Microsoft is working to resolve a known issue that causes its Defender for Endpoint enterprise endpoint security platform to incorrectly tag SQL Server software as end-of-life. [...]
A vulnerability, which was classified as critical, was found in Juniper Junos OS Evolved. Impacted is an unknown function of the file /usr/bin/cfmman. Such manipulation leads to resource consumption.
This vulnerability is listed as CVE-2025-52961. The attack must be carried out from within the local network. There is no available exploit.
You should upgrade the affected component.
A vulnerability was found in Juniper Junos Space and classified as problematic. The impacted element is an unknown function of the component httpd. Executing manipulation can lead to resource consumption.
This vulnerability is registered as CVE-2025-59975. It is possible to launch the attack remotely. No exploit is available.
It is suggested to upgrade the affected component.
A vulnerability labeled as problematic has been found in Juniper Junos Space up to 24.1R2. This affects an unknown part of the component Web Interface. Executing manipulation can lead to files or directories accessible.
This vulnerability is handled as CVE-2025-59976. The attack can be executed remotely. There is not any exploit available.
The affected component should be upgraded.
A vulnerability described as critical has been identified in Juniper Junos OS up to 21.4R2/22.2R3-S2. This issue affects some unknown processing of the file /etc/config/-defaults[-flex].conf. The manipulation results in origin validation error.
This vulnerability was named CVE-2025-59957. An attack on the physical device is feasible. There is no available exploit.
Upgrading the affected component is recommended.
A vulnerability was found in Juniper Junos Space Security Director and Junos OS. It has been classified as critical. This affects an unknown function of the component Web Interface. The manipulation leads to missing authorization.
This vulnerability is documented as CVE-2025-59968. The attack can be initiated remotely. There is not any exploit available.
Upgrading the affected component is recommended.
A vulnerability, which was classified as critical, has been found in Juniper Security Director Policy Enforcer. This issue affects some unknown processing of the component vSRX Image Handler. This manipulation causes missing authentication.
This vulnerability is tracked as CVE-2025-11198. The attack is possible to be carried out remotely. No exploit exists.
It is advisable to upgrade the affected component.
A vulnerability described as critical has been identified in YiFang CMS up to 2.0.2. The impacted element is the function webUploader of the file app/app/controller/File.php of the component Backend. Executing manipulation of the argument uploadpath can lead to unrestricted upload.
This vulnerability is tracked as CVE-2025-11136. The attack can be launched remotely. Moreover, an exploit is present.
A vulnerability marked as critical has been reported in pmTicket Project-Management-Software up to 2ef379da2075f4761a2c9029cf91d073474e7486. The affected element is the function loadLanguage of the file classes/class.database.php of the component Cookie Handler. Performing manipulation of the argument user_id results in deserialization.
This vulnerability is identified as CVE-2025-11135. The attack can be initiated remotely. Additionally, an exploit exists.
Continious delivery with rolling releases is used by this product. Therefore, no version details of affected nor updated releases are available.
The vendor was contacted early about this disclosure but did not respond in any way.
A vulnerability marked as problematic has been reported in Juniper Junos OS Evolved. This vulnerability affects unknown code of the component PFE Management Daemon. The manipulation leads to null pointer dereference.
This vulnerability is uniquely identified as CVE-2025-59967. The attack can only be initiated within the local network. No exploit exists.
It is suggested to upgrade the affected component.
A vulnerability classified as critical was found in Juniper Junos OS and Junos OS Evolved. Affected by this issue is some unknown functionality of the component RADIUS Client. The manipulation results in not using password aging.
This vulnerability was named CVE-2025-60010. The attack may be performed from remote. There is no available exploit.
Upgrading the affected component is advised.
Zimperium's zLabs warns of ClayRat, a fast-spreading Android spyware targeting Russia. It hides in fake apps like TikTok and steals texts, calls records, and camera photos.
A vulnerability was found in Das Parking Management System 停车场管理系统 6.2.0. It has been declared as critical. This affects an unknown function of the file /IntraFieldVehicle/Search of the component API. Such manipulation of the argument Value leads to sql injection.
This vulnerability is traded as CVE-2025-6116. The attack may be launched remotely. Furthermore, there is an exploit available.