Aggregator
CVE-2025-34197 | Vasion Print Virtual Appliance Host/Print Application hard-coded credentials (EUVD-2025-30266 / WID-SEC-2025-2103)
CVE-2025-34193 | Vasion Print Virtual Appliance Host/Print Application Driver exceptional condition (EUVD-2025-30261 / WID-SEC-2025-2103)
CVE-2025-34189 | Vasion Print Virtual Appliance Host/Print Application Inter-Process Communication permission assignment (EUVD-2025-30272 / WID-SEC-2025-2103)
CVE-2025-34188 | Vasion Print Virtual Appliance Host/Print Application log file (EUVD-2025-30269 / WID-SEC-2025-2103)
CVE-2025-10123 | D-Link DIR-823X up to 250416 set_static_leases sub_415028 Hostname command injection (EUVD-2025-27219)
The fight to lock down drones and their supply chains
Drones have already shown their impact in military operations, and their influence is spreading across the agricultural and industrial sectors. Given their technological capabilities, we need to be aware of the risks they bring. Drones as a new attack vector Companies like Amazon are already using drones for product delivery, which means these fleets in the air face potential risks. Drones can disrupt operations in key areas like power plants and transportation systems. A single … More →
The post The fight to lock down drones and their supply chains appeared first on Help Net Security.
Linux Kernel ksmbd Vulnerability Allows Remote Attackers to Execute Arbitrary Code
A severe vulnerability in the Linux kernel’s ksmbd SMB server implementation has been disclosed, potentially allowing authenticated remote attackers to execute arbitrary code on affected systems. The vulnerability, tracked as CVE-2025-38561 and assigned a CVSS score of 8.5, represents a significant security risk for Linux systems utilizing the kernel-based SMB server functionality. The flaw disclosed […]
The post Linux Kernel ksmbd Vulnerability Allows Remote Attackers to Execute Arbitrary Code appeared first on Cyber Security News.
CVE-2024-50390 | QNAP Systems QuRouter 2.4.5.032 QHora insecure default initialization of resource (qsa-25-01)
CVE-2024-53700 | QNAP Systems QuRouter 2.4.5.032 QHora command injection (qsa-25-07)
CVE-2025-49221 | Mattermost Confluence Plugin up to 1.4.x API Call authorization
CVE-2018-25115 | D-Link DIR-110/DIR-412/DIR-600/DIR-615/DIR-645/DIR-815 1.03 service.cgi Event os command injection (EDB-43496)
CVE-2025-29887 | QNAP QuRouter 2.5.1 command injection (qsa-25-25)
CVE-2025-58159 | LabRedesCefetRJ WeGIA up to 3.4.10 unrestricted upload (GHSA-wj2c-237g-cgqp)
CVE-2025-58156 | nofusscomputing centurion_erp up to 1.20.x improper authorization (GHSA-x75j-cm35-5qcg)
CVE-2024-13087 | QNAP QuRouter 2.4.3.103/2.4.4.106/2.4.5.032 QHora os command injection (qsa-25-15 / EUVD-2024-54651)
CVE-2024-13088 | QNAP QuRouter 2.4.3.103/2.4.4.106/2.4.5.032/2.4.6.028 QHora improper authentication (qsa-25-15 / EUVD-2024-54652)
CVE-2024-57843 | Linux Kernel up to 6.6.65/6.12.4 virtnet_rq_alloc net.core.high_order_alloc_disable buffer overflow (Nessus ID 231852)
Miga New Threat Actor
You must login to view this content
Radiant New Threat Actor
You must login to view this content