CVE-2024-12226 – Octopus Kubernetes Worker Text-based Data Exposure
The following table lists the changes that have been made to the CVE-2024-12226 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 16, 2025 Action […]
Python-Based Malware Powers RansomHub Ransomware to Exploit Network Flaws
Python-Based Malware Powers RansomHub Ransomware to Exploit Network Flaws Endpoint Security / Ransomware Cybersecurity researchers have detailed an attack that involved a threat actor utilizing a Python-based backdoor to maintain persistent access to compromised endpoints a … Read more Published Date: Jan 16, 2025 (2 hours, 1 minute ago) Vulnerabilities has been mentioned in this article. CVE-2024-44243 […]
Researcher Uncovers Critical Flaws in Multiple Versions of Ivanti Endpoint Manager
Researcher Uncovers Critical Flaws in Multiple Versions of Ivanti Endpoint Manager Vulnerability / Endpoint Security Ivanti has rolled out security updates to address several security flaws impacting Avalanche, Application Control Engine, and Endpoint Manager (EPM), including four c … Read more Published Date: Jan 16, 2025 (2 hours, 7 minutes ago) Vulnerabilities has been mentioned in this […]
CVE-2024-10789 – “WordPress WP User Profile Avatar CSRF”
CVE ID : CVE-2024-10789 Published : Jan. 16, 2025, 4:15 a.m. | 28 minutes ago Description : The WP User Profile Avatar plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.0.5. This is due to missing or incorrect nonce validation on the wpupa_user_admin() function. This makes it possible […]
CVE-2024-11452 – WordPress Chamber Dashboard Business Directory Stored Cross-Site Scripting Vulnerability
CVE ID : CVE-2024-11452 Published : Jan. 16, 2025, 4:15 a.m. | 28 minutes ago Description : The Chamber Dashboard Business Directory plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin’s ‘business_categories’ shortcode in all versions up to, and including, 3.3.8 due to insufficient input sanitization and output escaping on user supplied attributes. […]
CVE-2024-50603 impacts Aviatrix with Cryptomining
CVE-2024-50603 impacts Aviatrix with Cryptomining CVE-2024-50603 is a critical security vulnerability identified in the Aviatrix Controller, a cloud networking platform used to manage and secure cloud infrastructure across multiple providers. This vu … Read more Published Date: Jan 16, 2025 (1 hour, 10 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2024-55591 CVE-2024-12398 CVE-2024-50603 CVE-2024-5594 CVE-2024-44243
CVE-2024-48463
CVE-2024-48463 Full Disclosure mailing list archives From: Rodolfo Tavares via Fulldisclosure Date: Tue, 14 Jan 2025 18:46:08 -0300 =====[ Tempest Security Intelligence – ADV-10/2024 … Read more Published Date: Jan 16, 2025 (2 hours, 14 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2024-48463
CyberDanube Security Research 20250107-0 | Multiple Vulnerabilities in ABB AC500v3
CyberDanube Security Research 20250107-0 | Multiple Vulnerabilities in ABB AC500v3 Full Disclosure mailing list archives CyberDanube Security Research 20250107-0 | Multiple Vulnerabilities in ABB AC500v3 From: Thomas Weber | CyberDanube via Fulldisclosure <fulldisclosure () seclists … Read more Published Date: Jan 16, 2025 (2 hours, 14 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2024-12430 CVE-2024-12429
15,000 FortiGate Firewalls Exposed: Massive Leak Includes VPN Credentials
15,000 FortiGate Firewalls Exposed: Massive Leak Includes VPN Credentials Cybersecurity expert Kevin Beaumont has reported that over 15,000 FortiGate firewall configurations, including VPN credentials, have been publicly leaked by a group calling itself “Belsen Group.” This … Read more Published Date: Jan 16, 2025 (1 hour, 28 minutes ago) Vulnerabilities has been mentioned in this article.
CVE-2025-22916 – RE11S Stack Overflow Vulnerability
The following table lists the changes that have been made to the CVE-2025-22916 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 16, 2025 Action […]