Aggregator
CVE-2006-7222 | Guliverkli Media Player Classic 6.4.9.0 flicsource.cpp cflicstream::_deltachunk memory corruption (EDB-30529 / XFDB-36242)
2 months 3 weeks ago
A vulnerability, which was classified as critical, was found in Guliverkli Media Player Classic 6.4.9.0. Affected is the function cflicstream::_deltachunk of the file flicsource.cpp of the component Media Player. The manipulation leads to memory corruption.
This vulnerability is traded as CVE-2006-7222. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-27645 | Vasion Print Virtual Appliance Host Installation permission
2 months 3 weeks ago
A vulnerability was found in Vasion Print Virtual Appliance Host. It has been classified as critical. Affected is an unknown function of the component Installation Handler. The manipulation leads to permission issues.
This vulnerability is traded as CVE-2025-27645. The attack can only be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-27649 | Vasion Print Virtual Appliance Host access control
2 months 3 weeks ago
A vulnerability was found in Vasion Print Virtual Appliance Host and classified as critical. Affected by this issue is some unknown functionality. The manipulation leads to improper access controls.
This vulnerability is handled as CVE-2025-27649. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-27642 | Vasion Print Virtual Appliance Host up to 22.0.932 Driver Package improper authentication
2 months 3 weeks ago
A vulnerability was found in Vasion Print Virtual Appliance Host up to 22.0.932. It has been declared as critical. This vulnerability affects unknown code of the component Driver Package Handler. The manipulation leads to improper authentication.
This vulnerability was named CVE-2025-27642. Access to the local network is required for this attack. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-27641 | Vasion Print Virtual Appliance Host API improper authentication
2 months 3 weeks ago
A vulnerability classified as critical has been found in Vasion Print Virtual Appliance Host. Affected is an unknown function of the component API. The manipulation leads to improper authentication.
This vulnerability is traded as CVE-2025-27641. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-27647 | Vasion Print Virtual Appliance Host improper authentication
2 months 3 weeks ago
A vulnerability classified as critical was found in Vasion Print Virtual Appliance Host. Affected by this vulnerability is an unknown functionality. The manipulation leads to improper authentication.
This vulnerability is known as CVE-2025-27647. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-27646 | Vasion Print Virtual Appliance Host User Account access control
2 months 3 weeks ago
A vulnerability, which was classified as problematic, has been found in Vasion Print Virtual Appliance Host. Affected by this issue is some unknown functionality of the component User Account Handler. The manipulation leads to improper access controls.
This vulnerability is handled as CVE-2025-27646. The attack can only be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-27648 | Vasion Print Virtual Appliance Host up to 22.0.912 Cross Tenant Password information disclosure
2 months 3 weeks ago
A vulnerability, which was classified as problematic, was found in Vasion Print Virtual Appliance Host up to 22.0.912. This affects an unknown part of the component Cross Tenant Password Handler. The manipulation leads to information disclosure.
This vulnerability is uniquely identified as CVE-2025-27648. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-27650 | Vasion Print Virtual Appliance Host Private Key insufficiently protected credentials
2 months 3 weeks ago
A vulnerability has been found in Vasion Print Virtual Appliance Host and classified as problematic. This vulnerability affects unknown code of the component Private Key Handler. The manipulation leads to insufficiently protected credentials.
This vulnerability was named CVE-2025-27650. The attack needs to be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-27644 | Vasion Print Virtual Appliance Host privileges management
2 months 3 weeks ago
A vulnerability was found in Vasion Print Virtual Appliance Host. It has been declared as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to improper privilege management.
This vulnerability is known as CVE-2025-27644. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-27651 | Vasion Print Virtual Appliance Host server-side request forgery
2 months 3 weeks ago
A vulnerability was found in Vasion Print Virtual Appliance Host. It has been rated as critical. Affected by this issue is some unknown functionality. The manipulation leads to server-side request forgery.
This vulnerability is handled as CVE-2025-27651. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-27653 | Vasion Print Virtual Appliance Host cross site scripting
2 months 3 weeks ago
A vulnerability classified as problematic has been found in Vasion Print Virtual Appliance Host. This affects an unknown part. The manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2025-27653. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-27652 | Vasion Print Virtual Appliance Host up to 22.0.861 server-side request forgery
2 months 3 weeks ago
A vulnerability classified as critical was found in Vasion Print Virtual Appliance Host up to 22.0.861. This vulnerability affects unknown code. The manipulation leads to server-side request forgery.
This vulnerability was named CVE-2025-27652. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
ReliaQuest Closes $500M Round to Boost Agentic AI Security
2 months 3 weeks ago
Security Operations Firm Gets $3.4B Valuation, Expands AI Threat Detection Platform
Security operations firm ReliaQuest announced more than $500 million in funding led by EQT, valuing the company at $3.4 billion. The investment will expand its GreyMatter platform and advance Agentic AI to speed threat response and reduce operational burdens on security teams.
Security operations firm ReliaQuest announced more than $500 million in funding led by EQT, valuing the company at $3.4 billion. The investment will expand its GreyMatter platform and advance Agentic AI to speed threat response and reduce operational burdens on security teams.
UK Government Previews Cybersecurity Legislation
2 months 3 weeks ago
Government Says Managed Service Providers Need More Regulation
The British government pledged to introduce stricter rules surrounding incident reporting and supply chain vulnerability patching through legislation it previewed in July 2024. The proposed Cyber Security and Resilience Bill will bring under its scope managed service providers.
The British government pledged to introduce stricter rules surrounding incident reporting and supply chain vulnerability patching through legislation it previewed in July 2024. The proposed Cyber Security and Resilience Bill will bring under its scope managed service providers.
Experts: Staff Cuts to FDA Could Hamper Device Cyber Efforts
2 months 3 weeks ago
Industry Experts Testify Before Congressional Committee Examining Medical Devices
Massive workforce cuts at the Food and Drug Administration could hinder the agency's critical work involving medical device cybersecurity, putting patient safety at risk and stiffing innovation, said some experts testifying during a Congressional hearing on Tuesday.
Massive workforce cuts at the Food and Drug Administration could hinder the agency's critical work involving medical device cybersecurity, putting patient safety at risk and stiffing innovation, said some experts testifying during a Congressional hearing on Tuesday.
Trae помогает писать код и... отправляет его конкурентам? Расследование от Unit 221B
2 months 3 weeks ago
Каждый файл, который ты ещё не сохранил, уже давно гуляет по серверам, и, возможно, его даже лайкнули.
CodeQL规则编写之常用类与特殊情况
2 months 3 weeks ago
关于编写任何Codeql规则时经常会用到的一些类和谓词,以及数据流可能会出现的特殊情况的分析与解决
FIN7 Deploys Anubis Backdoor to Hijack Windows Systems via Compromised SharePoint Sites
2 months 3 weeks ago
The financially motivated threat actor known as FIN7 has been linked to a Python-based backdoor called Anubis (not to be confused with an Android banking trojan of the same name) that can grant them remote access to compromised Windows systems.
"This malware allows attackers to execute remote shell commands and other system operations, giving them full control over an infected machine," Swiss
The Hacker News