CVE-2024-39272 – ClearML Enterprise Server Cross-Site Scripting
The following table lists the changes that have been made to the CVE-2024-39272 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 06, 2025 Action […]
Cisco fixes Twin ISE Vulnerabilities
Cisco fixes Twin ISE Vulnerabilities Cisco has recently addressed two critical vulnerabilities in its Identity Services Engine (ISE), identified as CVE-2025-20124 and CVE-2025-20125. These vulnerabilities pose significant security risks, … Read more Published Date: Feb 06, 2025 (1 hour, 10 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2025-20125 CVE-2025-20124 CVE-2025-23114 CVE-2024-56161 CVE-2025-20156 CVE-2025-21293 CVE-2024-51741 CVE-2024-46981
Critical Cisco ISE bug can let attackers run commands as root
Critical Cisco ISE bug can let attackers run commands as root Cisco has released patches to fix two critical vulnerabilities in its Identity Services Engine (ISE) security policy management platform. Enterprise administrators use Cisco ISE as an identity and acc … Read more Published Date: Feb 06, 2025 (1 hour, 34 minutes ago) Vulnerabilities has been mentioned […]
Moniker Link (CVE-2024–21413) | TryHackMe Walkthrough by Mark de Moras
Moniker Link (CVE-2024–21413) | TryHackMe Walkthrough by Mark de Moras Hey everyone!This is a writeup to the TryHackMe Moniker Link room, which can be found here. In this TryHackMe write-up, I will first explain the Moniker Link exploit, how it works, and some of its fea … Read more Published Date: Feb 06, 2025 (1 hour, […]
CVE-2025-0994 – Trimble Cityworks Apache Common Fileupload RCE
CVE ID : CVE-2025-0994 Published : Feb. 6, 2025, 4:15 p.m. | 1 hour, 31 minutes ago Description : Trimble Cityworks versions prior to 15.8.9 and Cityworks with office companion versions prior to 23.10 are vulnerable to a deserialization vulnerability. This could allow an authenticated user to perform a remote code execution attack against a customer’s Microsoft […]
CVE-2024-43811 – Nullsoft Third-Party Vulnerability
The following table lists the changes that have been made to the CVE-2024-43811 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. CVE Rejected by [email protected] Feb. 06, 2025 Action Type […]
CVE-2023-5878 – Honeywell OneWireless Wireless Command Injection Vulnerability
Honeywell OneWireless Wireless Device Manager (WDM) for the following versions R310.x, R320.x, R321.x, R322.1, R322.2, R323.x, R330.1 contains a command injection vulnerability. An attacker who is authenticated could use the firmware update process to potentially exploit the vulnerability, leading to a command injection. Honeywell recommends updating to R322.3, R330.2 or the most recent version of this […]
CVE-2022-31764 – Apache ShardingSphere ElasticJob-UI H2 DB RCE Vulnerability
The following table lists the changes that have been made to the CVE-2022-31764 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. CVE Modified by 134c704f-9b21-4f2e-91b3-4a467353bcc0 Feb. 06, 2025 Action Type […]
CVE-2025-1076 – Holded Stored XSS Vuln
The following table lists the changes that have been made to the CVE-2025-1076 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 06, 2025 Action […]
CVE-2025-1074 – “Webkul QloApps Cross-Site Request Forgery”
The following table lists the changes that have been made to the CVE-2025-1074 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 06, 2025 Action […]