Silver Platter Tryhackme Walkthrough
Silver Platter Tryhackme Walkthrough Can you breach the server?room link : https://tryhackme.com/r/room/silverplatterAfter spending considerable time attempting to gain an initial foothold, I realized that the solution was in plain sight … Read more Published Date: Jan 18, 2025 (2 hours, 14 minutes ago) Vulnerabilities has been mentioned in this article.
CVE-2025-0558 – TDuckCloud SQL Injection Vulnerability
The following table lists the changes that have been made to the CVE-2025-0558 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 18, 2025 Action […]
Whiterose TryHackMe Motion Graphics Writeup | Easy Room | Detailed THM Walkthrough
Whiterose TryHackMe Motion Graphics Writeup | Easy Room | Detailed THM Walkthrough Full writeup for the TryHackMe room : Whiterose ( Easy Room )Kudos to the Creator(s) of this room →ROOM DIFFICULTYEasy → Difficulty [ Name : Whiterose , Room loosely Based on the TV Show → Mr. Robot ] … Read more Published Date: […]
CVE-2025-0557 – Hyland Alfresco Alfresco Handler Cross Site Scripting Vulnerability
The following table lists the changes that have been made to the CVE-2025-0557 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 18, 2025 Action […]
CVE-2024-13184 – WordPress Toolkit – WP Extended SQL Injection Vulnerability
CVE ID : CVE-2024-13184 Published : Jan. 18, 2025, 9:15 a.m. | 26 minutes ago Description : The The Ultimate WordPress Toolkit – WP Extended plugin for WordPress is vulnerable to time-based SQL Injection via the Login Attempts module in all versions up to, and including, 3.0.12 due to insufficient escaping on the user supplied parameter […]
CVE-2024-13375 – “Adifier System WordPress Plugin Authentication Bypass”
CVE ID : CVE-2024-13375 Published : Jan. 18, 2025, 9:15 a.m. | 26 minutes ago Description : The Adifier System plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 3.1.7. This is due to the plugin not properly validating a user’s identity prior to updating their details […]
CVE-2024-13392 – Apache WordPress Stored Cross-Site Scripting in Rate Star Review Vote – AJAX Reviews, Votes, Star Ratings Plugin
CVE ID : CVE-2024-13392 Published : Jan. 18, 2025, 8:15 a.m. | 27 minutes ago Description : The Rate Star Review Vote – AJAX Reviews, Votes, Star Ratings plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin’s ‘videowhisper_reviews’ shortcode in all versions up to, and including, 1.6.3 due to insufficient input sanitization and […]
CVE-2024-50379: Apache Tomcat Race Condition Vulnerability Leads to Remote Code Execution
CVE-2024-50379: Apache Tomcat Race Condition Vulnerability Leads to Remote Code Execution CVE-2024-50379: Apache Tomcat Race Condition Vulnerability Leads to Remote Code Execution[Write-up] CVE-2024-50379: Apache Tomcat Race Condition POC – RCE Tested on Local Lab.IntroductionApache Tomcat … Read more Published Date: Jan 18, 2025 (2 hours, 23 minutes ago) Vulnerabilities has been mentioned in this article.
CVE-2025-0515 – WordPress Twitter Buzz Club Unauthenticated Data Modification Vulnerability
CVE ID : CVE-2025-0515 Published : Jan. 18, 2025, 7:15 a.m. | 29 minutes ago Description : The Buzz Club – Night Club, DJ and Music Festival Event WordPress Theme theme for WordPress is vulnerable to unauthorized modification of data that can lead to a denial of service due to a missing capability check on the […]
CVE-2025-0369 – JetEngine Stored Cross-Site Scripting Vulnerability
CVE ID : CVE-2025-0369 Published : Jan. 18, 2025, 7:15 a.m. | 29 minutes ago Description : The JetEngine plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘list_tag’ parameter in all versions up to, and including, 3.6.2 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with […]