Generation System #Type: Medical Device Software #Risk: critical #Local: No #Remote: Yes #Exploit: Yes #Countermeasures: Unknown
***************
♦️Join: @HackTheBox_Academy
♦️Join: @HackTheBox_Security
‼️ CVE ALERT ‼️
***************
🗓Date: Wed, 04 Jun 2025 14:57:12 +0200
***************
✏️Title: CVE-2025-5669 | PHPGurukul Medical Card Generation System 1.0 /admin/unreadenq.php ID sql injection
***************
📎Link: https://vuldb.com/?id.311158
***************
⚙️Information:
#Vendor: PHPGurukul #Product: Medical Card Generation System #Type: Medical Device Software #Risk: critical #Local: No #Remote: Yes #Exploit: Yes #Countermeasures: Unknown
***************
♦️Join: @HackTheBox_Academy
♦️Join: @HackTheBox_Security
‼️ CVE ALERT ‼️
***************
🗓Date: Wed, 04 Jun 2025 14:57:14 +0200
***************
✏️Title: CVE-2025-5670 | PHPGurukul Medical Card Generation System 1.0 /admin/manage-card.php ID sql injection
***************
📎Link: https://vuldb.com/?id.311159
***************
⚙️Information:
#Vendor: PHPGurukul #Product: Medical Card Generation System #Type: Medical Device Software #Risk: critical #Local: No #Remote: Yes #Exploit: Yes #Countermeasures: Unknown
***************
♦️Join: @HackTheBox_Academy
♦️Join: @HackTheBox_Security
‼️ CVE ALERT ‼️
***************
🗓Date: Wed, 04 Jun 2025 15:01:10 +0200
***************
✏️Title: CVE-2025-5671 | TOTOLINK N302R Plus up to 3.4.0-B20201028 HTTP POST Request /boafrm/formPortFw service_type buffer overflow
***************
📎Link: https://vuldb.com/?id.311160
***************
⚙️Information:
#Vendor: TOTOLINK #Product: N302R Plus #Risk: critical #Local: No #Remote: Yes #Exploit: Yes #Countermeasures: Unknown
***************
♦️Join: @HackTheBox_Academy
♦️Join: @HackTheBox_Security
‼️ CVE ALERT ‼️
***************
🗓Date: Wed, 04 Jun 2025 15:01:11 +0200
***************
✏️Title: CVE-2025-5672 | TOTOLINK N302R Plus up to 3.4.0-B20201028 HTTP POST Request /boafrm/formFilter url buffer overflow
***************
📎Link: https://vuldb.com/?id.311161
***************
⚙️Information:
#Vendor: TOTOLINK #Product: N302R Plus #Risk: critical #Local: No #Remote: Yes #Exploit: Yes #Countermeasures: Unknown
***************
♦️Join: @HackTheBox_Academy
♦️Join: @HackTheBox_Security
‼️ CVE ALERT ‼️
***************
🗓Date: Wed, 04 Jun 2025 15:04:36 +0200
***************
✏️Title: CVE-2025-5674 | code-projects Patient Record Management System 1.0 urinalysis_form.php urinalysis_id sql injection
***************
📎Link: https://vuldb.com/?id.311162
***************
⚙️Information:
#Vendor: code_projects #Product: Patient Record Management System #Type: Medical Device Software #Risk: critical #Local: No #Remote: Yes #Exploit: Yes #Countermeasures: Unknown
***************
♦️Join: @HackTheBox_Academy
♦️Join: @HackTheBox_Security
‼️ CVE ALERT ‼️
***************
🗓Date: Wed, 04 Jun 2025 15:05:47 +0200
***************
✏️Title: CVE-2025-5675 | Campcodes Online Teacher Record Management System 1.0 bwdates-reports-details.php fromdate/todate sql injection
***************
📎Link: https://vuldb.com/?id.311163
***************
⚙️Information:
