-
CVE-2025-0224 – Provision-ISR SH Series/NGVR5-8200PX JavaScript File Information Disclosure Vulnerability
CVE ID : CVE-2025-0224 Published : Jan. 5, 2025, 5:15 p.m. | 1 hour, 58 minutes ago Description : A vulnerability was found in Provision-ISR SH-4050A-2, SH-4100A-2L(MM), SH-8100A-2L(MM), SH-16200A-2(1U), SH-16200A-5(1U) and NVR5-8200PX up to 20241220. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /server.js. The manipulation leads to…
-
CVE-2025-0223 – IObit Protected Folder Null Pointer Dereference Vulnerability
CVE ID : CVE-2025-0223 Published : Jan. 5, 2025, 4:15 p.m. | 2 hours, 58 minutes ago Description : A vulnerability was found in IObit Protected Folder up to 13.6.0.5. It has been classified as problematic. Affected is the function 0x8001E000/0x8001E00C/0x8001E004/0x8001E010 in the library IURegistryFilter.sys of the component IOCTL Handler. The manipulation leads to null pointer dereference.…
-
CVE-2025-0222 – IObit Protected Folder Null Pointer Dereference Vulnerability
CVE ID : CVE-2025-0222 Published : Jan. 5, 2025, 4:15 p.m. | 2 hours, 58 minutes ago Description : A vulnerability was found in IObit Protected Folder up to 13.6.0.5 and classified as problematic. This issue affects the function 0x8001E000/0x8001E004 in the library IUProcessFilter.sys of the component IOCTL Handler. The manipulation leads to null pointer dereference. An…
-
CVE-2025-0221 – IOBit Protected Folder Null Pointer Dereference Vulnerability
CVE ID : CVE-2025-0221 Published : Jan. 5, 2025, 3:15 p.m. | 3 hours, 58 minutes ago Description : A vulnerability has been found in IOBit Protected Folder up to 1.3.0 and classified as problematic. This vulnerability affects the function 0x22200c in the library pffilter.sys of the component IOCTL Handler. The manipulation leads to null pointer dereference.…
-
CVE-2024-13141 – “osuuu LightPicture Cross-Site Scripting”
CVE ID : CVE-2024-13141 Published : Jan. 5, 2025, 3:15 p.m. | 3 hours, 58 minutes ago Description : A vulnerability classified as problematic was found in osuuu LightPicture up to 1.2.2. This vulnerability affects unknown code of the file /api/upload of the component SVG File Upload Handler. The manipulation of the argument file leads to cross…
-
CVE-2025-0220 – Trimble SPS851 Ethernet Configuration Menu Cross-Site Scripting Vulnerability
CVE ID : CVE-2025-0220 Published : Jan. 5, 2025, 1:15 p.m. | 5 hours, 58 minutes ago Description : A vulnerability, which was classified as problematic, was found in Trimble SPS851 488.01. This affects an unknown part of the component Ethernet Configuration Menu. The manipulation of the argument Hostname leads to cross site scripting. It is possible…
-
CVE-2024-13140 – Emlog Pro Cross-Site Scripting Vulnerability in Cover Upload Handler
CVE ID : CVE-2024-13140 Published : Jan. 5, 2025, 12:15 p.m. | 6 hours, 58 minutes ago Description : A vulnerability classified as problematic has been found in Emlog Pro up to 2.4.3. Affected is an unknown function of the file /admin/article.php?action=upload_cover of the component Cover Upload Handler. The manipulation of the argument image leads to cross…
-
TheCyberThrone Security Weekly Review – January 04, 2025
TheCyberThrone Security Weekly Review – January 04, 2025 Welcome to TheCyberThrone cybersecurity week in review will be posted covering the important security happenings. This review is for the week ending Saturday, January 04, 2025.CVE-2024-56512 impacts A … Read more Published Date: Jan 05, 2025 (6 hours, 26 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2024-11944…
-
Inside Bitdefender Labs’ Investigation of a Malicious Facebook Ad Campaign Targeting Bitwarden Users
Throughout 2024, Bitdefender Labs has been closely monitoring a series of malvertising campaigns that exploit popular platforms to spread malware. These campaigns use fake advertisements to lure users into installing malicious software disguised as legitimate apps or updates. One of the more recent campaigns Bitdefender Labs uncovered involves a fake Bitwarden extension advertised on Meta’s…
-
Unmasking the SYS01 Infostealer Threat: Bitdefender Labs Tracks Global Malvertising Campaign Targeting Meta Business Pages
In a world ran by advertising, businesses and organizations are not the only ones using this powerful tool. Cybercriminals have a knack for exploiting the engine that powers online platforms by corrupting the vast reach of advertising to distribute malware en masse. While legitimate businesses rely on ads to reach new audiences, hackers exploit these…