Aggregator
CVE-2024-8419 | ifm electronic ifm Smart PLC AC4xxS up to 6.1.8 Endpoint missing authentication (VDE-2024-061 / EUVD-2024-54715)
Garak-大语言模型脆弱性扫描器
Over 1,200 Citrix servers unpatched against critical auth bypass flaw
Cato Networks raises $359 million to redefine enterprise security
Cato Networks has raised $359 million in a late-stage funding round, bringing its total valuation to $4.8 billion. The company, which provides a secure networking platform built entirely in the cloud, says the money will support its product development, AI capabilities, and global expansion. The new investment is intended to accelerate development of Cato’s AI-driven SASE (Secure Access Service Edge) platform. The company also plans to use the funds to expand its global operations and … More →
The post Cato Networks raises $359 million to redefine enterprise security appeared first on Help Net Security.
Canada Bans Chinese CCTV Vendor Hikvision Over National Security Concerns
CVE-2025-6883 | code-projects Staff Audit System 1.0 /update_index.php updateid sql injection (EUVD-2025-19508)
CVE-2025-6885 | PHPGurukul Teachers Record Management System 2.1 edit-teacher-detail.php tid sql injection (EUVD-2025-19509)
CVE-2025-6886 | Tenda AC5 15.03.06.47 /goform/openSchedWifi schedStartTime/schedEndTime stack-based overflow
CVE-2025-6887 | Tenda AC5 15.03.06.47 /goform/SetSysTimeCfg time/timeZone stack-based overflow (EUVD-2025-19511)
CVE-2025-6888 | PHPGurukul Teachers Record Management System 2.1 /admin/changeimage.php tid sql injection (EUVD-2025-19510)
CVE-2025-6889 | code-projects Movie Ticketing System 1.0 /logIn.php postName sql injection (EUVD-2025-19515)
CVE-2025-6890 | code-projects Movie Ticketing System 1.0 /ticketConfirmation.php Date sql injection (EUVD-2025-19512)
CVE-2025-6891 | code-projects Inventory Management System 1.0 createUser.php Username sql injection (EUVD-2025-19517)
CVE-2025-6896 | D-Link DI-7300G+ 19.12.25A1 wget_test.asp url os command injection (EUVD-2025-19516)
CVE-2025-3745 | Syed Balkhi WP Lightbox 2 Plugin prior 3.0.6.8 on WordPress Title Attribute cross site scripting (EUVD-2025-19514)
CVE-2025-5730 | Contact Form Plugin up to 1.1.28 on WordPress Setting cross site scripting (EUVD-2025-19513)
Russian Throttling of Cloudflare ‘Renders Many Websites Barely Usable’
Russian ISPs, under the direction of the government, are choking the access of Russian citizens to websites protected by Cloudflare, limiting them to 16 KB of data, which the U.S.-based company said makes the sites "barely usable."
The post Russian Throttling of Cloudflare ‘Renders Many Websites Barely Usable’ appeared first on Security Boulevard.
CVE-2008-3566 | ZoneO-soft freeForum 1.7 index.php acuparam cross site scripting (EDB-32139 / XFDB-44178)
30th June – Threat Intelligence Report
For the latest discoveries in cyber research for the week of 29th June, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES Grocery giant Ahold Delhaize has disclosed a data breach that resulted in the theft of personal, financial, employment, and health information belonging to over 2.2 million individuals from its American business systems. […]
The post 30th June – Threat Intelligence Report appeared first on Check Point Research.