Aggregator
Design a Resilient IT Infrastructure Strategy
2 months 1 week ago
The DEI Reset: A Smarter Way to Embed What Matters
2 months 1 week ago
Advanced Endpoint Threat Detection in 2025 Network Environments
2 months 1 week ago
As organizations grapple with an increasingly fragmented digital landscape in mid-2025, advanced endpoint threat detection has become the linchpin of enterprise cybersecurity. High-profile breaches, such as the April 2025 attack on the UK’s Legal Aid Agency and the Serviceaide database leak exposing Catholic Health patient data, underscore the inadequacy of legacy security frameworks. These incidents, […]
The post Advanced Endpoint Threat Detection in 2025 Network Environments appeared first on Cyber Security News.
CISO Advisory
CVE-2010-5052 | GetSimple CMS 2.01 val[] cross site scripting (EDB-34041 / BID-40374)
2 months 1 week ago
A vulnerability was found in GetSimple CMS 2.01. It has been rated as problematic. This issue affects some unknown processing. The manipulation of the argument val[] leads to cross site scripting.
The identification of this vulnerability is CVE-2010-5052. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-25510 | Tenda AC8 16.03.34.06 get_parentControl_list_Info buffer overflow (EUVD-2025-4478)
2 months 1 week ago
A vulnerability, which was classified as critical, was found in Tenda AC8 16.03.34.06. Affected is the function get_parentControl_list_Info. The manipulation leads to buffer overflow.
This vulnerability is traded as CVE-2025-25510. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2025-25767 | MRCMS 3.1.2 Request UserController.java privileges assignment (EUVD-2025-4477)
2 months 1 week ago
A vulnerability classified as critical was found in MRCMS 3.1.2. Affected by this vulnerability is an unknown functionality of the file /controller/UserController.java of the component Request Handler. The manipulation leads to incorrect privilege assignment.
This vulnerability is known as CVE-2025-25767. Access to the local network is required for this attack to succeed. There is no exploit available.
vuldb.com
CVE-2025-25768 | MRCMS 3.1.2 DispatcherServlet.java injection (EUVD-2025-4476)
2 months 1 week ago
A vulnerability was found in MRCMS 3.1.2. It has been classified as problematic. Affected is an unknown function of the file \servlet\DispatcherServlet.java. The manipulation leads to injection.
This vulnerability is traded as CVE-2025-25768. The attack needs to be approached within the local network. There is no exploit available.
vuldb.com
CVE-2024-54756 | GZDoom up to 4.13.1 ZScript memory corruption (EUVD-2025-4457)
2 months 1 week ago
A vulnerability was found in GZDoom up to 4.13.1. It has been classified as critical. Affected is an unknown function of the component ZScript. The manipulation leads to memory corruption.
This vulnerability is traded as CVE-2024-54756. Access to the local network is required for this attack to succeed. Furthermore, there is an exploit available.
vuldb.com
CVE-2024-54958 | Nagios XI 2024R1.2.2 Tools Page cross site scripting (EUVD-2025-4458)
2 months 1 week ago
A vulnerability was found in Nagios XI 2024R1.2.2. It has been rated as problematic. Affected by this issue is some unknown functionality of the component Tools Page. The manipulation leads to cross site scripting.
This vulnerability is handled as CVE-2024-54958. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-54959 | Nagios XI 2024R1.2.2 Favorites cross-site request forgery (EUVD-2025-4459)
2 months 1 week ago
A vulnerability classified as problematic was found in Nagios XI 2024R1.2.2. This vulnerability affects unknown code of the component Favorites. The manipulation leads to cross-site request forgery.
This vulnerability was named CVE-2024-54959. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2025-25960 | phpcmsv9 9.6.3 Menu Interface cross site scripting (EUVD-2025-4456)
2 months 1 week ago
A vulnerability has been found in phpcmsv9 9.6.3 and classified as problematic. This vulnerability affects unknown code of the component Menu Interface. The manipulation leads to cross site scripting.
This vulnerability was named CVE-2025-25960. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2008-1979 | ca Brightstor Arcserve Backup up to 12.0.5454.0 numeric error (ID 120233 / XFDB-41869)
2 months 1 week ago
A vulnerability was found in ca Brightstor Arcserve Backup up to 12.0.5454.0 and classified as problematic. Affected by this issue is some unknown functionality. The manipulation leads to numeric error.
This vulnerability is handled as CVE-2008-1979. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-2008 | Cerulean Studios Trillian 3.1.9.0 memory corruption (ID 115796 / XFDB-42015)
2 months 1 week ago
A vulnerability was found in Cerulean Studios Trillian 3.1.9.0. It has been rated as very critical. Affected by this issue is some unknown functionality. The manipulation leads to memory corruption.
This vulnerability is handled as CVE-2008-2008. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2008-1951 | Red Hat Enterprise Linux up to 3 access control (Nessus ID 67698 / ID 117296)
2 months 1 week ago
A vulnerability, which was classified as problematic, has been found in Red Hat Enterprise Linux up to 3. Affected by this issue is some unknown functionality. The manipulation leads to improper access controls.
This vulnerability is handled as CVE-2008-1951. An attack has to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2009-1719 | Sun JRE 1.5.0/1.5.0 11-b03 apple.laf.CColourUIResource first code injection (Nessus ID 39435 / ID 116440)
2 months 1 week ago
A vulnerability was found in Sun JRE 1.5.0/1.5.0 11-b03. It has been classified as critical. This affects the function apple.laf.CColourUIResource of the file apple.laf.CColourUIResource. The manipulation of the argument first leads to code injection.
This vulnerability is uniquely identified as CVE-2009-1719. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2008-2111 | Yahoo! Yahoo Assistant up to 3.6 ActiveX Control ynotifier.dll resource management (ID 115861 / XFDB-42233)
2 months 1 week ago
A vulnerability has been found in Yahoo! Yahoo Assistant up to 3.6 and classified as very critical. This vulnerability affects unknown code in the library ynotifier.dll of the component ActiveX Control. The manipulation leads to improper resource management.
This vulnerability was named CVE-2008-2111. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2008-2121 | Sun Solaris 8/9/10 TCP Implementation config (Nessus ID 15593 / ID 115799)
2 months 1 week ago
A vulnerability classified as critical was found in Sun Solaris 8/9/10. Affected by this vulnerability is an unknown functionality of the component TCP Implementation. The manipulation leads to configuration.
This vulnerability is known as CVE-2008-2121. The attack can be launched remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2008-2144 | Sun Solaris 8/9/10 memory corruption (Nessus ID 53353 / ID 115803)
2 months 1 week ago
A vulnerability classified as very critical was found in Sun Solaris 8/9/10. This vulnerability affects unknown code. The manipulation leads to memory corruption.
This vulnerability was named CVE-2008-2144. The attack can be initiated remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2008-2145 | Novell Client 4.91 memory corruption (ID 118391 / XFDB-42359)
2 months 1 week ago
A vulnerability, which was classified as critical, has been found in Novell Client 4.91. This issue affects some unknown processing. The manipulation leads to memory corruption.
The identification of this vulnerability is CVE-2008-2145. An attack has to be approached locally. There is no exploit available.
vuldb.com