Aggregator
CVE-2025-9055 | Axis AXIS OS up to 12.7.30 VAPIX Edge Storage API unnecessary privileges (EUVD-2025-74036 / WID-SEC-2025-2546)
CVE-2025-9524 | Axis AXIS OS prior 12.7.11 VAPIX API port.cgi improper validation of specified type of input (EUVD-2025-74035 / WID-SEC-2025-2546)
CVE-2025-8998 | Axis OS prior 12.7.27 Temporary Directory file inclusion (EUVD-2025-74037 / WID-SEC-2025-2546)
CVE-2025-6779 | Axis AXIS OS up to 12.6.39 ACAP Configuration File permission assignment (EUVD-2025-74040 / WID-SEC-2025-2546)
CVE-2025-8108 | Axis AXIS OS up to 12.7.32 ACAP Configuration File improper validation of specified type of input (EUVD-2025-74039 / WID-SEC-2025-2546)
The Limitations of Google Play Integrity API (ex SafetyNet)
This overview outlines the history and use of Google Play Integrity API and highlights some limitations. We also compare and contrast Google Play Integrity API with the comprehensive mobile security offered by Approov. The imminent deprecation of Google SafetyNet Attestation API means this is a good time for a comprehensive evaluation of solutions in this space.
The post The Limitations of Google Play Integrity API (ex SafetyNet) appeared first on Security Boulevard.
Public Report: Google Private AI Compute Review
SAP fixed a maximum severity flaw in SQL Anywhere Monitor
Microsoft Patch Tuesday addresses 63 defects, including one actively exploited zero-day
Researchers warn that although exploitation of the zero-day is complex, a functional exploit exists in the wild.
The post Microsoft Patch Tuesday addresses 63 defects, including one actively exploited zero-day appeared first on CyberScoop.
CVE-2025-12944 | Netgear DGN2200v4 up to 1.0.0.126 input validation
CVE-2025-24848 | Intel CIP Software prior 2.4.0.11001 protection mechanism (intel-sa-01328)
CVE-2025-47179 | Microsoft Configuration Manager access control
CVE-2025-59240 | Microsoft Excel information disclosure
CVE-2025-59499 | Microsoft SQL Server sql injection
CVE-2025-59504 | Microsoft Azure Monitor heap-based overflow
The New MSSP Mandate: Visibility into Data Risk, Not Just Endpoints
MSSPs can’t stop at endpoint protection. Learn why visibility into data risk is the new mandate—and how DSPM helps providers deliver data-first security.
The post The New MSSP Mandate: Visibility into Data Risk, Not Just Endpoints appeared first on Security Boulevard.
Patch Now: Microsoft Flags Zero-Day & Critical Zero-Click Bugs
Payoutsking
You must login to view this content