X

Vous n'êtes pas connecté

Maroc Maroc - THECYBERTHRONE.IN - A La Une - 21/Feb 14:04

MongoDB is affected by Twin Critical Vulnerabilities

CVE-2025-23061: Mongoose Search Injection Vulnerability Description: CVE-2025-23061 is a critical vulnerability identified in Mongoose versions prior to 8.9.5. The vulnerability arises due to the improper handling of nested $where filters combined with the populate() function in MongoDB queries. This flaw allows attackers to manipulate queries, leading to search injection, where malicious input can alter the […]

Articles similaires

Sorry! Image not available at this time

CVE-2024-32838 impacts Apache Fineract with SQL injection

thecyberthrone.in - 14/Feb 13:41

CVE-2024-32838 is a critical security vulnerability affecting Apache Fineract, a popular open-source core banking platform. This vulnerability...

Sorry! Image not available at this time

CVE-2025-1094 impacts PostgreSQL with SQL Injection

thecyberthrone.in - 15/Feb 01:42

CVE-2025-1094 is a critical security vulnerability affecting the PostgreSQL interactive tool psql. This vulnerability presents significant risks to...

Sorry! Image not available at this time

CVE-2025-25064 impacts Zimbra with SQL Injection

thecyberthrone.in - 10/Feb 16:03

CVE-2025-25064 is a critical security vulnerability identified in Zimbra Collaboration software, a widely used email and collaboration platform. This...

Sorry! Image not available at this time

Citrix NetScaler Vulnerability Exposes Systems to Unauthorized Commands

itsecuritynews.info - 20/Feb 06:07

Cloud Software Group has raced to address a severe security flaw in its widely used NetScaler management infrastructure that could enable...

Sorry! Image not available at this time

Critical Microsoft Bing Vulnerability Enabled Remote Code Execution Attacks

itsecuritynews.info - 20/Feb 05:32

A critical security flaw in Microsoft Bing tracked as CVE-2025-21355, allowed unauthorized attackers to execute arbitrary code remotely, posing severe...

Sorry! Image not available at this time

CVE-2024-24472 impacts Fortinet Producrs

thecyberthrone.in - 12/Feb 12:43

CVE-2024-24472 is a critical security vulnerability identified in Fortinet products, specifically FortiOS and FortiProxy. This vulnerability poses a...

Sorry! Image not available at this time

CVE-2025-1240 impacts WinZip with a RCE

thecyberthrone.in - 15/Feb 11:57

CVE-2025-1240 is a critical security vulnerability affecting the popular file compression software WinZip. This vulnerability presents significant...

Sorry! Image not available at this time

LibreOffice Vulnerabilities Let Attackers Write to Arbitrary File & Extract Values

itsecuritynews.info - 18/Feb 08:31

Critical vulnerabilities in LibreOffice (CVE-2024-12425 and CVE-2024-12426) allow attackers to overwrite arbitrary files and retrieve sensitive system...

Sorry! Image not available at this time

Citrix addressed NetScaler console privilege escalation flaw

securityaffairs.co - 20/Feb 10:46

Citrix addressed a high-severity privilege escalation vulnerability impacting NetScaler Console and NetScaler Agent under certain conditions. Citrix...

Sorry! Image not available at this time

Xerox Printers Vulnerability Let Attackers Capture Authentication Data From LDAP & SMB

itsecuritynews.info - 17/Feb 14:07

Multiple vulnerabilities in enterprise-grade Xerox Versalink C7025 multifunction printers (MFPs) enable attackers to intercept authentication...

Les derniers communiqués

  • Aucun élément