ch
Feedback

不要被骗子欺骗!Telemetrio 会找到并标记这些频道 👉 如果想查看标记,请订阅 👈

Sec WriteUp ~ CVE Alert

Sec WriteUp ~ CVE Alert

前往频道在 Telegram

NOTIFICATIONS CHANNEL. 🔴 Security_WriteUp: #Medium #CyberSecurity #Hacker_News 🔴 CVE Reports #CVEfeed #Tenable #VulDb 🔴 Exploit Database #Exploit_DB #CXSECURITY #Sploitus Academy : @HackTheBox_Academy

显示更多
未指定国家技术与应用43 281
472
订阅者
无数据24 小时
无数据7 天
-1030 天
帖子存档
‼️ CVE ALERT ‼️ *************** 🗓Date: Mon, 02 Jun 2025 20:23:11 +0200 *************** ✏️Title: CVE-2025-27955 | Clinical Collaboration Platform 12.2.1.5 Logout session expiration *************** 📎Link: https://vuldb.com/?id.310856 *************** ⚙️Information: #Product: Clinical Collaboration Platform #Type: Groupware Software #Risk: problematic #Local: No #Remote: Yes #Exploit: No #Countermeasures: Unknown *************** ♦️Join: @HackTheBox_Academy ♦️Join: @HackTheBox_Security

‼️ CVE ALERT ‼️ *************** 🗓Date: Mon, 02 Jun 2025 20:24:10 +0200 *************** ✏️Title: CVE-2024-1440 | WSO2 Identity Server Authentication Endpoint redirect *************** 📎Link: https://vuldb.com/?id.310857 *************** ⚙️Information: #Vendor: WSO2 #Product: Identity Server/API Manager/Identity Server as Key Manager/Open Banking AM/Open Banking IAM/Carbon Identity Application Authentication Endpoint #Type: Banking Software #Risk: problematic #Local: No #Remote: Yes #Exploit: No #Countermeasures: Upgrade *************** ♦️Join: @HackTheBox_Academy ♦️Join: @HackTheBox_Security

‼️ CVE ALERT ‼️ *************** 🗓Date: Mon, 02 Jun 2025 20:24:53 +0200 *************** ✏️Title: CVE-2025-20297 | Splunk Enterprise/Cloud Platform REST Endpoint cross site scripting (SVD-2025-0601) *************** 📎Link: https://vuldb.com/?id.310858 *************** ⚙️Information: #Vendor: Splunk #Product: Enterprise/Cloud Platform #Type: Log Management Software #Risk: problematic #Local: No #Remote: Yes #Exploit: No #Countermeasures: Upgrade *************** ♦️Join: @HackTheBox_Academy ♦️Join: @HackTheBox_Security

‼️ CVE ALERT ‼️ *************** 🗓Date: Mon, 02 Jun 2025 20:25:25 +0200 *************** ✏️Title: CVE-2025-20298 | Splunk Universal Forwarder up to 9.1.8/9.2.5/9.3.3/9.4.1 on Windows SplunkUniversalForwarder permission assignment (SVD-2025-0602) *************** 📎Link: https://vuldb.com/?id.310859 *************** ⚙️Information: #Vendor: Splunk #Product: Universal Forwarder #Type: Log Management Software #Risk: critical #Local: No #Remote: Yes #Exploit: No #Countermeasures: Upgrade *************** ♦️Join: @HackTheBox_Academy ♦️Join: @HackTheBox_Security

‼️ CVE ALERT ‼️ *************** 🗓Date: Mon, 02 Jun 2025 20:26:08 +0200 *************** ✏️Title: CVE-2024-7073 | WSO2 Identity Server as Key Manager SOAP Admin Services server-side request forgery *************** 📎Link: https://vuldb.com/?id.310860 *************** ⚙️Information: #Vendor: WSO2 #Product: Identity Server as Key Manager/Identity Server/Open Banking KM/Open Banking IAM/Carbon Policy Editor BE #Type: Banking Software #Risk: critical #Local: No #Remote: Yes #Exploit: No #Countermeasures: Upgrade *************** ♦️Join: @HackTheBox_Academy ♦️Join: @HackTheBox_Security