#Vendor: Campcodes #Product: Online Teacher Record Management System #Risk: critical #Local: No #Remote: Yes #Exploit: Yes #Countermeasures: Unknown
***************
♦️Join: @HackTheBox_Academy
♦️Join: @HackTheBox_Security
‼️ CVE ALERT ‼️
***************
🗓Date: Wed, 04 Jun 2025 15:07:38 +0200
***************
✏️Title: CVE-2025-5676 | Campcodes Online Recruitment Management System 1.0 ajax.php?action=login Username sql injection
***************
📎Link: https://vuldb.com/?id.311164
***************
⚙️Information:
#Vendor: Campcodes #Product: Online Recruitment Management System #Risk: critical #Local: No #Remote: Yes #Exploit: Yes #Countermeasures: Unknown
***************
♦️Join: @HackTheBox_Academy
♦️Join: @HackTheBox_Security
‼️ CVE ALERT ‼️
***************
🗓Date: Wed, 04 Jun 2025 15:07:39 +0200
***************
✏️Title: CVE-2025-5677 | Campcodes Online Recruitment Management System 1.0 ajax.php?action=save_application position_id sql injection
***************
📎Link: https://vuldb.com/?id.311165
***************
⚙️Information:
#Vendor: Campcodes #Product: Online Recruitment Management System #Risk: critical #Local: No #Remote: Yes #Exploit: Yes #Countermeasures: Unknown
***************
♦️Join: @HackTheBox_Academy
♦️Join: @HackTheBox_Security
‼️ CVE ALERT ‼️
***************
🗓Date: Wed, 04 Jun 2025 15:22:46 +0200
***************
✏️Title: CVE-2025-5679 | Shenzhen Dashi Tongzhou Information Technology AgileBPM up to 2.5.0 SysToolsController.java parseStrByFreeMarker str deserialization (ICAQWG)
***************
📎Link: https://vuldb.com/?id.311166
***************
⚙️Information:
#Vendor: Shenzhen Dashi Tongzhou Information Technology #Product: AgileBPM #Risk: critical #Local: No #Remote: Yes #Exploit: Yes #Countermeasures: Unknown
***************
♦️Join: @HackTheBox_Academy
♦️Join: @HackTheBox_Security
‼️ CVE ALERT ‼️
***************
🗓Date: Wed, 04 Jun 2025 15:22:48 +0200
***************
✏️Title: CVE-2025-5680 | Shenzhen Dashi Tongzhou Information Technology AgileBPM up to 2.5.0 Groovy Script SysScriptController.java executeScript script deserialization (ICAPT5)
***************
📎Link: https://vuldb.com/?id.311167
***************
⚙️Information:
#Vendor: Shenzhen Dashi Tongzhou Information Technology #Product: AgileBPM #Risk: critical #Local: No #Remote: Yes #Exploit: Yes #Countermeasures: Unknown
***************
♦️Join: @HackTheBox_Academy
♦️Join: @HackTheBox_Security
‼️ CVE ALERT ‼️
***************
🗓Date: Wed, 04 Jun 2025 15:34:09 +0200
***************
✏️Title: CVE-2025-1701 | MIM Admin Service up to 7.2.12/7.3.7/7.4.2 RMI Interface input validation (EUVD-2025-16870)
***************
📎Link: https://vuldb.com/?id.311168
***************
⚙️Information:
#Vendor: MIM #Product: Admin Service #Risk: critical #Local: No #Remote: Partially #Exploit: No #Countermeasures: Upgrade
***************
♦️Join: @HackTheBox_Academy
♦️Join: @HackTheBox_Security
‼️ CVE ALERT ‼️
***************
🗓Date: Wed, 04 Jun 2025 15:36:25 +0200
***************
✏️Title: CVE-2025-5685 | Tenda CH22 1.0.0.1 /goform/Natlimit formNatlimit page stack-based overflow
***************
📎Link: https://vuldb.com/?id.311169
***************
⚙️Information:
#Vendor: Tenda #Product: CH22 #Type: Router Operating System #Risk: critical #Local: No #Remote: Yes #Exploit: Yes #Countermeasures: Unknown
