Aggregator
CVE-2021-20283 | Moodle up to 3.5.16/3.8.7/3.9.4/3.10.1 Web Service authorization (Nessus ID 261351)
CVE-2019-17371 | libpng 1.6.37 png_malloc_warn/png_create_info_struct release of resource (Issue 307 / Nessus ID 261352)
Progress OpenEdge AdminServer Vulnerability Let Attackers Execute Remote Code
A critical security vulnerability has been discovered in Progress OpenEdge, a platform for developing and deploying business applications. The flaw, identified as CVE-2025-7388, allows for remote code execution (RCE) and affects multiple versions of the software, potentially enabling attackers to execute arbitrary commands with elevated system privileges. The vulnerability resides in the AdminServer component of […]
The post Progress OpenEdge AdminServer Vulnerability Let Attackers Execute Remote Code appeared first on Cyber Security News.
Kazakh oil giant denies cyberattack, says incident was 'planned' phishing drill
Играть в прятки с ИИ больше не получится. Anthropic изменила правила и будет смотреть, кто на самом деле платит
Randall Munroe’s XKCD ‘Cesium’
via the comic artistry and dry wit of Randall Munroe, creator of XKCD
The post Randall Munroe’s XKCD ‘Cesium’ appeared first on Security Boulevard.
Windows Defender Vulnerability Allows Service Hijacking and Disablement via Symbolic Link Attack
A severe vulnerability in Windows Defender’s update process allows attackers with administrator privileges to disable the security service and manipulate its core files. The technique, which leverages a flaw in how Defender selects its execution folder, can be carried out using tools already available on the Windows operating system. The vulnerability was detailed by Zero […]
The post Windows Defender Vulnerability Allows Service Hijacking and Disablement via Symbolic Link Attack appeared first on Cyber Security News.
Supreme Court blocks FTC commissioner Slaughter’s reinstatement
As some observers predicted, Democratic commissioners are racking up lower court victories, but the highest court in the country appears skeptical.
The post Supreme Court blocks FTC commissioner Slaughter’s reinstatement appeared first on CyberScoop.
Hackers hijack npm packages with 2 billion weekly downloads in supply chain attack
npm Packages With 2 Billion Weekly Downloads Hacked in Major Attack
Microsoft Edge security advisory (AV25-573)
CVE-2020-5283 | ViewVC up to 1.1.27/1.2.0 CVS show_subdir_lastmod cross site scripting (Nessus ID 261354)
CVE-2019-6970 | Moodle 3.5.0/3.5.1/3.5.2/3.5.3 server-side request forgery (Nessus ID 261353)
CVE-2019-3572 | libming 0.4.8 util/dbl2png.c writePNG out-of-bounds (Issue 169 / Nessus ID 261356)
CVE-2021-21303 | Helm up to 3.5.1 Version injection (Nessus ID 261355)
CVE-2019-17109 | Koji up to 1.18.0 path traversal (FEDORA-2019-adf618865f / Nessus ID 261357)
Mydata
You must login to view this content