Aggregator
CVE-2019-7162 | Zoho ManageEngine ADSelfService Plus 5.6 Build 5607 information disclosure
CVE-2020-8422 | Zoho ManageEngine Remote Access Plus up to 10.0 Credential Manager Credentials information disclosure
CVE-2020-26167 | Fuel CMS up to 11.4.12 Page Preview access control
CVE-2020-28401 | Star Practice Management Web 2019.2.0.6 WIP Detail improper authorization
CVE-2020-28402 | Star Practice Management Web 2019.2.0.6 Launcher Configuration Panel improper authorization
CVE-2020-28403 | Star Practice Management Web 2019.2.0.6 cross-site request forgery
CVE-2020-28404 | Star Practice Management Web 2019.2.0.6 Billing Page improper authorization
CVE-2020-28405 | Star Practice Management Web 2019.2.0.6 improper authorization
CVE-2020-28406 | Star Practice Management Web up to 2019.2.0.6 Job improper authorization
CVE-2020-28918 | DualShield 5.9.8.0821 Login Form information exposure
CVE-2021-31777 | dce Extension up to 2.6.1/2.7.0 on TYPO3 Backend sql injection
CVE-2024-58249 | wxWidgets up to 3.2.6 wxWebRequestCURL premature release of resource during expected lifetime (Issue 24885 / Nessus ID 237546)
CVE-2025-30193 | PowerDNS DNSdist up to 1.9.9 recursion (EUVD-2025-15818 / Nessus ID 237547)
CVE-2024-6763 | Eclipse Jetty up to 12.0.11 URL Parser improper validation of syntactic correctness of input (ID 25 / Nessus ID 237536)
CVE-2025-24799 | GLPI up to 10.0.17 Inventory Endpoint sql injection (GHSA-jv89-g7f7-jwfg / Nessus ID 237566)
Hackers are exploiting critical flaw in vBulletin forum software
US intelligence employee arrested for alleged double-dealing of classified info
The 28-year-old, who’d been employed by the Defense Intelligence Agency since 2019, specialized in insider threats and had top secret security clearance, officials said.
The post US intelligence employee arrested for alleged double-dealing of classified info appeared first on CyberScoop.
SentinelOne Outage Leaves Security Teams Hanging for Six Hours
SentinelOne's commercial customers consoles went down for about six hours May 29 in what the company says wasn't a "security incident," but it still faces questions from a customer based that wants to know what happened and why communication from SentinelOne about the issues was bad.
The post SentinelOne Outage Leaves Security Teams Hanging for Six Hours appeared first on Security Boulevard.
BSidesLV24 – PasswordsCon – All Your Badge Are Belong To Me
Author/Presenter: John-André Bjørkhaug
Our sincere appreciation to BSidesLV, and the Presenters/Authors for publishing their erudite Security BSidesLV24 content. Originating from the conference’s events located at the Tuscany Suites & Casino; and via the organizations YouTube channel.
The post BSidesLV24 – PasswordsCon – All Your Badge Are Belong To Me appeared first on Security Boulevard.