Aggregator
CVE-2025-1808 | Pixsoft E-Saphira 1.7.24 Login Endpoint servlet?act=login&tipo=1 txtUsuario sql injection
CVE-2025-1809 | Pixsoft Sol up to 7.6.6c Login Endpoint txtUsuario sql injection
CVE-2025-1799 | Zorlan SkyCaiji 2.9 Tool.php previewAction data server-side request forgery
CVE-2025-1800 | D-Link DAR-7000 3.2 HTTP POST Request sxh_vpnlic.php get_ip_addr_details ethname command injection
Over 4,000 ISP IPs Targeted in Brute-Force Attacks to Deploy Info Stealers and Cryptominers
DPRK IT Fraud Network Uses GitHub to Target Global Companies
Nisos
DPRK IT Fraud Network Uses GitHub to Target Global Companies
Nisos is tracking a network of likely North Korean (DPRK)-affiliated IT workers posing as Vietnamese, Japanese, and Singaporean nationals with the goal of obtaining employment in remote engineering...
The post DPRK IT Fraud Network Uses GitHub to Target Global Companies appeared first on Nisos by Nisos
The post DPRK IT Fraud Network Uses GitHub to Target Global Companies appeared first on Security Boulevard.
CVE-2025-1925 | Open5GS up to 2.7.2 AMF src/amf/nsmf-handler.c amf_nsmf_pdusession_handle_update_sm_context denial of service
云原生攻防靶场Metarget 重磅升级:全新功能与深度优化!
云原生攻防靶场Metarget 重磅升级:全新功能与深度优化!
云原生攻防靶场Metarget 重磅升级:全新功能与深度优化!
云原生攻防靶场Metarget 重磅升级:全新功能与深度优化!
FreeBuf早报 | 美国停止针对俄罗斯的网络进攻;严重的Android漏洞正被利用
Submit #506038: Open5GS <=v2.7.2 Denial of Service [Accepted]
CVE-2025-0512 | codemacher Structured Content wpsc Plugin up to 1.6.3 on WordPress Shortcode sc_fs_local_business cross site scripting
CVE-2025-0433 | litonice13 Master Addons Plugin up to 2.0.7.1 on WordPress id cross site scripting
CVE-2024-9618 | litonice13 Master Addons Plugin up to 2.0.7.2 on WordPress cross site scripting
CVE-2024-13724 | wpswings Wallet System for WooCommerce Plugin up to 2.6.2 on WordPress improper authorization
CVE-2024-13682 | wpswings Wallet System for WooCommerce Plugin up to 2.6.2 on WordPress class-wallet-user-table.php cross-site request forgery
Google Warns of Two Critical Android Vulnerabilities Under Attack – Update Now!
Google has issued an urgent security alert for CVE-2024-43093 and CVE-2024-50302, two critical Android vulnerabilities actively exploited in coordinated attacks targeting devices running Android 12 through 15. Patched in the March 2025 Android Security Bulletin (security patch level 2025-03-05), these flaws enable attackers to bypass lock screens, escalate privileges, and execute remote code. Forensic evidence […]
The post Google Warns of Two Critical Android Vulnerabilities Under Attack – Update Now! appeared first on Cyber Security News.