Security Vulnerabilities

The latest Security Vulnerabilities

NewsSecurity Vulnerabilities

Siemens Simcenter Femap STP File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability (CVE-2025-40762)

– This vulnerability allows remote attackers to execute arbitrary code on affected installations of Siemens Simcenter Femap.

Read More
NewsSecurity Vulnerabilities

Cisco IOS XR Software Image Verification Bypass Vulnerability (CVE-2025-20248)

CVE number = CVE-2025-20248 A vulnerability in the installation process of Cisco IOS XR Software could allow an authenticated, local

Read More
NewsSecurity Vulnerabilities

Cisco Unified Communications Manager Cross-Site Request Forgery Vulnerability (CVE-2025-20326)

– A vulnerability in the web-based management interface of Cisco Unified Communications Manager (Unified CM) Software and Cisco Unified CM Session Management Edition (SME) Software could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack on an affected device.

Read More
NewsSecurity Vulnerabilities

Realtek rtl81xx SDK Wi-Fi Driver rtwlanu Heap-based Buffer Overflow Local Privilege Escalation Vulnerability (CVE-2025-8300)

– This vulnerability allows local attackers to escalate privileges on affected installations of Realtek rtl81xx SDK Wi-Fi driver.

Read More
NewsSecurity Vulnerabilities

QEMU uefi-vars Uninitialized Memory Information Disclosure Vulnerability (CVE-2025-8860)

– This vulnerability allows local attackers to disclose sensitive information on affected installations of QEMU.

Read More
NewsSecurity Vulnerabilities

Cisco Webex Meetings URL Redirection Vulnerability (CVE-2025-20291)

– A vulnerability in Cisco Webex Meetings could have allowed an unauthenticated, remote attacker to redirect a targeted Webex Meetings user to an untrusted website. Cisco has addressed this vulnerability in the Cisco Webex Meetings service, and no customer action is needed.

Read More
NewsSecurity Vulnerabilities

Cisco Webex Meetings Cross-Site Scripting Vulnerability (CVE-2025-20328)

CVE number = CVE-2025-20328 A vulnerability in the user profile component of Cisco Webex Meetings could have allowed an authenticated,

Read More
NewsSecurity Vulnerabilities

QNAP QHora-322 miro_webserver_lib_RunExecBash Command Injection Remote Code Execution Vulnerability (CVE-2024-13087)

– This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of QNAP QHora-322 routers.

Read More
NewsSecurity Vulnerabilities

TeamViewer Link Following Denial-of-Service Vulnerability (CVE-2025-44002)

– This vulnerability allows local attackers to create a denial-of-service condition on affected installations of TeamViewer.

Read More
NewsSecurity Vulnerabilities

Cisco Nexus Series Switches Intermediate System-to-Intermediate System Denial of Service Vulnerability (CVE-2025-20241)

CVE number = CVE-2025-20241 A vulnerability in the Intermediate System-to-Intermediate System (IS-IS) feature of Cisco NX-OS Software for Cisco Nexus

Read More