Critical RCE Flaw in GFI KerioControl Allows Remote Code Execution via CRLF Injection
Critical RCE Flaw in GFI KerioControl Allows Remote Code Execution via CRLF Injection Vulnerability / Threat Intelligence Threat actors are attempting to take advantage of a recently disclosed security flaw impacting GFI KerioControl firewalls that, if successfully exploited, could all … Read more Published Date: Jan 09, 2025 (3 hours, 11 minutes ago) Vulnerabilities has been mentioned […]
CVE-2025-0345 – Leiyuxi Cy-Fast SQL Injection
The following table lists the changes that have been made to the CVE-2025-0345 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 09, 2025 Action […]
CVE-2025-0346 – Code-projects Content Management System File Upload Vulnerability (Remote Unrestricted Upload)
The following table lists the changes that have been made to the CVE-2025-0346 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 09, 2025 Action […]
CVE-2024-13153 – Elementor for WordPress Stored Cross-Site Scripting Vulnerability
CVE ID : CVE-2024-13153 Published : Jan. 9, 2025, 9:15 a.m. | 32 minutes ago Description : The Unlimited Elements For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via multiple widgets in all versions up to, and including, 1.5.135 due to insufficient input sanitization and output escaping on user supplied attributes. This makes […]
CVE-2024-12802 – SonicWALL SSL-VPN Active Directory MFA Bypass
The following table lists the changes that have been made to the CVE-2024-12802 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 09, 2025 Action […]
Ivanti waarschuwt voor actief aangevallen lek in Connect Secure VPN
Ivanti waarschuwt voor actief aangevallen lek in Connect Secure VPN Softwarebedrijf Ivanti waarschuwt organisaties, net als een jaar geleden, voor een actief aangevallen kwetsbaarheid in Connect Secure VPN en roept op de nu beschikbaar gestelde update te installeren. … Read more Published Date: Jan 09, 2025 (1 hour, 15 minutes ago) Vulnerabilities has been mentioned in this […]
CVE-2025-0344 – Leiyuxi Cy-Fast SQL Injection Vulnerability
The following table lists the changes that have been made to the CVE-2025-0344 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 09, 2025 Action […]
CVE-2025-0342 – CampCodes Computer Laboratory Management System Cross-Site Scripting Vuln
The following table lists the changes that have been made to the CVE-2025-0342 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 09, 2025 Action […]
CVE-2025-0341 – CampCodes Computer Laboratory Management System File Upload Vulnerability
The following table lists the changes that have been made to the CVE-2025-0341 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 09, 2025 Action […]
CVE-2024-43663 – “Iocharger AC Model Charger CGI Buffer Overflow Vulnerability”
There are many buffer overflow vulnerabilities present in several CGI binaries of the charging station.This issue affects Iocharger firmware for AC model chargers beforeversion 24120701. Likelihood: High – Given the prevalence of these buffer overflows, and the clear error message of the web server, an attacker is very likely to be able to find these […]