Aggregator
CVE-2022-49437 | Linux Kernel up to 5.15.45/5.17.13/5.18.2 of_find_compatible_node reference count (Nessus ID 274839)
CVE-2022-49024 | Linux Kernel up to 5.15.81/6.0.11 m_can_class_free_dev allocation of resources (ea8dc27bb044/0bbb88651ef6/1eca1d4cc21b / Nessus ID 274839)
CVE-2022-48830 | Linux Kernel up to 5.10.100/5.15.23/5.16.9 CAN isotp_rcv state issue (Nessus ID 274839)
Stacking Your Defenses: Integrating Advanced Threat Prevention and SIEM
In today’s rapidly evolving threat landscape, effective security operations hinge on two critical pillars: automation and context aggregation. As organizations grapple with increasingly sophisticated attacks, the ability to seamlessly integrate diverse security solutions becomes paramount. This challenge is easily resolved through the successful integration of VMware vDefend Advanced Threat Prevention (ATP) with Security Information and … Continued
The post Stacking Your Defenses: Integrating Advanced Threat Prevention and SIEM appeared first on VMware Security Blog.
ДНК под микроскопом ожила: люди впервые увидели, как она колеблется, изгибается и чинит себя в реальном времени
Microsoft Exchange 'Under Imminent Threat,' Act Now
CVE-2023-26925 | D-Link DIR-882 1.30 Syslog information disclosure (EUVD-2023-30716)
CVE-2023-26934 | Xpdf 4.04 PDF File object.cc denial of service (EUVD-2023-30725)
CVE-2023-26923 | Musescore up to 4.0.1 MIDI File stack-based overflow (Issue 16346 / EUVD-2023-30714)
CVE-2023-26922 | Varisicte matrix-gui 2.0 matrix-gui-2.0 shell_exect sql injection (EUVD-2023-30713)
CVE-2023-26921 | quectel AG550QCN ql_atfwd os command injection (EUVD-2023-30712)
CVE-2023-26919 | delight-nashorn-sandbox 0.2.4/0.2.5 Java Process loadWithNewGlobal (Issue 135 / EUVD-2023-30711)
New Pro Labs arrive with a limited-time discount
Старые грабли, новые баги. OWASP обновил топ-10 угроз веб-приложений
HPE security advisory (AV25-743)
Citrix NetScaler ADC and Gateway Vulnerability Enables Cross-Site Scripting Attacks
Cloud Software Group has disclosed a cross-site scripting (XSS) vulnerability affecting NetScaler ADC and NetScaler Gateway products. Tracked as CVE-2025-12101, the flaw allows attackers to inject malicious scripts into web pages viewed by users, potentially leading to session hijacking, data theft, or unauthorized actions. The vulnerability carries a moderate CVSSv4 score of 5.9, highlighting its […]
The post Citrix NetScaler ADC and Gateway Vulnerability Enables Cross-Site Scripting Attacks appeared first on Cyber Security News.