CVE Alert: CVE-2025-48393
Vulnerability Summary: CVE-2025-48393 The server identity check mechanism for firmware upgrade performed via command shell is insecurely implemented potentially allowing...
Vulnerability Summary: CVE-2025-48393 The server identity check mechanism for firmware upgrade performed via command shell is insecurely implemented potentially allowing...
Vulnerability Summary: CVE-2024-8244 The filepath.Walk and filepath.WalkDir functions are documented as not following symbolic links, but both functions are susceptible...
Vulnerability Summary: CVE-2025-53786 On April 18th 2025, Microsoft announced Exchange Server Security Changes for Hybrid Deployments and accompanying non-security Hot...
Vulnerability Summary: CVE-2025-50233 A vulnerability in QCMS version 6.0.5 allows authenticated users to read arbitrary files from the server due...
Vulnerability Summary: CVE-2025-48394 An attacker with authenticated and privileged access could modify the contents of a non-sensitive file by traversing...
Vulnerability Summary: CVE-2025-20215 A vulnerability in the meeting-join functionality of Cisco Webex Meetings could have allowed an unauthenticated, network-proximate attacker...
Vulnerability Summary: CVE-2025-8419 A vulnerability was found in Keycloak-services. Special characters used during e-mail registration may perform SMTP Injection and...
Vulnerability Summary: CVE-2025-51531 A reflected cross-site scripting (XSS) vulnerability in Sage DPW v2024.12.003 allows attackers to execute arbitrary JavaScript in...
Vulnerability Summary: CVE-2025-51532 Incorrect access control in Sage DPW v2024.12.003 allows unauthorized attackers to access the built-in Database Monitor via...
Vulnerability Summary: CVE-2025-20331 A vulnerability in the web-based management interface of Cisco ISE and Cisco ISE-PIC could allow an authenticated,...
Hey everyone, I'm excited to share something special just for our Patreon community: a brand new video presentation on TruffleHog...
Ransomware Group: D4RK4RMY VICTIM NAME: ONEX CANADA ASSET MANAGEMENT INC NOTE: No files or stolen information are by RedPacket Security....
Ransomware Group: D4RK4RMY VICTIM NAME: TSAI CAPITAL NOTE: No files or stolen information are by RedPacket Security. Any legal issues...
Ransomware Group: D4RK4RMY VICTIM NAME: MAGELLAN FINANCIAL GROUP NOTE: No files or stolen information are by RedPacket Security. Any legal...
Ransomware Group: D4RK4RMY VICTIM NAME: MIZUHA FINANCIAL GROUP NOTE: No files or stolen information are by RedPacket Security. Any legal...
Ransomware Group: D4RK4RMY VICTIM NAME: BRIDGEWATER ASSOCIATES NOTE: No files or stolen information are by RedPacket Security. Any legal issues...
Vulnerability Summary: CVE-2025-30127 An issue was discovered on Marbella KR8s Dashcam FF 2.0.8 devices. Once access is gained either by...
Vulnerability Summary: CVE-2025-8665 A vulnerability, which was classified as critical, has been found in agno-agi agno up to 1.7.5. This...
Vulnerability Summary: CVE-2025-20332 A vulnerability in the web-based management interface of Cisco ISE could allow an authenticated, remote attacker to...
Vulnerability Summary: CVE-2025-38746 Dell SupportAssist OS Recovery, versions prior to 5.5.14.0, contains an Exposure of Sensitive Information to an Unauthorized...
Vulnerability Summary: CVE-2025-8667 A vulnerability, which was classified as critical, was found in SkyworkAI DeepResearchAgent up to 08eb7f8eb9505d0094d75bb97ff7dacc3fa3bbf2. Affected is...
Vulnerability Summary: CVE-2025-38747 Dell SupportAssist OS Recovery, versions prior to 5.5.14.0, contain a Creation of Temporary File With Insecure Permissions...
Vulnerability Summary: CVE-2025-45766 poco v1.14.1-release was discovered to contain weak encryption. Affected Endpoints: No affected endpoints listed. Published Date: 8/6/2025,...
Vulnerability Summary: CVE-2025-46659 An issue was discovered in ExonautWeb in 4C Strategies Exonaut 21.6. Information disclosure can occur via an...