Aggregator
CVE-2010-5025 | CuteSITE CMS 1.2.3/1.5.0 fld_path cross site scripting (EDB-34097 / BID-40612)
9 months 2 weeks ago
A vulnerability classified as problematic was found in CuteSITE CMS 1.2.3/1.5.0. This vulnerability affects unknown code. The manipulation of the argument fld_path leads to cross site scripting.
This vulnerability was named CVE-2010-5025. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
Beyond the FOMO: Expanding Horizons for Cyber Threat Intelligence Analysts
9 months 2 weeks ago
SANS Digital Forensics and Incident Response
CVE-1999-0877 | Microsoft Internet Explorer 4.01/5.0 IFRAME ExecCommand information disclosure (MS99-042 / EDB-19539)
9 months 2 weeks ago
A vulnerability was found in Microsoft Internet Explorer 4.01/5.0 and classified as problematic. This issue affects the function ExecCommand of the component IFRAME Handler. The manipulation leads to information disclosure.
The identification of this vulnerability is CVE-1999-0877. The attack may be initiated remotely. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
miyako is Claiming to Sell Access to an Unidentified $29.5 Billion Pharmaceutical Company
9 months 2 weeks ago
miyako is Claiming to Sell Access to an Unidentified $29.5 Billion Pharmaceutical Company
Dark Web Informer - Cyber Threat Intelligence
Apple Lets Stalkers Find YOU — ‘nRootTag’ Team Breaks AirTag Crypto
9 months 2 weeks ago
Dumb Design + Crud Code = Privacy Panic: It’s been SEVEN MONTHS, but Tim’s crew is yet to fix the bugs.
The post Apple Lets Stalkers Find YOU — ‘nRootTag’ Team Breaks AirTag Crypto appeared first on Security Boulevard.
Richi Jennings
CVE-2025-21184 | Microsoft Windows up to Server 2025 Core Messaging heap-based overflow
9 months 2 weeks ago
A vulnerability was found in Microsoft Windows. It has been classified as critical. This affects an unknown part of the component Core Messaging. The manipulation leads to heap-based buffer overflow.
This vulnerability is uniquely identified as CVE-2025-21184. Local access is required to approach this attack. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2025-21206 | Microsoft Visual Studio Installer uncontrolled search path (Nessus ID 216241)
9 months 2 weeks ago
A vulnerability has been found in Microsoft Visual Studio and classified as critical. This vulnerability affects unknown code of the component Installer. The manipulation leads to uncontrolled search path.
This vulnerability was named CVE-2025-21206. It is possible to launch the attack on the local host. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2025-21208 | Microsoft Windows Server 2008 R2 SP1 up to Server 2022 23H2 Routing/Remote Access Service heap-based overflow (Nessus ID 216140)
9 months 2 weeks ago
A vulnerability was found in Microsoft Windows and classified as critical. This issue affects some unknown processing of the component Routing/Remote Access Service. The manipulation leads to heap-based buffer overflow.
The identification of this vulnerability is CVE-2025-21208. The attack may be initiated remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2025-21212 | Microsoft Windows up to Server 2025 Internet Connection Sharing out-of-bounds
9 months 2 weeks ago
A vulnerability was found in Microsoft Windows. It has been classified as critical. Affected is an unknown function of the component Internet Connection Sharing. The manipulation leads to out-of-bounds read.
This vulnerability is traded as CVE-2025-21212. The attack can only be done within the local network. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2025-21216 | Microsoft Windows up to Server 2025 Internet Connection Sharing out-of-bounds
9 months 2 weeks ago
A vulnerability was found in Microsoft Windows. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component Internet Connection Sharing. The manipulation leads to out-of-bounds read.
This vulnerability is known as CVE-2025-21216. The attack can only be initiated within the local network. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2025-21254 | Microsoft Windows up to Server 2025 Internet Connection Sharing out-of-bounds
9 months 2 weeks ago
A vulnerability was found in Microsoft Windows. It has been rated as critical. Affected by this issue is some unknown functionality of the component Internet Connection Sharing. The manipulation leads to out-of-bounds read.
This vulnerability is handled as CVE-2025-21254. The attack needs to be done within the local network. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2025-21259 | Microsoft Outlook on Android clickjacking
9 months 2 weeks ago
A vulnerability classified as problematic has been found in Microsoft Outlook on Android. This affects an unknown part. The manipulation leads to clickjacking.
This vulnerability is uniquely identified as CVE-2025-21259. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2025-21322 | Microsoft PC Manager link following
9 months 2 weeks ago
A vulnerability classified as critical was found in Microsoft PC Manager. This vulnerability affects unknown code. The manipulation leads to link following.
This vulnerability was named CVE-2025-21322. The attack needs to be approached locally. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2025-21337 | Microsoft Windows up to Server 2025 NTFS access control
9 months 2 weeks ago
A vulnerability, which was classified as problematic, has been found in Microsoft Windows. This issue affects some unknown processing of the component NTFS. The manipulation leads to improper access controls.
The identification of this vulnerability is CVE-2025-21337. An attack has to be approached locally. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2025-21347 | Microsoft Windows up to Server 2025 Deployment Services link following
9 months 2 weeks ago
A vulnerability, which was classified as problematic, was found in Microsoft Windows. Affected is an unknown function of the component Deployment Services. The manipulation leads to link following.
This vulnerability is traded as CVE-2025-21347. Local access is required to approach this attack. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2025-21349 | Microsoft Windows up to Server 2025 Remote Desktop Configuration Service improper authentication
9 months 2 weeks ago
A vulnerability has been found in Microsoft Windows and classified as problematic. Affected by this vulnerability is an unknown functionality of the component Remote Desktop Configuration Service. The manipulation leads to improper authentication.
This vulnerability is known as CVE-2025-21349. The attack can be launched remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2025-21350 | Microsoft Windows up to Server 2025 Kerberos denial of service
9 months 2 weeks ago
A vulnerability was found in Microsoft Windows and classified as problematic. Affected by this issue is some unknown functionality of the component Kerberos. The manipulation leads to denial of service.
This vulnerability is handled as CVE-2025-21350. The attack may be launched remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
Тысяча добровольцев и ни одной ошибки: как Google учила часы спасать жизни
9 months 2 weeks ago
Новое ПО определяет остановку пульса с точностью до 99,99%. Но есть нюансы…
CVE-2013-6042 | Softaculous Webuzo up to 2.1.3 user cross site scripting (EDB-31982 / BID-63464)
9 months 2 weeks ago
A vulnerability classified as problematic was found in Softaculous Webuzo. This vulnerability affects unknown code. The manipulation of the argument user leads to cross site scripting.
This vulnerability was named CVE-2013-6042. The attack can be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com