Skip to main content
Advanced Search
Search Terms
Content Type

Exact Matches
Tag Searches
Date Options
Updated after
Updated before
Created after
Created before

Search Results

491 total results found

SonicOS SSL VPN Authentication Bypass Vulnerability (CVE-2024-53704)

A proof-of-concept exploit has been published for CVE-2024-53704, which affects SonicWall NGFWs

Year
2025
Severity
Medium
Threat type
Insecure software

Ivanti Releases February 2025 Security Updates

Three advisories cover vulnerabilities and weaknesses in Ivanti Cloud Services Application (CSA), Ivanti Neurons for MDM, Ivanti Connect Secure, Policy Secure, and Secure Access Client.

Year
2025
Severity
Medium
Threat type
Insecure software

Palo Alto Networks Releases Security Updates for PAN-OS

Attack chain using CVE-2025-0108 and CVE-2025-0111 has been observed in the wild

Year
2025
Severity
Medium
Threat type
Insecure software

Active Exploitation of Critical Vulnerability Chain in SimpleHelp

CVE-2024-57726, CVE-2024-57727, and CVE-2024-57728 can be exploited in a chain to allow full compromise of a SimpleHelp server

Year
2025
Severity
Medium
Threat type
Insecure software

Juniper Networks Releases Out-of-Cycle Security Bulletin for Critical Vulnerability

API authentication bypass vulnerability CVE-2025-21589 affects Session Smart Router, Conductor, and WAN Assurance Managed Routers

Year
2025
Severity
Medium
Threat type
Insecure software

F5 Releases Quarterly Security Notification (February 2025) Affecting BIG-IP Products

One of the 13 high impact advisories addresses the command injection vulnerability CVE-2025-20029, which could lead to arbitrary system command execution

Year
2025
Severity
Medium
Threat type
Insecure software

Medixant Releases Security Update for RadiAnt DICOM Viewer

Successful exploitation of CVE-2025-1001 could allow an attacker to perform a machine-in-the-middle attack (MITM)

Year
2025
Severity
Medium
Threat type
Insecure software

Cisco Releases Security Advisory for Secure Client

CVE-2025-20206 could allow an attacker to execute arbitrary code with system privileges

Year
2025
Severity
Medium
Threat type
Insecure software

Microsoft Releases March 2025 Security Updates

Scheduled updates for Microsoft products, including security updates for 57 vulnerabilities, of which six are reported as exploited

Year
2025
Severity
Medium
Threat type
Insecure software

Apple Releases Security Updates for Multiple Products

Security updates include remediation for exploited vulnerability CVE-2025-24201, which affects iOS, iPadOS, and macOS 

Year
2025
Severity
Medium
Threat type
Insecure software

Broadcom Releases Security Updates for VMware ESXi, Workstation, Fusion, and vCenter Server

Advisory addresses three security vulnerabilities that could result in DoS, RCE, or partially reading arbitrary files

Year
2024
Severity
Medium
Threat type
Insecure software

Multiple Vulnerabilities in Ivanti Endpoint Manager Mobile

Vulnerabilities could allow an attacker to escalate privileges, modify data, or execute arbitrary commands 

Year
2024
Severity
Medium
Threat type
Insecure software

Ivanti Releases Security Advisory May 2024

Sixteen vulnerabilities have been seen in products including Avalanche, Connect Secure, Secure Access, and EPM

Year
2024
Severity
Medium
Threat type
Insecure software

Cisco Releases May 2024 ASA, FMC, and FTD Software Security Advisory

Six advisories are included in the semi-annual Cisco Adaptive Security Appliance Software (ASA), Firepower Management Center (FMC) Software, and Firepower Threat Defense (FTD) Software Security Advisory bundled publication

Year
2024
Severity
Medium
Threat type
Insecure software

Google Releases Security Update for Exploited Vulnerability CVE-2024-5274

Security update addresses an exploited type confusion vulnerability in Google Chrome

Year
2024
Severity
Medium
Threat type
Insecure software

RCE Vulnerability in Atlassian Confluence Data Center and Confluence Server

Proof-of-concept exploit code released for RCE vulnerability CVE-2024-21683

Year
2024
Severity
Medium
Threat type
Insecure software

Check Point Releases Security Hotfix for Exploited Zero-Day Vulnerability CVE-2024-24919

Active exploitation of Check Point security gateway devices

Year
2024
Severity
Medium
Threat type
Insecure software

Linux Kernel Use-after-free Vulnerability

Linux kernel contains a vulnerability that could allow an attacker to achieve local privilege escalation

Year
2024
Severity
Medium
Threat type
Insecure software

Baxter Welch Allyn Connex Spot Monitor Vulnerability CVE-2024-1275

Successful exploitation of CVE-2024-1275 could lead to data compromise, resulting in impact and/or delay in patient care

Year
2024
Severity
Medium
Threat type
Insecure software

Baxter Welch Allyn Connex Spot Monitor Vulnerability CVE-2024-1275

Successful exploitation of CVE-2024-1275 could lead to data compromise, resulting in impact and/or delay in patient care

Year
2024
Severity
Medium
Threat type
Insecure software