CVE-2025-48866 – ModSecurity SanitizeArg Denial of Service Vulnerability
CVE ID : CVE-2025-48866 Published : June 2, 2025, 4:15 p.m. | 1 hour, 25 minutes ago Description : ModSecurity is an open source, cross platform web application firewall (WAF) engine for Apache, IIS and Nginx. Versions prior to 2.9.10 contain a denial of service vulnerability similar to GHSA-859r-vvv8-rm8r/CVE-2025-47947. The `sanitiseArg` (and `sanitizeArg` – this is the […]
CVE-2025-44115 – Cotonti Siena Cross-Site Scripting Vulnerability
The following table lists the changes that have been made to the CVE-2025-44115 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jun. 02, 2025 Action […]
CVE-2025-45542 – CloudClassroom-PHP-Project SQL Injection Vulnerability
The following table lists the changes that have been made to the CVE-2025-45542 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jun. 02, 2025 Action […]
CVE-2024-57459 – CloudClassroom PHP Project SQL Injection Vulnerability
The following table lists the changes that have been made to the CVE-2024-57459 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. CVE Modified by 134c704f-9b21-4f2e-91b3-4a467353bcc0 Jun. 02, 2025 Action Type […]
CVE-2024-40114 – Sitecom WLX-2006 Wall Mount Range Extender XSS Language Cookie Manipulation
The following table lists the changes that have been made to the CVE-2024-40114 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jun. 02, 2025 Action […]
CVE-2024-40113 – Sitecom WLX-2006 Default Credentials Vulnerability
The following table lists the changes that have been made to the CVE-2024-40113 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jun. 02, 2025 Action […]
CVE-2024-40112 – Sitecom WLX-2006 Wall Mount Range Extender N300 LFI Vulnerability
The following table lists the changes that have been made to the CVE-2024-40112 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jun. 02, 2025 Action […]
Cryptojacking Campaign Exploits DevOps APIs Using Off-the-Shelf Tools from GitHub
Cryptojacking Campaign Exploits DevOps APIs Using Off-the-Shelf Tools from GitHub Cybersecurity researchers have discovered a new cryptojacking campaign that’s targeting publicly accessible DevOps web servers such as those associated with Docker, Gitea, and HashiCorp Consul and Nom … Read more Published Date: Jun 02, 2025 (46 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2025-32756 […]
Critical Bugs Could Spark Takeover of Widely Used Fire Safety OT/ICS Platform
Critical Bugs Could Spark Takeover of Widely Used Fire Safety OT/ICS Platform Source: Ivan Kmit via Alamy Stock PhotoTwo critical, unpatched security flaws in technology widely used in operational technology (OT) and industrial control systems (ICS) that monitor fire safety cou … Read more Published Date: Jun 02, 2025 (3 hours, 7 minutes ago) Vulnerabilities has been […]
Vulnerabilities in Preinstalled Android Apps Expose PIN Codes and Allow Command Injection
Vulnerabilities in Preinstalled Android Apps Expose PIN Codes and Allow Command Injection Significant vulnerabilities were uncovered in pre-installed applications on Ulefone and Krüger&Matz Android smartphones that expose users to significant risks, including unauthorized factory resets, P … Read more Published Date: Jun 02, 2025 (1 hour, 4 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2024-13917 […]