Aggregator
CVE-2025-29970 | Microsoft Windows 11 24H2/Server 2022 23H2/Server 2025 Brokering File System use after free
CVE-2025-29969 | Microsoft Windows up to Server 2025 MS-EVEN RPC toctou
CVE-2025-29977 | Microsoft Excel use after free
CVE-2025-29968 | Microsoft Windows Server 2008 R2 SP1 up to Server 2022 Active Directory Certificate Services denial of service
CVE-2025-29976 | Microsoft SharePoint Server privileges management
CVE-2025-29975 | Microsoft PC Manager link following
CVE-2025-29966 | Microsoft Windows up to Server 2025 Remote Desktop Client heap-based overflow
CVE-2025-29964 | Microsoft Windows up to Server 2025 Media heap-based overflow
CVE-2025-29974 | Microsoft Windows up to Server 2025 Kernel integer underflow
Unified Account Defense: How AI-Powered Layers Stop Bots and Human Fraud—Faster
From login abuse to in-session fraud, DataDome’s unified account protection layers stop both bots and human attackers in real time—without disrupting legitimate users.
The post Unified Account Defense: How AI-Powered Layers Stop Bots and Human Fraud—Faster appeared first on Security Boulevard.
CVE-2025-29963 | Microsoft Windows up to Server 2025 Media heap-based overflow
CVE-2025-29973 | Microsoft File Sync 19.0/20.0 access control
CVE-2025-29962 | Microsoft Windows up to Server 2025 Media heap-based overflow
CVE-2025-29971 | Microsoft Windows 11 22H2/11 23H2/11 24H2 Web Threat Defense WTD.sys out-of-bounds
CVE-2025-29970 | Microsoft Windows 11 24H2/Server 2022 23H2/Server 2025 Brokering File System use after free
Ivanti EPMM vulnerabilities exploited in the wild (CVE-2025-4427, CVE-2025-4428)
Attackers have exploited vulnerabilities in open-source libraries to compromise on-prem Ivanti Endpoint Manager Mobile (EPMM) instances of a “very limited” number of customers, Ivanti has confirmed on Tuesday, and urged customers to install a patch as soon as possible. “The investigation is ongoing and Ivanti does not have reliable atomic indicators [of compromise] at this time. Customers should reach out to our Support Team for guidance,” the company said. CVE-2025-4427 and CVE-2025-4428 The exploited vulnerabilities … More →
The post Ivanti EPMM vulnerabilities exploited in the wild (CVE-2025-4427, CVE-2025-4428) appeared first on Help Net Security.