CVE-2025-2185 – ALBEDO Telecom Net.Time PTP/NTP Clock Authentication Bypass

The following table lists the changes that have been made to the CVE-2025-2185 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 25, 2025 Action […]

CVE-2025-3606 – Vestel AC Charger Information Disclosure Vulnerability

The following table lists the changes that have been made to the CVE-2025-3606 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 25, 2025 Action […]

ToyMaker’s Playbook: Cisco Talos Exposes IAB Tactics Leading to Cactus Ransomware

ToyMaker’s Playbook: Cisco Talos Exposes IAB Tactics Leading to Cactus Ransomware Image: Cisco Talos Cisco Talos’ 2023 incident response report unveils the operations of “ToyMaker,” a financially motivated Initial Access Broker (IAB) whose behind-the-scenes activity opened the floo … Read more Published Date: Apr 25, 2025 (2 hours, 8 minutes ago) Vulnerabilities has been mentioned in this […]

CVE-2025-46275 – Fortinet FortiSwitch Unauthenticated Administrator Account Creation

The following table lists the changes that have been made to the CVE-2025-46275 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 24, 2025 Action […]

CVE-2025-46273 – UNI-NMS-Lite Hard-Coded Credentials Authentication Bypass

The following table lists the changes that have been made to the CVE-2025-46273 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 24, 2025 Action […]

CVE-2025-46274 – UNI-NMS-Lite Authentication Bypass

The following table lists the changes that have been made to the CVE-2025-46274 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 24, 2025 Action […]

CVE-2025-46272 – D-Link Router Command Injection Vulnerability

The following table lists the changes that have been made to the CVE-2025-46272 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 24, 2025 Action […]

CVE-2025-46271 – UNI-NMS-Lite Command Injection Vulnerability

The following table lists the changes that have been made to the CVE-2025-46271 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 24, 2025 Action […]

CVE-2025-3749 – Breeze Display for WordPress Stored Cross-Site Scripting Vulnerability

CVE ID : CVE-2025-3749 Published : April 24, 2025, 11:15 p.m. | 26 minutes ago Description : The Breeze Display plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘cal_size’ parameter in all versions up to, and including, 1.2.3 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, […]

CVE-2025-1294 – “eForm for WordPress Stored Cross-Site Scripting Vulnerability”

CVE ID : CVE-2025-1294 Published : April 24, 2025, 11:15 p.m. | 26 minutes ago Description : The eForm – WordPress Form Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and including, 4.18.0 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to […]