-
CVE-2024-9138 and CVE-2024-9140 (CVSS 9.8): Moxa Calls for Immediate Security Action
CVE-2024-9138 and CVE-2024-9140 (CVSS 9.8): Moxa Calls for Immediate Security Action Moxa, a leading provider of industrial networking and communication solutions, has issued a security advisory warning of two critical vulnerabilities affecting their cellular routers, secure routers, … Read more Published Date: Jan 06, 2025 (12 hours, 23 minutes ago) Vulnerabilities has been mentioned in this article.…
-
CVE-2024-43405 Vulnerability in Nuclei
CVE-2024-43405 Vulnerability in Nuclei CVE-2024-43405 is a high severity vulnerability identified in Nuclei, a widely used open-source vulnerability scanner. This vulnerability, affecting versions 3.0.0 to 3.3.1, allows attackers to bypass … Read more Published Date: Jan 06, 2025 (12 hours, 19 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2024-12108 CVE-2024-11944 CVE-2024-12987 CVE-2024-49113 CVE-2024-43405 Go to…
-
Hackers Exploit Social Security Administration Branding to Deliver ConnectWise RAT
Hackers Exploit Social Security Administration Branding to Deliver ConnectWise RAT In a concerning escalation of phishing tactics, hackers are spoofing the United States Social Security Administration (SSA) to distribute the ConnectWise Remote Access Tool (RAT), a campaign uncovered … Read more Published Date: Jan 06, 2025 (12 hours, 51 minutes ago) Vulnerabilities has been mentioned in this…
-
GoCD Patches Critical Vulnerability Allowing User Privilege Escalation
GoCD Patches Critical Vulnerability Allowing User Privilege Escalation Open-source CI/CD platform GoCD has released an urgent security update to address a critical vulnerability that could allow malicious authenticated users to escalate their privileges to administrator … Read more Published Date: Jan 06, 2025 (12 hours, 41 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2024-10957 Go…
-
CVE-2025-0225 – “Tsinghua Unigroup Electronic Archives System File Path Traversal Vulnerability”
CVE ID : CVE-2025-0225 Published : Jan. 5, 2025, 5:15 p.m. | 1 hour, 58 minutes ago Description : A vulnerability classified as problematic was found in Tsinghua Unigroup Electronic Archives System 3.2.210802(62532). Affected by this vulnerability is an unknown functionality of the file /setting/ClassFy/exampleDownload.html. The manipulation of the argument name leads to path traversal: ‘/../filedir’. The…
-
CVE-2025-0226 – Tsinghua Unigroup Electronic Archives System File Download Path Information Disclosure
CVE ID : CVE-2025-0226 Published : Jan. 5, 2025, 6:15 p.m. | 58 minutes ago Description : A vulnerability, which was classified as problematic, has been found in Tsinghua Unigroup Electronic Archives System 3.2.210802(62532). Affected by this issue is the function download of the file /collect/PortV4/downLoad.html. The manipulation of the argument path leads to information disclosure.…
-
CVE-2025-0227 – Tsinghua Unigroup Electronic Archives System File Path Information Disclosure Vulnerability
CVE ID : CVE-2025-0227 Published : Jan. 5, 2025, 6:15 p.m. | 58 minutes ago Description : A vulnerability, which was classified as problematic, was found in Tsinghua Unigroup Electronic Archives System 3.2.210802(62532). This affects an unknown part of the file /Logs/Annals/downLoad.html. The manipulation of the argument path leads to information disclosure. It is possible to…
-
CVE-2025-0223 – IObit Protected Folder Null Pointer Dereference Vulnerability
CVE ID : CVE-2025-0223 Published : Jan. 5, 2025, 4:15 p.m. | 2 hours, 58 minutes ago Description : A vulnerability was found in IObit Protected Folder up to 13.6.0.5. It has been classified as problematic. Affected is the function 0x8001E000/0x8001E00C/0x8001E004/0x8001E010 in the library IURegistryFilter.sys of the component IOCTL Handler. The manipulation leads to null pointer dereference.…
-
CVE-2025-0224 – Provision-ISR SH Series/NGVR5-8200PX JavaScript File Information Disclosure Vulnerability
CVE ID : CVE-2025-0224 Published : Jan. 5, 2025, 5:15 p.m. | 1 hour, 58 minutes ago Description : A vulnerability was found in Provision-ISR SH-4050A-2, SH-4100A-2L(MM), SH-8100A-2L(MM), SH-16200A-2(1U), SH-16200A-5(1U) and NVR5-8200PX up to 20241220. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /server.js. The manipulation leads to…
-
CVE-2025-0221 – IOBit Protected Folder Null Pointer Dereference Vulnerability
CVE ID : CVE-2025-0221 Published : Jan. 5, 2025, 3:15 p.m. | 3 hours, 58 minutes ago Description : A vulnerability has been found in IOBit Protected Folder up to 1.3.0 and classified as problematic. This vulnerability affects the function 0x22200c in the library pffilter.sys of the component IOCTL Handler. The manipulation leads to null pointer dereference.…