Aggregator
CVE-2025-54167 | QNAP Notification Center 1.9.2.3163/2.1.0.3443/3.0.0.3466 cross site scripting (qsa-25-40)
CVE-2025-63691 | pig-mesh Pig up to 3.8.2 System Management page information disclosure (Issue 1202)
Fortinet’s Fabric-Based Approach to Cloud Security
The enterprise migration to the cloud has created a security paradox. While digital transformation and multi-cloud architectures promise agility, they have also delivered unprecedented complexity. This complexity is the modern CISO’s greatest enemy. For every new cloud environment, SaaS application, or remote workforce, a new, siloed security tool has usually been procured. The result is..
The post Fortinet’s Fabric-Based Approach to Cloud Security appeared first on Security Boulevard.
CVE-2025-63783 | Onlook Web Application 0.2.32 tRPC Project Mutation API improper authentication
Не верь, не бойся, не проси — автоматизируй. Как 75% компаний перешли от «бумажной» безопасности к сбору точных метрик ИБ
CVE-2025-63686 | GuoMinJim PersonManage up to 5a02b1ab208feacf3a34fc123c9381162afbaa95 information disclosure (Issue 10)
CVE-2025-58464 | QNAP QuMagie up to 2.7.2 path traversal (qsa-25-43)
CVE-2025-58463 | QNAP Download Station prior 5.10.0.304/5.10.0.305 path traversal (qsa-25-37)
CVE-2025-57712 | QNAP Qsync Central up to 5.0.0.2 User Account path traversal (qsa-25-41)
INC
You must login to view this content
CVE-2025-53412 | QNAP File Station prior 5.5.6.5018 User Account null pointer dereference (qsa-25-38)
CVE-2025-53408 | QNAP File Station prior 5.5.6.5018 User Account null pointer dereference (qsa-25-38)
INC
You must login to view this content
CVE-2025-52865 | QNAP File Station prior 5.5.6.5018 User Account null pointer dereference (qsa-25-38)
CVE-2025-52425 | QNAP QuMagie up to 2.6.x sql injection (qsa-25-33)
CVE-2025-47207 | QNAP File Station prior 5.5.6.5018 User Account null pointer dereference (qsa-25-38)
Hackers Can Attack Active Directory Sites to Escalate Privileges and Domain Compromise
Active Directory sites are designed to optimize network performance across geographically separated organizations by managing replication and authentication across multiple locations. The Synacktiv security researchers have demonstrated that these supposedly safe network management tools can be weaponized to launch powerful attacks against enterprise environments. The vulnerability emerges because Active Directory sites can be linked to […]
The post Hackers Can Attack Active Directory Sites to Escalate Privileges and Domain Compromise appeared first on Cyber Security News.
Clop
You must login to view this content