CVE-2023-37936 (CVSS 9.6): Urgent Patch Needed for FortiSwitch Vulnerability
CVE-2023-37936 (CVSS 9.6): Urgent Patch Needed for FortiSwitch Vulnerability Fortinet has issued patches to address a critical security vulnerability (CVE-2023-37936, CVSS 9.6) affecting its FortiSwitch product line. The vulnerability could allow remote, unauthenticated attack … Read more Published Date: Jan 15, 2025 (4 hours, 13 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2023-37936 CVE-2023-34992
CVE-2024-55577 – Linux Ratfor Buffer Overflow Vulnerability
The following table lists the changes that have been made to the CVE-2024-55577 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 15, 2025 Action […]
CVE-2024-13394 – ViewMedica WordPress Stored XSS
CVE ID : CVE-2024-13394 Published : Jan. 15, 2025, 6:15 a.m. | 25 minutes ago Description : The ViewMedica 9 plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin’s ‘viewmedica’ shortcode in all versions up to, and including, 1.4.15 due to insufficient input sanitization and output escaping on user supplied attributes. This makes […]
CVE-2025-23061 – Mongoose Search Injection Vulnerability
The following table lists the changes that have been made to the CVE-2025-23061 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 15, 2025 Action […]
CVE-2025-22394 – Dell Display Manager TOCTOU Race Condition Vulnerability
The following table lists the changes that have been made to the CVE-2025-22394 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 15, 2025 Action […]
CVE-2025-21101 – Dell Display Manager File Deletion Race Condition Vulnerability
The following table lists the changes that have been made to the CVE-2025-21101 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 15, 2025 Action […]
3 Actively Exploited Zero-Day Flaws Patched in Microsoft’s Latest Security Update
3 Actively Exploited Zero-Day Flaws Patched in Microsoft’s Latest Security Update Microsoft kicked off 2025 with a new set of patches for a total of 161 security vulnerabilities across its software portfolio, including three zero-days that have been actively exploited in attacks. O … Read more Published Date: Jan 15, 2025 (1 hour, 56 minutes ago) Vulnerabilities […]
Critical SimpleHelp Flaws Allow File Theft, Privilege Escalation, and RCE Attacks
Critical SimpleHelp Flaws Allow File Theft, Privilege Escalation, and RCE Attacks Vulnerability / Server Security Cybersecurity researchers have disclosed multiple security flaws in SimpleHelp remote access software that could lead to information disclosure, privilege escalation, a … Read more Published Date: Jan 15, 2025 (2 hours, 1 minute ago) Vulnerabilities has been mentioned in this article.
CVE-2025-23013 – Yubico pam-u2f Local Privilege Escalation Authentication Bypass
The following table lists the changes that have been made to the CVE-2025-23013 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 15, 2025 Action […]
CVE-2024-13334 – WordPress Car Demon Reflected Cross-Site Scripting
CVE ID : CVE-2024-13334 Published : Jan. 15, 2025, 4:15 a.m. | 29 minutes ago Description : The Car Demon plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘search_condition’ parameter in all versions up to, and including, 1.8.1 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers […]