CVE-2024-56495 – IBM EntireX Information Disclosure Vulnerability

The following table lists the changes that have been made to the CVE-2024-56495 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 27, 2025 Action […]

CVE-2024-56494 – IBM EntireX Information Disclosure Vulnerability

The following table lists the changes that have been made to the CVE-2024-56494 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 27, 2025 Action […]

CVE-2024-56493 – IBM EntireX Information Disclosure Vulnerability

The following table lists the changes that have been made to the CVE-2024-56493 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 27, 2025 Action […]

CVE-2024-54170 – IBM EntireX Regular Expression Denial of Service (DoS)

The following table lists the changes that have been made to the CVE-2024-54170 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 27, 2025 Action […]

CVE-2024-13148 – Yukseloglu Filter B2B Login Platform SQL Injection

The following table lists the changes that have been made to the CVE-2024-13148 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 27, 2025 Action […]

Chinese APT Uses VPN Bug to Exploit Worldwide OT Orgs

Chinese APT Uses VPN Bug to Exploit Worldwide OT Orgs Source: Ken Hawkins via Alamy Stock PhotoChinese cybercriminals have penetrated sensitive manufacturing companies worldwide through a virtual private network (VPN) bug.In an exclusive interview with D … Read more Published Date: Feb 27, 2025 (2 hours, 47 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2024-24919

CVE-2025-27154 – Spotify Cache File Permission Weakness

Spotipy is a lightweight Python library for the Spotify Web API. The `CacheHandler` class creates a cache file to store the auth token. Prior to version 2.25.1, the file created has `rw-r–r–` (644) permissions by default, when it could be locked down to `rw——-` (600) permissions. This leads to overly broad exposure of the spotify […]

CVE-2025-22280 – DefendWP Firewall Missing Authorization Vulnerability

The following table lists the changes that have been made to the CVE-2025-22280 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 27, 2025 Action […]

CVE-2024-9334 – E-Kent Pallium Vehicle Tracking Hard-coded Credentials Storage Authentication Bypass

The following table lists the changes that have been made to the CVE-2024-9334 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 27, 2025 Action […]

SEC Consult SA-20250226-0 :: Multiple vulnerabilities in Siemens A8000 CP-8050 & CP-8031 PLC

SEC Consult SA-20250226-0 :: Multiple vulnerabilities in Siemens A8000 CP-8050 & CP-8031 PLC Full Disclosure mailing list archives SEC Consult SA-20250226-0 :: Multiple vulnerabilities in Siemens A8000 CP-8050 & CP-8031 PLC From: SEC Consult Vulnerability Lab via Fulldisclosure <fulldisclosur … Read more Published Date: Feb 27, 2025 (3 hours, 20 minutes ago) Vulnerabilities has been mentioned in […]