Aggregator
CVE-2025-5636 | PCMan FTP Server 2.0.7 SET Command buffer overflow (EUVD-2025-16966)
CVE-2025-5637 | PCMan FTP Server 2.0.7 SYSTEM Command buffer overflow (EUVD-2025-16965)
CVE-2025-5595 | FreeFloat FTP Server 1.0 PROGRESS Command buffer overflow (EUVD-2025-16900)
CVE-2025-5596 | FreeFloat FTP Server 1.0 REGET Command buffer overflow (EUVD-2025-16898)
CVE-2025-34033 | 5VTechnologies Blue Angel Software Suite GET Request webctrl.cgi ping_addr os command injection (Exploit 46792 / EUVD-2025-18969)
Security Advisory: Anthropic's Slack MCP Server Vulnerable to Data Exfiltration
This is a security advisory for a data leakage and exfiltration vulnerability in a popular, but now deprecated and unmaintained, Slack MCP Server from Anthropic.
If you are using this MCP server, or run an “MCP Store” that hosts it, it is advised that you analyze how this threat applies to your use case and apply a patch as needed.
Anthropic’s Slack MCP ServerWhen Anthropic introduced MCP they published reference server implementations on Github.
What Water Utilities Need to Know About HMI Security and AI Solutions
Water and Wastewater Systems are increasingly becoming soft targets for sophisticated cyber attackers. A new joint fact sheet from the EPA and CISA puts this threat front and center, warning utilities about the growing risk of internet-exposed Human Machine Interfaces (HMIs). These essential components of water system operations are now being exploited—especially by state-sponsored and […]
The post What Water Utilities Need to Know About HMI Security and AI Solutions appeared first on Security Boulevard.
CVE-2012-6047 | X7 Group X7 Chat up to 1.2.0b index.php cross-site request forgery (EDB-18850 / OSVDB-81827)
Daily Dose of Dark Web Informer - 24th of June 2025
Beyond SMS OTP: Why Major Organizations Are Abandoning Text-Based Authentication
The elimination of SMS OTP from major organizations and government systems represents an inevitable evolution toward more secure, cost-effective, and user-friendly authentication approaches. Organizations that recognize this trend and act proactively will find themselves better positioned competitively while avoiding the disruption and costs associated with forced transitions under regulatory deadlines.
The post Beyond SMS OTP: Why Major Organizations Are Abandoning Text-Based Authentication appeared first on Security Boulevard.
Google rolls out text-to-image model Imagen 4 for free
CVE-2019-11358 | Oracle Financial Services Hedge Management 8.0.4/8.0.5/8.0.6/8.0.7 RSA BSAFE cross site scripting (EDB-52141 / Nessus ID 208606)
El Dorado
You must login to view this content
Threat Attack Daily - 24th of June 2025
Ransomware Attack Update for the 24th of June 2025
Safepay
You must login to view this content