CL0P Ransomware Attacking Telecommunications & Healthcare Sectors In Large Scale
CL0P Ransomware Attacking Telecommunications & Healthcare Sectors In Large Scale The CL0P ransomware group has intensified attacks on critical infrastructure sectors, with telecommunications and healthcare organizations worldwide reporting mass data breaches and system encryption. … Read more Published Date: Feb 21, 2025 (1 hour, 53 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2024-50623 CVE-2021-27104 CVE-2021-27101
CVE-2025-26794 – Exim SQLite SQL Injection
The following table lists the changes that have been made to the CVE-2025-26794 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 21, 2025 Action […]
CVE-2025-1489 – WordPress WP-Appbox Stored Cross-Site Scripting Vulnerability
CVE ID : CVE-2025-1489 Published : Feb. 21, 2025, 12:15 p.m. | 1 hour, 31 minutes ago Description : The WP-Appbox plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin’s appbox shortcode in all versions up to, and including, 4.5.4 due to insufficient input sanitization and output escaping on user supplied attributes. This makes […]
CVE-2025-1402 – WordPress Event Tickets and Registration Unauthenticated Data Deletion Vulnerability
CVE ID : CVE-2025-1402 Published : Feb. 21, 2025, 12:15 p.m. | 1 hour, 31 minutes ago Description : The Event Tickets and Registration plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the ‘ajax_ticket_delete’ function in all versions up to, and including, 5.19.1.1. This makes it possible for […]
CVE-2025-1535 – Baiyi Cloud Asset Management System SQL Injection Vulnerability
The following table lists the changes that have been made to the CVE-2025-1535 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 21, 2025 Action […]
CVE-2024-9150 – Wyn Enterprise Remote Code Execution
The following table lists the changes that have been made to the CVE-2024-9150 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 21, 2025 Action […]
CVE-2024-13900 – WordPress Head, Footer and Post Injections PHP Code Injection Vulnerability
CVE ID : CVE-2024-13900 Published : Feb. 21, 2025, 12:15 p.m. | 1 hour, 31 minutes ago Description : The Head, Footer and Post Injections plugin for WordPress is vulnerable to PHP Code Injection in all versions up to, and including, 3.3.0. This makes it possible for authenticated attackers, with Administrator-level access and above, to inject PHP […]
CVE-2024-13846 – Indeed Ultimate Learning Pro WordPress Time-Based SQL Injection Vulnerability
CVE ID : CVE-2024-13846 Published : Feb. 21, 2025, 12:15 p.m. | 1 hour, 31 minutes ago Description : The Indeed Ultimate Learning Pro plugin for WordPress is vulnerable to time-based SQL Injection via the ‘post_id’ parameter in all versions up to, and including, 3.9 due to insufficient escaping on the user supplied parameter and lack of […]
CVE-2024-13713 – WordPress Square For GiveWP SQL Injection Vulnerability
CVE ID : CVE-2024-13713 Published : Feb. 21, 2025, 12:15 p.m. | 1 hour, 31 minutes ago Description : The WPExperts Square For GiveWP plugin for WordPress is vulnerable to SQL Injection via the ‘post’ parameter in all versions up to, and including, 1.3.1 due to insufficient escaping on the user supplied parameter and lack of sufficient […]
CVE-2024-13455 – WordPress Igumbi Online Booking Stored Cross-Site Scripting Vulnerability
CVE ID : CVE-2024-13455 Published : Feb. 21, 2025, 12:15 p.m. | 1 hour, 31 minutes ago Description : The igumbi Online Booking plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin’s ‘igumbi_calendar’ shortcode in all versions up to, and including, 1.40 due to insufficient input sanitization and output escaping on user supplied attributes. […]