Hackers Exploited Ivanti Connect Secure 0-Day to Install DslogdRAT & Web Shell
Hackers Exploited Ivanti Connect Secure 0-Day to Install DslogdRAT & Web Shell Recent attacks against Japanese organizations have revealed sophisticated hackers exploiting a zero-day vulnerability in Ivanti Connect Secure VPN appliances. The attacks, occurring around December 20 … Read more Published Date: Apr 24, 2025 (3 hours, 6 minutes ago) Vulnerabilities has been mentioned in this article. […]
Citrix NetScaler Console Vulnerability Enables Admin Access – PoC Released
Citrix NetScaler Console Vulnerability Enables Admin Access – PoC Released A critical vulnerability in Citrix NetScaler Console allows complete unauthenticated administrative access despite being initially classified as merely a “sensitive information disclosure” issue. The … Read more Published Date: Apr 24, 2025 (3 hours, 14 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2024-6235
Zyxel RCE Vulnerability Allows Arbitrary Query Execution Without any Authentication
Zyxel RCE Vulnerability Allows Arbitrary Query Execution Without any Authentication A critical vulnerability in Zyxel’s FLEX-H Series devices that enables attackers to execute arbitrary database queries and gain remote code execution capabilities without requiring authentication. The … Read more Published Date: Apr 24, 2025 (1 hour, 10 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2025-1732 […]
CVE-2025-46421 – Apache Libsoup HTTP Authorization Header Exposure Vulnerability
The following table lists the changes that have been made to the CVE-2025-46421 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 24, 2025 Action […]
CVE-2025-46420 – Libsoup Memory Leak Vulnerability
The following table lists the changes that have been made to the CVE-2025-46420 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 24, 2025 Action […]
Cisco Confirms Multiple Products Impacted by Erlang/OTP SSH Server RCE Vulnerability
Cisco Confirms Multiple Products Impacted by Erlang/OTP SSH Server RCE Vulnerability Cisco Systems has issued a critical security advisory confirming that multiple products across its portfolio are affected by a remote code execution (RCE) vulnerability in the Erlang/OTP SSH server (C … Read more Published Date: Apr 24, 2025 (2 hours, 9 minutes ago) Vulnerabilities has been […]
DslogdRAT Malware Deployed in Ivanti Connect Secure Zero-Day Campaign
DslogdRAT Malware Deployed in Ivanti Connect Secure Zero-Day Campaign A new wave of attacks targeting Ivanti Connect Secure VPN devices has revealed a stealthy malware strain known as DslogdRAT, deployed alongside a simple but effective Perl web shell. Security research … Read more Published Date: Apr 24, 2025 (2 hours, 37 minutes ago) Vulnerabilities has been mentioned […]
CVE-2025-27820 – Apache HttpClient Domain Check Bypass Vulnerability
The following table lists the changes that have been made to the CVE-2025-27820 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 24, 2025 Action […]
Critical Commvault RCE vulnerability fixed, PoC available (CVE-2025-34028)
Critical Commvault RCE vulnerability fixed, PoC available (CVE-2025-34028) If your organization is using Commvault Command Center for your data protection, backup creation, configuration and restoration needs, you should check whether your on-premise installation has been up … Read more Published Date: Apr 24, 2025 (2 hours, 57 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2025-34028
Commvault RCE Vulnerability Let Attackers Breach Vault – PoC Released
Commvault RCE Vulnerability Let Attackers Breach Vault – PoC Released A critical pre-authenticated Remote Code Execution (RCE) vulnerability affecting Commvault’s backup and data protection platform. The vulnerability, tracked as CVE-2025-34028, could allow attackers to … Read more Published Date: Apr 24, 2025 (2 hours, 57 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2025-34028