‼️ CVE ALERT ‼️ *************** 🗓Date: Mon, 02 Jun 2025 20:28:20 +0200 *************** ✏️Title: CVE-2025-5086 | Dassault Systèmes DELMIA Apriso up to 2025 deserialization *************** 📎Link: https://vuldb.com/?id.310861 *************** ⚙️Information: #Vendor: Dassault Systèmes #Product: DELMIA Apriso #Risk: very critical #Local: No #Remote: Yes #Exploit: No #Countermeasures: Unknown *************** ♦️Join: @HackTheBox_Academy ♦️Join: @HackTheBox_Security

‼️ CVE ALERT ‼️ *************** 🗓Date: Mon, 02 Jun 2025 20:29:57 +0200 *************** ✏️Title: CVE-2025-23104 | Samsung 1480/2200/2400 use after free *************** 📎Link: https://vuldb.com/?id.310862 *************** ⚙️Information: #Vendor: Samsung #Product: 1480/2200/2400 #Risk: critical #Local: No #Remote: Partially #Exploit: No #Countermeasures: Unknown *************** ♦️Join: @HackTheBox_Academy ♦️Join: @HackTheBox_Security

‼️ CVE ALERT ‼️ *************** 🗓Date: Mon, 02 Jun 2025 20:30:09 +0200 *************** ✏️Title: CVE-2025-27956 | WebLaudos 24.2 ID path traversal *************** 📎Link: https://vuldb.com/?id.310863 *************** ⚙️Information: #Product: WebLaudos #Risk: critical #Local: No #Remote: Yes #Exploit: No #Countermeasures: Unknown *************** ♦️Join: @HackTheBox_Academy ♦️Join: @HackTheBox_Security

‼️ CVE ALERT ‼️ *************** 🗓Date: Mon, 02 Jun 2025 20:30:53 +0200 *************** ✏️Title: CVE-2025-27953 | Clinical Collaboration Platform 12.2.1.5 user session *************** 📎Link: https://vuldb.com/?id.310864 *************** ⚙️Information: #Product: Clinical Collaboration Platform #Type: Groupware Software #Risk: problematic #Local: No #Remote: Yes #Exploit: No #Countermeasures: Unknown *************** ♦️Join: @HackTheBox_Academy ♦️Join: @HackTheBox_Security

‼️ CVE ALERT ‼️ *************** 🗓Date: Mon, 02 Jun 2025 20:31:03 +0200 *************** ✏️Title: CVE-2025-27954 | Clinical Collaboration Platform 12.2.1.5 default.aspx usertoken information disclosure *************** 📎Link: https://vuldb.com/?id.310865 *************** ⚙️Information: #Product: Clinical Collaboration Platform #Type: Groupware Software #Risk: problematic #Local: No #Remote: Yes #Exploit: No #Countermeasures: Unknown *************** ♦️Join: @HackTheBox_Academy ♦️Join: @HackTheBox_Security

‼️ CVE ALERT ‼️ *************** 🗓Date: Mon, 02 Jun 2025 20:31:15 +0200 *************** ✏️Title: CVE-2025-23105 | Samsung 1480/2200/2400 use after free *************** 📎Link: https://vuldb.com/?id.310866 *************** ⚙️Information: #Vendor: Samsung #Product: 1480/2200/2400 #Risk: critical #Local: No #Remote: Partially #Exploit: No #Countermeasures: Unknown *************** ♦️Join: @HackTheBox_Academy ♦️Join: @HackTheBox_Security

‼️ CVE ALERT ‼️ *************** 🗓Date: Mon, 02 Jun 2025 20:31:25 +0200 *************** ✏️Title: CVE-2024-3509 | WSO2 Enterprise Integrator Management Console cross site scripting *************** 📎Link: https://vuldb.com/?id.310867 *************** ⚙️Information: #Vendor: WSO2 #Product: Enterprise Integrator/API Manager/Open Banking AM/Open Banking IAM/Identity Server as Key Manager/Identity Server/Carbon Registry Resources UI #Type: Banking Software #Risk: problematic #Local: No #Remote: Yes #Exploit: No #Countermeasures: Upgrade *************** ♦️Join: @HackTheBox_Academy ♦️Join: @HackTheBox_Security

