unSafe.sh - 不安全
我的收藏
今日热榜
公众号文章
导航
Github CVE
Github Tools
编码/解码
文件传输
Twitter Bot
Telegram Bot
Search
Rss
黑夜模式
VisiData VisiData EmailSheet extract_parts path traversal vulnerability
SummaryA path traversal vulnerability exists in the EmailSheet extract_parts functionality of Visi...
2026-10-6 23:58:59 | 阅读: 0 |
收藏
|
0day Fans - talosintelligence.com
visidata
eml
2026
givenpath
python
VisiData VisiData unzip_http RemoteZipFile extract path traversal vulnerability
SummaryA path traversal vulnerability exists in the unzip_http RemoteZipFile extract functionality...
2026-10-6 23:58:59 | 阅读: 0 |
收藏
|
0day Fans - talosintelligence.com
visidata
2026
remote
attacker
ssh
Foxit Reader Array resetForm Use-After-Free Vulnerability
SummaryA use-after-free vulnerability exists in the way Foxit Reader handles an Array object. A sp...
2026-9-23 00:0:7 | 阅读: 4 |
收藏
|
0day Fans - talosintelligence.com
00000148
00007ff7
vsnprintf
00000045
Apple macOS CoreWLAN information disclosure vulnerability
SummaryA information disclosure vulnerability exists in the CoreWLAN functionality of macOS (versi...
2026-9-23 00:0:7 | 阅读: 2 |
收藏
|
0day Fans - talosintelligence.com
bssid
ssid
2026
network
bssidlist
Microsoft Windows Cloud Files Mini Filter Driver CldiStreamPrepareRequestForMoreProcessing Type Confusion vulnerability
SummaryA type confusion vulnerability exists in the CldiStreamPrepareRequestForMoreProcessing func...
2026-9-8 23:59:3 | 阅读: 23 |
收藏
|
0day Fans - talosintelligence.com
ffffc60a
cldflt
fffff806
ffff918f
hypervisor
Adobe Photoshop Installation privilege escalation vulnerability
SummaryA privilege escalation vulnerability exists in the Installation functionality of Photoshop...
2026-8-26 00:0:11 | 阅读: 13 |
收藏
|
0day Fans - talosintelligence.com
photoshop
winget
jnjpo4r
571
Microsoft Windows TCPIP.SYS IppQualifyAddresses Out-of-Bounds Read Vulnerability
SummaryAn out-of-bounds read vulnerability exists in the IppQualifyAddresses function of the Micro...
2026-8-11 23:59:7 | 阅读: 24 |
收藏
|
0day Fans - talosintelligence.com
tcpip
hypervisor
ffffce0b
fffff807
Microsoft Windows Cloud Files Mini Filter Driver CldiStreamCompleteRequest use-after-free vulnerability
SummaryA use-after-free vulnerability exists in the CldiStreamCompleteRequest functionality of Win...
2026-7-17 00:0:35 | 阅读: 26 |
收藏
|
0day Fans - talosintelligence.com
cldflt
hypervisor
ffffc80b
fffff801
ffffa685
Microsoft Windows NETIO.sys NsipGetAllInformationProviderParameters Information Disclosure Vulnerability
SummaryAn out-of-bounds pointer offset vulnerability exists in the NsipGetAllInformationProviderPa...
2026-7-16 00:0:59 | 阅读: 19 |
收藏
|
0day Fans - talosintelligence.com
fffff807
netio
keybuffer
Foxit Foxit Reader Javascript checkbox CBF_Widget code execution vulnerability
SummaryA code execution vulnerability exists in the Javascript checkbox CBF_Widget functionality o...
2026-7-8 23:59:22 | 阅读: 23 |
收藏
|
0day Fans - talosintelligence.com
00000232
00007ff6
vsnprintf
foxit
WolfSSL wolfSSL X.509 registeredID name constraints enforcement improper input validation vulnerability
SummaryA improper input validation vulnerability exists in the X.509 registeredID name constraints...
2026-7-1 23:59:55 | 阅读: 17 |
收藏
|
0day Fans - talosintelligence.com
wolfssl
rid
2026
generalname
WolfSSL wolfSSL X.509 iPAddress name constraints enforcement improper input validation vulnerability
SummaryA improper input validation vulnerability exists in the X.509 iPAddress name constraints en...
2026-7-1 00:0:19 | 阅读: 23 |
收藏
|
0day Fans - talosintelligence.com
wolfssl
altnames
permitted
2026
ipaddress
WolfSSL wolfSSL PKCS#7 OtherRecipientInfo integer underflow vulnerability
SummaryA integer underflow vulnerability exists in the PKCS#7 OtherRecipientInfo functionality of...
