Yonyou UFIDA ERP-NC V50 跨站脚本漏洞 漏洞信息漏洞名称: Yonyou UFIDA ERP-NC V5.0 跨站脚本漏洞 漏洞编号: CVE: CVE-2025-2712 漏洞类型: 跨站可执行脚本 漏洞等级: 中危 漏洞描述: Yonyou UFIDA ERP-NC V5.0是一款广泛使用的企业资源规划(ERP)软件,旨在帮助企业管理和整合其业务流程。该软件在中国及其他地区的企业中有着广泛的应用,尤其是在财务、供应链管理和人力资 2025-07-16 Github Poc #projectdiscovery/nuclei-templates:github issues #跨站可执行脚本
_r_netsec Twitter Update ! 博主: _r_netsec 推文: MITRE新框架瞄准加密货币威胁 https://t.co/ahFJmC46Cw 链接: https://x.com/_r_netsec/status/1945460430207689083 2025-07-16 推特监控 #_r_netsec
_r_netsec Twitter Update ! 博主: _r_netsec 推文: 爱立信将主导以安全为先的电信防御改革,因2025年国家间威胁加剧 https://t.co/7dgMogMt06 链接: https://x.com/_r_netsec/status/1945460431851753534 2025-07-16 推特监控 #_r_netsec
_r_netsec Twitter Update ! 博主: _r_netsec 推文: 想要来个IDOR吗?泄露了6400万份麦当劳工作申请 https://t.co/1h9oy6nCr2 链接: https://x.com/_r_netsec/status/1945464206612132319 2025-07-16 推特监控 #_r_netsec
zoomeye_team Twitter Update ! 博主: zoomeye_team 推文: ZoomEye漏洞赏金雷达现已上线——一款强大的新工具,用于发现和监控顶级漏洞赏金平台上的资产。🔗 https://t.co/EHa2vFeXFT 🎁 只要你在任何漏洞赏金平台上注册了账户,关注@zoomeye_team并向我们发送一条直接消息,附上你在漏洞赏金平台注册的截图,即可获得15天的专业会员资格! 链接: https://x.com/zoom 2025-07-16 推特监控 #zoomeye_team
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') 链接: https://github.com/advisories/GHSA-4xjq-p3mf-wp23 CVSS 评分: 9.3 参考链接: https://nvd.nist.gov/vuln/detail/CVE-2025-52714 https://patchstack.com/database/wordpress/theme/traveler/vulnerability/wordpr 2025-07-16 安全公告 #Github Advisory
Deserialization of Untrusted Data vulnerability in Codexpert, Inc CoSchool LMS allows Object 链接: https://github.com/advisories/GHSA-6v2j-8xmf-qhjc CVSS 评分: 9.8 参考链接: https://nvd.nist.gov/vuln/detail/CVE-2025-30973 https://patchstack.com/database/wordpress/plugin/coschool/vulnerability/wordp 2025-07-16 安全公告 #Github Advisory
Unrestricted Upload of File with Dangerous Type vulnerability in Adrian Tobey Groundhogg allows 链接: https://github.com/advisories/GHSA-hcq9-76gq-cf56 CVSS 评分: 9.1 参考链接: https://nvd.nist.gov/vuln/detail/CVE-2025-48300 https://patchstack.com/database/wordpress/plugin/groundhogg/vulnerability/wor 2025-07-16 安全公告 #Github Advisory
Incorrect Privilege Assignment vulnerability in Unity Business Technology Pty Ltd The E-Commerce 链接: https://github.com/advisories/GHSA-3q33-478h-mrcg CVSS 评分: 9.8 参考链接: https://nvd.nist.gov/vuln/detail/CVE-2025-52836 https://patchstack.com/database/wordpress/plugin/profitori/vulnerability/word 2025-07-16 安全公告 #Github Advisory
Printer Unauthorized Access Vulnerability 漏洞信息漏洞名称: Printer Unauthorized Access Vulnerability 漏洞类型: 未授权访问 漏洞等级: 中危 漏洞描述: 该漏洞涉及打印机未授权访问问题,允许攻击者通过9100端口直接与打印机通信,执行打印任务或窃取敏感打印文档。打印机作为企业网络中常见的设备,通常部署在内网中,用于日常文档打印。由于配置不当或缺乏适当的网络分段,这些打印机可能暴露在未受保护的环 2025-07-16 Github Poc #projectdiscovery/nuclei-templates:github issues #未授权访问