Security Vulnerabilities

The latest Security Vulnerabilities

NewsSecurity Vulnerabilities

Mescius ActiveReports.NET ReadValue Deserialization of Untrusted Data Remote Code Execution Vulnerability (CVE-2025-6810)

– This vulnerability allows remote attackers to execute arbitrary code on affected installations of Mescius ActiveReports.NET.

Read More
NewsSecurity Vulnerabilities

Mikrotik RouterOS VXLAN Source IP Improper Access Control Vulnerability (CVE-2025-6443)

– This vulnerability allows remote attackers to bypass access restrictions on affected installations of Mikrotik RouterOS.

Read More
NewsSecurity Vulnerabilities

TeamViewer Incorrect Permission Assignment Local Privilege Escalation Vulnerability (CVE-2025-36537)

– This vulnerability allows local attackers to escalate privileges on affected installations of TeamViewer.

Read More
NewsSecurity Vulnerabilities

PaperCut NG web-print-hot-folder Link Following Local Privilege Escalation Vulnerability (CVE-2024-8404)

– This vulnerability allows local attackers to escalate privileges on affected installations of PaperCut NG.

Read More
NewsSecurity Vulnerabilities

Clam AntiVirus UDF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability (CVE-2025-20234)

– This vulnerability allows remote attackers to disclose sensitive information on affected installations of Clam AntiVirus.

Read More
NewsSecurity Vulnerabilities

Ruby WEBrick read_header HTTP Request Smuggling Vulnerability (CVE-2025-6442)

– This vulnerability allows remote attackers to smuggle arbitrary HTTP requests on affected installations of Ruby WEBrick.

Read More
NewsSecurity Vulnerabilities

Delta Electronics CNCSoft-G2 DPAX File Parsing Memory Corruption Remote Code Execution Vulnerability (CVE-2025-47728)

– This vulnerability allows remote attackers to execute arbitrary code on affected installations of Delta Electronics CNCSoft-G2.

Read More
NewsSecurity Vulnerabilities

Cisco Meraki MX and Z Series AnyConnect VPN Authentication Denial of Service Vulnerability (CVE-2025-20271)

– A vulnerability in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series Teleworker Gateway devices could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition in the Cisco AnyConnect service on an affected device.

Read More
NewsSecurity Vulnerabilities

ClamAV UDF File Parsing Out-of-Bounds Read Information Disclosure Vulnerability (CVE-2025-20234)

CVE number = CVE-2025-20234 A vulnerability in Universal Disk Format (UDF) processing of ClamAV could allow an unauthenticated, remote attacker

Read More
NewsSecurity Vulnerabilities

Siemens TeleControl Server Basic CreateTrace SQL Injection Remote Code Execution Vulnerability (CVE-2025-27495)

– This vulnerability allows remote attackers to execute arbitrary code on affected installations of Siemens TeleControl Server Basic.

Read More