Aggregator
CVE-2025-43564 | Adobe ColdFusion up to 2021.19/2023.13/2025.1 authorization (apsb25-52)
CVE-2025-43563 | Adobe ColdFusion up to 2021.19/2023.13/2025.1 access control (apsb25-52)
CVE-2025-23233 | Intel Edge Orchestrator Software incorrect execution-assigned permissions (intel-sa-01239)
CVE-2025-22848 | Intel Edge Orchestrator Software unusual condition (intel-sa-01239)
CVE-2025-22446 | Intel Edge Orchestrator Software inadequate encryption (intel-sa-01239)
CVE-2025-20612 | Intel Edge Orchestrator Software incorrect execution-assigned permissions (intel-sa-01239)
CVE-2025-20062 | Intel PROSet Wireless WiFi Software 21.10/21.40 on Windows use after free (intel-sa-01270)
CVE-2025-20076 | Intel Edge Orchestrator access control (intel-sa-01239)
CVE-2025-3623 | Uncanny Owl Uncanny Automator Plugin up to 6.4.0.1 on WordPress automator_api_decode_message deserialization
CVE-2025-20046 | Intel PROSet Wireless WiFi Software 21.10/21.40 on Windows use after free (intel-sa-01270)
European Vulnerability Database goes live, but who benefits?
The European Union Agency for Cybersecurity (ENISA) has unveiled the European Vulnerability Database (EUVD), an initiative under the NIS2 Directive aimed at enhancing digital security across the EU. The database serves as a centralized repository offering aggregated and actionable information on cybersecurity vulnerabilities affecting ICT products and services. European Vulnerability Database: Features and accessibility The EUVD is designed to ensure a high level of interconnection of publicly available information from multiple sources, including Computer Security … More →
The post European Vulnerability Database goes live, but who benefits? appeared first on Help Net Security.
CVE-2012-4282 | Toocharger Trombinoscope 3.5 photo.php ID sql injection (EDB-37136 / XFDB-75427)
CVE-2025-33072 | Microsoft msagsfeedback.azurewebsites.net access control (EUVD-2025-14051)
CVE-2025-26677 | Microsoft Windows Remote Desktop Gateway resource consumption (EUVD-2025-14438)
CVE-2025-27488 | Microsoft Windows up to HLK Version 1809 Hardware Lab Kit hard-coded credentials (EUVD-2025-14437)
CVE-2025-29837 | Microsoft Windows up to Server 2025 Installer link following (EUVD-2025-14428)
JVN: a-blog cmsにおける複数の脆弱性
Ransomware spreads faster, not smarter
The fall of two of the most dominant ransomware syndicates, LockBit and AlphV, triggered a power vacuum across the cybercriminal landscape, acccording to a Black Kite survey. In their place, dozens of new actors emerged, many of them lacking the infrastructure, discipline, or credibility of their predecessors. The result was a surge in attack volume, a decline in coordination, and growing unpredictability in how, where, and why attacks occur. Ransomware landscape shift The number of … More →
The post Ransomware spreads faster, not smarter appeared first on Help Net Security.