CVE-2025-52446 – Salesforce Tableau Server Authorization Bypass Through User-Controlled Key

The following table lists the changes that have been made to the CVE-2025-52446 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jul. 25, 2025 Action […]

CVE-2025-46199 – Grav Cross Site Scripting (XSS) Vulnerability

The following table lists the changes that have been made to the CVE-2025-46199 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jul. 25, 2025 Action […]

CVE-2025-20281: Cisco ISE API Unauthenticated Remote Code Execution Vulnerability

CVE-2025-20281: Cisco ISE API Unauthenticated Remote Code Execution Vulnerability On January 25th, 2025, the Trend Zero Day Initiative (ZDI) received a report from Kentaro Kawane of GMO Cybersecurity by Ierae regarding a deserialization of untrusted data vulnerability in Cisco Iden … Read more Published Date: Jul 25, 2025 (41 minutes ago) Vulnerabilities has been mentioned in […]

ToolShell Aftermath: What Defenders Should Do After Patching CVE-2025-53770

ToolShell Aftermath: What Defenders Should Do After Patching CVE-2025-53770 The recently exploited SharePoint vulnerability chain known as ToolShell (CVE-2025-53770) has shown once again that patching alone isn’t enough. Attackers gained unauthenticated remote access to vulne … Read more Published Date: Jul 25, 2025 (2 hours, 17 minutes ago) Vulnerabilities has been mentioned in this article.

Multiple Vulnerabilities in Tridium Niagara Framework Let Attacker to Collect Sensitive Data from the Network

Multiple Vulnerabilities in Tridium Niagara Framework Let Attacker to Collect Sensitive Data from the Network Researchers identified 13 critical vulnerabilities in Tridium’s widely-deployed Niagara Framework that could allow attackers to compromise building automation systems and collect sensitive network dat … Read more Published Date: Jul 25, 2025 (1 hour, 7 minutes ago) Vulnerabilities has been mentioned in […]

Shadowserver: kritiek Cisco ISE-lek sinds 5 juli misbruik bij aanvallen

Shadowserver: kritiek Cisco ISE-lek sinds 5 juli misbruik bij aanvallen Een kritieke kwetsbaarheid in Cisco Identity Services Engine (ISE) en Cisco ISE Passive Identity Connector (ISE-PIC) is sinds 5 juli misbruikt bij aanvallen, zo stelt The Shadowserver Foundation, een … Read more Published Date: Jul 25, 2025 (1 hour, 23 minutes ago) Vulnerabilities has been mentioned in […]

Critical VMware Tools VGAuth Vulnerabilities Enable Full System Access for Attackers

Critical VMware Tools VGAuth Vulnerabilities Enable Full System Access for Attackers Two critical vulnerabilities in the VMware Guest Authentication Service (VGAuth) component of VMware Tools allow local attackers to escalate privileges from any user account to SYSTEM-level access on … Read more Published Date: Jul 25, 2025 (1 hour, 25 minutes ago) Vulnerabilities has been mentioned in […]

Kritiek lek in wifi-thermostaat kan aanvaller op afstand toegang geven

Kritiek lek in wifi-thermostaat kan aanvaller op afstand toegang geven Wifi-thermostaten van fabrikant Network Thermostat bevatten een kritieke kwetsbaarheid waardoor een aanvaller op afstand volledige administrator-toegang kan krijgen. Er zijn updates uitgebracht om het … Read more Published Date: Jul 25, 2025 (38 minutes ago) Vulnerabilities has been mentioned in this article.

LG-beveiligingscamera’s via kwetsbaarheid op afstand over te nemen

LG-beveiligingscamera’s via kwetsbaarheid op afstand over te nemen Dertienhonderd beveiligingscamera’s van fabrikant LG Innotek zijn via een kwetsbaarheid op afstand over te nemen. De apparaten zijn end-of-life en LG zal geen beveiligingsupdate uitbrengen om het prob … Read more Published Date: Jul 25, 2025 (1 hour, 17 minutes ago) Vulnerabilities has been mentioned in this article.

Fire Ant Hackers Exploiting Vulnerabilities in VMware ESXi and vCenter to Infiltrate Organizations

Fire Ant Hackers Exploiting Vulnerabilities in VMware ESXi and vCenter to Infiltrate Organizations A sophisticated espionage campaign dubbed “Fire Ant” demonstrates previously unknown capabilities in compromising VMware virtualization infrastructure. Since early 2025, this threat actor has systemat … Read more Published Date: Jul 25, 2025 (13 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2023-34048 […]