‼️ CVE ALERT ‼️ *************** 🗓Date: Mon, 02 Jun 2025 20:31:32 +0200 *************** ✏️Title: CVE-2024-8008 | WSO2 Enterprise Integrator cross site scripting *************** 📎Link: https://vuldb.com/?id.310868 *************** ⚙️Information: #Vendor: WSO2 #Product: Enterprise Integrator/API Manager/Identity Server as Key Manager/Identity Server/Open Banking IAM/Open Banking AM/Carbon Identity User Store Configuration UI #Type: Banking Software #Risk: problematic #Local: No #Remote: Yes #Exploit: No #Countermeasures: Upgrade *************** ♦️Join: @HackTheBox_Academy ♦️Join: @HackTheBox_Security

‼️ CVE ALERT ‼️ *************** 🗓Date: Mon, 02 Jun 2025 20:36:03 +0200 *************** ✏️Title: CVE-2025-23099 | Samsung Exynos 1480/2400 out-of-bounds write *************** 📎Link: https://vuldb.com/?id.310869 *************** ⚙️Information: #Vendor: Samsung #Product: Exynos #Risk: critical #Local: No #Remote: Partially #Exploit: No #Countermeasures: Unknown *************** ♦️Join: @HackTheBox_Academy ♦️Join: @HackTheBox_Security

👾New Exploit👾 =============== ✏️ ABB Cylon Aspect 3.08.03 Guest2Root Privilege Escalation =============== 📎 https://cxsecurity.com/issue/WLB-2025060001 =============== ⚙️Tags: #Vulnerability #CVE #Exploit #POC =============== ♦️Join: @HackTheBoxAcademy ♦️Join: @HackTheBoxSecurity

📌#WriteUp Community *************** 🗓Date: Mon, 02 Jun 2025 16:57:38 GMT *************** ✏️Title: How I Used TCP Headers to Exfiltrate Data — A Simple but Powerful Learning Exercise *************** 📎Link: https://medium.com/p/7d9812ce81c1 *************** ⚙️Tags: #data_exfiltration #cybersecurity #hacking #networking *************** ♦️Join: @HackTheBox_Academy ♦️Join: @HackTheBox_Security

📌#WriteUp Community *************** 🗓Date: Mon, 02 Jun 2025 17:31:29 GMT *************** ✏️Title: Crypto under attack: May marks another black month for DeFi security *************** 📎Link: https://medium.com/p/4da37a694f0c *************** ⚙️Tags: #hacking #defi #crypto *************** ♦️Join: @HackTheBox_Academy ♦️Join: @HackTheBox_Security

📌#WriteUp Community *************** 🗓Date: Mon, 02 Jun 2025 17:32:41 GMT *************** ✏️Title: Exploiting EternalBlue (MS17–010): Hacking Legacy Windows 7 Systems using Metasploit *************** 📎Link: https://medium.com/p/18a86bd5b664 *************** ⚙️Tags: #kali_linux #cyebrsecurity #metasploit #hacking #windows_7 *************** ♦️Join: @HackTheBox_Academy ♦️Join: @HackTheBox_Security

📌#WriteUp Community *************** 🗓Date: Mon, 02 Jun 2025 18:07:29 GMT *************** ✏️Title: From Customer to Verified: A Critical Role Escalation in WooCommerce Flutter API *************** 📎Link: https://medium.com/p/2a4f4ba49007 *************** ⚙️Tags: #access_control_security #cybersecurity #bug_bounty #mobile_pentesting #penetration_testing *************** ♦️Join: @HackTheBox_Academy ♦️Join: @HackTheBox_Security

📌#WriteUp Community *************** 🗓Date: Mon, 02 Jun 2025 18:03:26 GMT *************** ✏️Title: ️ Top 10 Ethical Hackers in India — Ultimate List of Cybersecurity Experts You Should Know *************** 📎Link: https://medium.com/p/54a72443ef18 *************** ⚙️Tags: #hacking #information_technology #coding #cybersecurity #hacker *************** ♦️Join: @HackTheBox_Academy ♦️Join: @HackTheBox_Security