Earth Alux APT Group: Unveiling Its Espionage Toolkit

Earth Alux APT Group: Unveiling Its Espionage Toolkit VARGEIT and controller interaction | Image: Trend MicroResearchers at Trend Micro detail a highly sophisticated cyber-espionage group actively targeting the Asia-Pacific and Latin American regions. Kn … Read more Published Date: Apr 01, 2025 (1 hour, 47 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2024-21887

CVE-2025-1449 (CVSS 9.1): Vulnerability in Verve Asset Manager Allows Admin Shell Access

CVE-2025-1449 (CVSS 9.1): Vulnerability in Verve Asset Manager Allows Admin Shell Access Rockwell Automation has released a security advisory addressing a vulnerability in Verve Asset Manager. The advisory details a flaw that could allow a threat actor with administrative access to execut … Read more Published Date: Apr 01, 2025 (2 hours, 17 minutes ago) Vulnerabilities has […]

KNIME Business Hub Hit by Critical Bugs, Including Hard-Coded Password and XSS Flaws

KNIME Business Hub Hit by Critical Bugs, Including Hard-Coded Password and XSS Flaws A recent security advisory from KNIME details several vulnerabilities affecting the KNIME Business Hub, a customer-managed KNIME Hub instance that provides access to Hub resources and allows for custo … Read more Published Date: Apr 01, 2025 (2 hours, 33 minutes ago) Vulnerabilities has […]

CVE-2025-3041 – Project Worlds Online Time Table Generator Unrestricted File Upload Vulnerability

The following table lists the changes that have been made to the CVE-2025-3041 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 01, 2025 Action […]

Bulletproof Hosting Fuels Russia-Linked Intrusion Sets’ Global Cyber Campaign

Bulletproof Hosting Fuels Russia-Linked Intrusion Sets’ Global Cyber Campaign Layout of UAC-0006’s spam infrastructure by the end of 2023 and early 2024 | Image: IntrinsecA recent report by Intrinsec has uncovered the activities of Russia-aligned intrusion sets, UAC-0050 and UA … Read more Published Date: Apr 01, 2025 (37 minutes ago) Vulnerabilities has been mentioned in […]

CVE-2025-3062 – “Drupal Admin LTE Theme Cross-Site Scripting Vulnerability”

The following table lists the changes that have been made to the CVE-2025-3062 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 31, 2025 Action […]

CVE-2025-3061 – “Drupal Material Admin Stored Cross-Site Scripting”

The following table lists the changes that have been made to the CVE-2025-3061 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 31, 2025 Action […]

CVE-2025-3060 – Drupal Flattern Cross-Site Scripting (XSS) Vulnerability

The following table lists the changes that have been made to the CVE-2025-3060 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 31, 2025 Action […]

CVE-2025-3059 – Drupal Profile Private Unauthenticated File Upload

The following table lists the changes that have been made to the CVE-2025-3059 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 31, 2025 Action […]

CVE-2025-3040 – Project Worlds Online Time Table Generator File Upload Vulnerability

The following table lists the changes that have been made to the CVE-2025-3040 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 31, 2025 Action […]