CVE-2023-24011 – Siemens Industrial Automation ROS 2 DDS PKCS7 Certificate Validation_chain Execution Bypass
The following table lists the changes that have been made to the CVE-2023-24011 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 09, 2025 Action […]
CVE-2023-24012 – “ThreatX DDS PKCS7 Signature Bypass”
The following table lists the changes that have been made to the CVE-2023-24012 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 09, 2025 Action […]
CVE-2023-24010 – BDEX DDS Certificate Signature Verification Vulnerability
The following table lists the changes that have been made to the CVE-2023-24010 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 09, 2025 Action […]
CVE-2024-43176 – IBM OpenPages Information Disclosure
The following table lists the changes that have been made to the CVE-2024-43176 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 09, 2025 Action […]
CVE-2022-22491 – IBM App Connect Enterprise Filesystems write vulnerability
IBM App Connect Enterprise Certified Container 7.1, 7.2, 8.0, 8.1, 8.2, 9.0, 9.1, 9.2, 10.0, 10.1, 11.0, 11.1, 11.2, 11.3, 11.4, 11.5, 11.6, 12.0, 12.1, 12.2, 12.3, and 12.4 operands running in Red Hat OpenShift do not restrict writing to the local filesystem, which may result in exhausting the available storage in a Pod, resulting in […]
‘Aanvallers maken actief misbruik van lek in GFI KerioControl firewall’
‘Aanvallers maken actief misbruik van lek in GFI KerioControl firewall’ Aanvallers maken actief misbruik van een kwetsbaarheid in de GFI KerioControl firewall, zo meldt securitybedrijf Censys op basis van data van securitybedrijf GreyNoise. De CRLF-kwetsbaarheid maakt cro … Read more Published Date: Jan 09, 2025 (1 hour, 45 minutes ago) Vulnerabilities has been mentioned in this article.
Ivanti Connect Secure zero-day exploited since mid-December (CVE-2025-0282)
Ivanti Connect Secure zero-day exploited since mid-December (CVE-2025-0282) The zero-day attacks leveraging the Ivanti Connect Secure (ICS) vulnerability (CVE-2025-0282) made public on Wednesday were first spotted in mid-December 2024, Mandiant researchers have shared. It’s s … Read more Published Date: Jan 09, 2025 (2 hours ago) Vulnerabilities has been mentioned in this article. CVE-2025-0283 CVE-2025-0282 CVE-2024-21887 […]
CVE-2025-0349 – Tenda AC6 Stack-Based Buffer Overflow Vulnerability
The following table lists the changes that have been made to the CVE-2025-0349 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 09, 2025 Action […]
CVE-2024-5769 – “WordPress MIMO Woocommerce Order Tracking Plugin Unauthorized Data Modification Vulnerability”
CVE ID : CVE-2024-5769 Published : Jan. 9, 2025, 11:15 a.m. | 32 minutes ago Description : The MIMO Woocommerce Order Tracking plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on several functions in all versions up to, and including, 1.0.2. This makes it possible for authenticated attackers, […]
CVE-2024-12848 – WordPress SKT Page Builder Arbitrary File Upload (Remote Code Execution)
CVE ID : CVE-2024-12848 Published : Jan. 9, 2025, 11:15 a.m. | 32 minutes ago Description : The SKT Page Builder plugin for WordPress is vulnerable to arbitrary file uploads due to a missing capability check on the ‘addLibraryByArchive’ function in all versions up to, and including, 4.6. This makes it possible for authenticated attackers, with […]