Aggregator
From Trust to Threat: Hijacked Discord Invites Used for Multi-Stage Malware Delivery
Key Takeaways Introduction Discord is a heavily used, widely trusted platform favored by gamers, communities, businesses and others who need to connect securely and quickly. But what if your trusted platform unknowingly becomes a trap? Check Point Research uncovered a flaw in Discord’s invitation system which allows attackers to hijack expired or deleted invite links and secretly redirect unsuspecting […]
The post From Trust to Threat: Hijacked Discord Invites Used for Multi-Stage Malware Delivery appeared first on Check Point Research.
LitCTF2025wp
CVE-2025-4278 | GitLab Community Edition/Enterprise Edition up to 18.0.1 cross site scripting (Issue 539198 / EUVD-2025-18169)
CVE-2025-1516 | GitLab Community Edition/Enterprise Edition up to 17.10.7/17.11.3/18.0.1 allocation of resources (Issue 520553 / EUVD-2025-18167)
EchoLeak Zero-Click AI Attack in Microsoft Copilot Exposes Company Data
Privilege Escalation in PAN-OS Web Interface Allows Admin Users to Perform Root Actions
Palo Alto Networks disclosed a medium-severity command injection vulnerability on June 11, 2025, designated as CVE-2025-4231, affecting the management web interface of its PAN-OS operating system. The vulnerability enables authenticated administrative users to escalate privileges and execute commands as the root user, potentially compromising the entire firewall system24. The security flaw carries a CVSS score […]
The post Privilege Escalation in PAN-OS Web Interface Allows Admin Users to Perform Root Actions appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
CVE-2025-6021 | xmlsoft libxml2 xmlBuildQName stack-based overflow (EUVD-2025-18175)
CVE-2005-4527 | Direct News 4.9 Search Module index.php setLang sql injection (EDB-26897 / XFDB-23727)
某系统Getshell
GitLab patches high severity account takeover, missing auth issues
ALPHA 威胁情报分析云平台 V8.3 重磅升级
Command Injection Flaw in Palo Alto PAN-OS Allows Root-Level Code Execution
A newly disclosed command injection vulnerability (CVE-2025-4230) in Palo Alto Networks PAN-OS software enables authenticated administrators to bypass restrictions and execute arbitrary commands with root privileges. With a CVSS v4.0 score of 5.7 (Medium severity), this flaw highlights risks in privileged access management for network security appliances. Vulnerability Overview and Attack Vector The vulnerability stems […]
The post Command Injection Flaw in Palo Alto PAN-OS Allows Root-Level Code Execution appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
INC
You must login to view this content