Silver Platter Tryhackme Walkthrough

Silver Platter Tryhackme Walkthrough Can you breach the server?room link : https://tryhackme.com/r/room/silverplatterAfter spending considerable time attempting to gain an initial foothold, I realized that the solution was in plain sight … Read more Published Date: Jan 18, 2025 (2 hours, 14 minutes ago) Vulnerabilities has been mentioned in this article.

CVE-2025-0558 – TDuckCloud SQL Injection Vulnerability

The following table lists the changes that have been made to the CVE-2025-0558 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 18, 2025 Action […]

CVE-2025-0557 – Hyland Alfresco Alfresco Handler Cross Site Scripting Vulnerability

The following table lists the changes that have been made to the CVE-2025-0557 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 18, 2025 Action […]

CVE-2024-13184 – WordPress Toolkit – WP Extended SQL Injection Vulnerability

CVE ID : CVE-2024-13184 Published : Jan. 18, 2025, 9:15 a.m. | 26 minutes ago Description : The The Ultimate WordPress Toolkit – WP Extended plugin for WordPress is vulnerable to time-based SQL Injection via the Login Attempts module in all versions up to, and including, 3.0.12 due to insufficient escaping on the user supplied parameter […]

CVE-2024-13375 – “Adifier System WordPress Plugin Authentication Bypass”

CVE ID : CVE-2024-13375 Published : Jan. 18, 2025, 9:15 a.m. | 26 minutes ago Description : The Adifier System plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 3.1.7. This is due to the plugin not properly validating a user’s identity prior to updating their details […]

CVE-2024-13392 – Apache WordPress Stored Cross-Site Scripting in Rate Star Review Vote – AJAX Reviews, Votes, Star Ratings Plugin

CVE ID : CVE-2024-13392 Published : Jan. 18, 2025, 8:15 a.m. | 27 minutes ago Description : The Rate Star Review Vote – AJAX Reviews, Votes, Star Ratings plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin’s ‘videowhisper_reviews’ shortcode in all versions up to, and including, 1.6.3 due to insufficient input sanitization and […]

CVE-2024-50379: Apache Tomcat Race Condition Vulnerability Leads to Remote Code Execution

CVE-2024-50379: Apache Tomcat Race Condition Vulnerability Leads to Remote Code Execution CVE-2024-50379: Apache Tomcat Race Condition Vulnerability Leads to Remote Code Execution[Write-up] CVE-2024-50379: Apache Tomcat Race Condition POC – RCE Tested on Local Lab.IntroductionApache Tomcat … Read more Published Date: Jan 18, 2025 (2 hours, 23 minutes ago) Vulnerabilities has been mentioned in this article.

CVE-2025-0369 – JetEngine Stored Cross-Site Scripting Vulnerability

CVE ID : CVE-2025-0369 Published : Jan. 18, 2025, 7:15 a.m. | 29 minutes ago Description : The JetEngine plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘list_tag’ parameter in all versions up to, and including, 3.6.2 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with […]