***************
♦️Join: @HackTheBox_Academy
♦️Join: @HackTheBox_Security
‼️ CVE ALERT ‼️
***************
🗓Date: Wed, 04 Jun 2025 15:45:22 +0200
***************
✏️Title: CVE-2025-48962 | Acronis Cyber Protect 16 up to 39937 server-side request forgery (EUVD-2025-16876)
***************
📎Link: https://vuldb.com/?id.311170
***************
⚙️Information:
#Vendor: Acronis #Product: Cyber Protect 16 #Risk: critical #Local: No #Remote: Yes #Exploit: No #Countermeasures: Upgrade
***************
♦️Join: @HackTheBox_Academy
♦️Join: @HackTheBox_Security
‼️ CVE ALERT ‼️
***************
🗓Date: Wed, 04 Jun 2025 15:45:38 +0200
***************
✏️Title: CVE-2025-48960 | Acronis Cyber Protect 16 up to 39937 TLS inadequate encryption (EUVD-2025-16874)
***************
📎Link: https://vuldb.com/?id.311171
***************
⚙️Information:
#Vendor: Acronis #Product: Cyber Protect 16 #Risk: problematic #Local: No #Remote: Yes #Exploit: No #Countermeasures: Upgrade
***************
♦️Join: @HackTheBox_Academy
♦️Join: @HackTheBox_Security
‼️ CVE ALERT ‼️
***************
🗓Date: Wed, 04 Jun 2025 15:45:50 +0200
***************
✏️Title: CVE-2025-48961 | Acronis Cyber Protect 16 up to 39937 on Windows permission assignment (EUVD-2025-16875)
***************
📎Link: https://vuldb.com/?id.311172
***************
⚙️Information:
#Vendor: Acronis #Product: Cyber Protect 16 #Risk: critical #Local: Yes #Remote: No #Exploit: No #Countermeasures: Upgrade
***************
♦️Join: @HackTheBox_Academy
♦️Join: @HackTheBox_Security
‼️ CVE ALERT ‼️
***************
🗓Date: Wed, 04 Jun 2025 16:53:24 +0200
***************
✏️Title: CVE-2025-27811 | Razer Synapse up to 4.0.86.250218 COM Interface razer_elevation_service.exe Local Privilege Escalation (EUVD-2025-16873)
***************
📎Link: https://vuldb.com/?id.311173
***************
⚙️Information:
#Vendor: Razer #Product: Synapse #Risk: problematic #Local: Yes #Remote: No #Exploit: No #Countermeasures: Unknown
***************
♦️Join: @HackTheBox_Academy
♦️Join: @HackTheBox_Security
📌#WriteUp Community
***************
🗓Date: Wed, 04 Jun 2025 16:32:18 GMT
***************
✏️Title: Ejpt V2 | Assessment Methodologies: Vulnerability Assessment CTF 1
***************
📎Link: https://medium.com/p/e0b3f1abbbf6
***************
⚙️Tags: #penetration_testing #pentesting #hacking_tools #vulnerability
***************
♦️Join: @HackTheBox_Academy
♦️Join: @HackTheBox_Security
📌#WriteUp Community
***************
🗓Date: Wed, 04 Jun 2025 17:02:26 GMT
***************
✏️Title: PicoCTF Writeup — fixme2.py
***************
📎Link: https://medium.com/p/1e16c4075290
***************
⚙️Tags: #debugging #python #ctf #picoctf
***************
♦️Join: @HackTheBox_Academy
♦️Join: @HackTheBox_Security
📌#WriteUp Community
***************
🗓Date: Wed, 04 Jun 2025 16:42:38 GMT
***************
✏️Title: TryHackMe | JWT Security | WriteUp
***************
📎Link: https://medium.com/p/c7d0c39c9b95
***************
⚙️Tags: #cyber_security_awareness #tryhackme_writeup #cybersecurity #tryhackme_walkthrough #tryhackme
***************
♦️Join: @HackTheBox_Academy
♦️Join: @HackTheBox_Security
