Aggregator
CVE-2025-9750 | Campcodes Online Learning Management System 1.0 /admin/login.php Username sql injection (EUVD-2025-26313)
CVE-2025-9751 | Campcodes Online Learning Management System 1.0 /login.php Username sql injection (EUVD-2025-26315)
CVE-2025-9756 | PHPGurukul User Management System 1.0 change-emailid.php uid sql injection (EUVD-2025-26317)
CVE-2025-9733 | code-projects Human Resource Integrated System 1.0 /login_timeee.php emp_id sql injection (EUVD-2025-26299)
CVE-2025-9757 | Campcodes/SourceCodester Courier Management System 1.0 /ajax.php login email sql injection (EUVD-2025-26322)
CVE-2025-9759 | Campcodes/SourceCodester Courier Management System 1.0 /ajax.php signup lastname sql injection (EUVD-2025-26325)
GPUGate Malware Uses Google Ads and Fake GitHub Commits to Target IT Firms
Submit #645615: itsourcecode E-Logbook with Health Monitoring System for COVID-19 V1.0 SQL Injection [Accepted]
BSidesSF 2025: Sharing Vulnerabilities
Creator, Author and Presenter: Clint Gibler
Our deep appreciation to Security BSides - San Francisco and the Creators, Authors and Presenters for publishing their BSidesSF 2025 video content on YouTube. Originating from the conference’s events held at the lauded CityView / AMC Metreon - certainly a venue like no other; and via the organization's YouTube channel.
Additionally, the organization is welcoming volunteers for the BSidesSF Volunteer Force, as well as their Program Team & Operations roles. See their succinct BSidesSF 'Work With Us' page, in which, the appropriate information is to be had!
The post BSidesSF 2025: Sharing Vulnerabilities appeared first on Security Boulevard.
CVE-2025-10091 | Jinher OA up to 1.2 XML ?Type=add xml external entity reference (EUVD-2025-27120)
CVE-2025-10092 | Jinher OA up to 1.2 XML ?Type=add xml external entity reference (EUVD-2025-27123)
CVE-2025-10093 | D-Link DIR-852 up to 1.00CN B09 Device Configuration /getcfg.php phpcgi_main information disclosure (EUVD-2025-27121)
CVE-2025-3212 | Arm Bifrost GPU Kernel Driver use after free (EUVD-2025-27124)
CVE-2025-40641 | Multi-Purpose Inventory Management System Non-defining Query update product_name cross site scripting (EUVD-2025-27122)
How to Embrace Zero Trust Without Blowing Up Your Network
Zero Trust isn’t just a strategy. It’s a survival skill. “Never trust, always verify” sounds simple enough, but most organizations discover that applying it to sprawling hybrid networks is anything...
The post How to Embrace Zero Trust Without Blowing Up Your Network appeared first on Security Boulevard.
Venezuela’s Maduro Says Huawei Mate X6 Gift From China is Unhackable by U.S. Spies
In Caracas this week, President Nicolás Maduro unveiled the Huawei Mate X6 gifted by China’s Xi Jinping, declaring the device impervious to U.S. espionage efforts. The announcement coincides with heightened tensions between Washington and Beijing, as the United States enforces stringent controls on Chinese telecom equipment. Beyond its political symbolism, the Mate X6 has become […]
The post Venezuela’s Maduro Says Huawei Mate X6 Gift From China is Unhackable by U.S. Spies appeared first on Cyber Security News.