CVE Alert: CVE-2025-2070
Vulnerability Summary: CVE-2025-2070 An improper XML parsing vulnerability was reported in the FileZ client that could allow arbitrary file reads...
Vulnerability Summary: CVE-2025-2070 An improper XML parsing vulnerability was reported in the FileZ client that could allow arbitrary file reads...
Vulnerability Summary: CVE-2025-2068 An open redirect vulnerability was reported in the FileZ client that could allow information disclosure if a...
Vulnerability Summary: CVE-2025-25775 Codeastro Bus Ticket Booking System v1.0 is vulnerable to SQL injection via the kodetiket parameter in /BusTicket-CI/tiket/cekorder....
Vulnerability Summary: CVE-2025-2069 A cross-site scripting vulnerability was reported in the FileZ client that could allow execution of code if...
Vulnerability Summary: CVE-2025-3928 Commvault Web Server has an unspecified vulnerability that can be exploited by a remote, authenticated attacker. According...
Vulnerability Summary: CVE-2025-32984 NETSCOUT nGeniusONE before 6.4.0 b2350 allows Stored Cross-Site Scripting (XSS) via a certain POST parameter. Affected Endpoints:...
Vulnerability Summary: CVE-2025-3935 ScreenConnect versions 25.2.3 and earlier versions may be susceptible to a ViewState code injection attack. ASP.NET Web...
Vulnerability Summary: CVE-2024-30152 HCL SX v21 is affected by usage of a weak cryptographic algorithm. An attacker could exploit this...
Vulnerability Summary: CVE-2025-28128 An issue in Mytel Telecom Online Account System v1.0 allows attackers to bypass the OTP verification process...
Vulnerability Summary: CVE-2025-32983 NETSCOUT nGeniusONE before 6.4.0 b2350 allows Technical Information Disclosure via a Stack Trace. Affected Endpoints: No affected...
Qualcomm has amended its complaint against Arm in a 2024 lawsuit, adding more allegations about Arm's purported breach of license...
Ransomware Group: NITROGEN VICTIM NAME: Seneca Gaming & Entertainment NOTE: No files or stolen information are by RedPacket Security. Any...
Vulnerability Summary: CVE-2025-46517 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpdiscover Blog Manager WP allows...
Vulnerability Summary: CVE-2025-46502 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Bas Matthee LSD Custom taxonomy...
Vulnerability Summary: CVE-2025-46513 Cross-Site Request Forgery (CSRF) vulnerability in Codebangers All in One Time Clock Lite allows Cross Site Request...
Vulnerability Summary: CVE-2025-46516 Cross-Site Request Forgery (CSRF) vulnerability in silencecm Twitter Card Generator allows Stored XSS. This issue affects Twitter...
Vulnerability Summary: CVE-2025-46514 Cross-Site Request Forgery (CSRF) vulnerability in milat Milat jQuery Automatic Popup allows Stored XSS. This issue affects...
Vulnerability Summary: CVE-2025-46525 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in msmitley WP Cookie Consent allows...
Vulnerability Summary: CVE-2025-46510 Cross-Site Request Forgery (CSRF) vulnerability in harrysudana Contact Form 7 Calendar allows Stored XSS. This issue affects...
Vulnerability Summary: CVE-2025-46512 Cross-Site Request Forgery (CSRF) vulnerability in Shamim Hasan Custom Functions Plugin allows Stored XSS. This issue affects...
Vulnerability Summary: CVE-2025-46511 Server-Side Request Forgery (SSRF) vulnerability in Derek Springer BeerXML Shortcode allows Server Side Request Forgery. This issue...
Vulnerability Summary: CVE-2025-46524 Cross-Site Request Forgery (CSRF) vulnerability in stesvis WP Filter Post Category allows Stored XSS. This issue affects...
The Information provided at the time of posting was detected as "Cobalt Strike". Depending on when you are viewing this...
The Information provided at the time of posting was detected as "Cobalt Strike". Depending on when you are viewing this...