2026-7-1 00:0:19 | 阅读: 19 |
收藏
|
0day Fans - talosintelligence.com
pkcs7
word32
wolfssl
pkimsg
orivaluesz
vtk vtk-dicom vtkDICOMItem::FindDataElementOrInsert heap-based buffer overflow vulnerability
SummaryA heap-based buffer overflow vulnerability exists in the vtkDICOMItem::FindDataElementOrIns...
2026-6-25 00:0:29 | 阅读: 14 |
收藏
|
0day Fans - talosintelligence.com
vtk
pthread
tptr
cxx
Tp-Link Archer AX53 v1.0 Openvpn configuration restore client_connect OS command injection vulnerability
SUMMARYAn os command injection vulnerability exists in the Openvpn configuration restore client_co...
2026-5-7 00:0:4 | 阅读: 22 |
收藏
|
0day Fans - talosintelligence.com
openvpn
client
remote
ifconfig
persist
Tp-Link Archer AX53 v1.0 Openvpn configuration restore script_security OS command injection vulnerability
SUMMARYAn os command injection vulnerability exists in the Openvpn configuration restore script_se...
2026-5-7 00:0:4 | 阅读: 21 |
收藏
|
0day Fans - talosintelligence.com
openvpn
client
remote
ifconfig
backup
Tp-Link Archer AX53 v1.0 dnsmasq configuration restore TFTP server enable vulnerability
SUMMARYAn external config control vulnerability exists in the Openvpn configuration restore route_...
2026-5-7 00:0:4 | 阅读: 24 |
收藏
|
0day Fans - talosintelligence.com
tftp
archer
ax53
dnsmasq
readethers
Norton Secure VPN Installation Insecure Operation On Junction Privilege Escalation Vulnerability
SUMMARYA privilege escalation vulnerability exists during the installation of Norton Secure VPN vi...
2026-5-3 23:59:3 | 阅读: 19 |
收藏
|
0day Fans - talosintelligence.com
057cd4cd
413f
d429
OpenVPN TLS Crypt v2 Client Key Extraction denial of service vulnerability
好的,我现在需要帮用户总结一篇文章的内容,控制在100字以内,而且不需要特定的开头。首先,我得仔细阅读文章,理解其主要内容。 文章主要讲的是OpenVPN 2.6.x和2.8_git版本中的一个漏洞。这个漏洞是在TLS Crypt v2客户端密钥提取功能中发现的,攻击者可以通过发送特定的网络包导致服务拒绝(DoS)。漏洞的CVSS评分是7.7,属于中等偏高风险。 接下来,我需要提取关键点:漏洞名称、影响版本、攻击方式、后果以及修复情况。然后将这些信息浓缩到100字以内,确保语言简洁明了。 可能会遇到的问题是如何在有限的字数内涵盖所有重要信息。我需要优先选择最重要的内容,比如漏洞的存在、影响范围、攻击效果和修复建议。 最后,检查字数是否符合要求,并确保没有使用任何不需要的开头语句。 </think> OpenVPN 2.6.x和2.8_git版本中存在一个可利用的断言漏洞,可能导致服务拒绝。攻击者通过发送恶意网络包触发此漏洞,导致服务器崩溃。该漏洞已修复,建议用户更新至最新版本以避免风险。...
2026-4-26 23:59:37 | 阅读: 22 |
收藏
|
0day Fans - talosintelligence.com
crypt
client
openvpn
wkc
2026
Adobe Photoshop Installation Privilege Escalation Vulnerability
好的,我需要帮用户总结这篇文章的内容,控制在100字以内。首先,我得通读全文,抓住关键点。文章讲的是Adobe Photoshop通过微软商店安装时存在一个权限提升漏洞。 漏洞出现在安装程序Photoshop_Set-Up.exe版本2.11.0.30中。低权限用户可以在安装过程中替换文件,导致权限被意外提升。CVSSv3评分为8.2,属于高危漏洞。 接下来,我需要把这些信息浓缩成一句话,确保不超过100字。要包含软件名称、漏洞类型、影响以及评分。这样用户就能快速了解主要内容了。 </think> Adobe Photoshop通过微软商店安装时存在权限提升漏洞,低权限用户可替换安装文件以获取高权限,CVSSv3评分为8.2。...
2026-4-21 23:59:24 | 阅读: 26 |
收藏
|
0day Fans - talosintelligence.com
photoshop
privileges
attacker
talos
2026
Previous
-660
-659
-658
-657
-656
-655
-654
-653
Next