A vulnerability was found in Endian Firewall 3.3.25 . It has been declared as critical . Affected is the function unlink of the file /cgi-bin/backup.cgi of the component Parameter Handler . Executing …
cyberintel.kalymoon.com · 47865 articles · updated every 4 hours · grows forever
A vulnerability was found in Endian Firewall 3.3.25 . It has been declared as critical . Affected is the function unlink of the file /cgi-bin/backup.cgi of the component Parameter Handler . Executing …
A vulnerability was found in Endian Firewall 3.3.25 . It has been rated as critical . Affected by this vulnerability is the function Open of the file /cgi-bin/logs_proxy.cgi of the component Regular E…
A vulnerability categorized as problematic has been discovered in thorsten phpMyFAQ up to 4.1.0 . Affected by this issue is the function edit_faq of the file SvgSanitizer.php of the component SVG Hand…
A vulnerability identified as critical has been detected in Endian Firewall 3.3.25 . This affects the function Open of the file /cgi-bin/logs_openvpn.cgi of the component Regular Expression Handler . …
A vulnerability labeled as problematic has been found in thorsten phpMyFAQ up to 4.1.0 . This vulnerability affects the function searchCustomPages of the file phpmyfaq/src/phpMyFAQ/Search.php . Such m…
A vulnerability marked as problematic has been reported in Endian Firewall 3.3.25 . This issue affects some unknown processing of the file /cgi-bin/routing.cgi of the component Parameter Handler . Per…
A vulnerability described as problematic has been identified in Endian Firewall 3.3.25 . Impacted is an unknown function of the file /manage/dnsmasq/hosts/ of the component Parameter Handler . Executi…
A vulnerability classified as problematic has been found in Endian Firewall 3.3.25 . The affected element is an unknown function of the file /cgi-bin/uplinkeditor.cgi of the component Parameter Handle…
A vulnerability classified as critical was found in Endian Firewall 3.3.25 . The impacted element is the function Open of the file /cgi-bin/logs_ids.cgi of the component Regular Expression Handler . T…
A vulnerability, which was classified as critical , has been found in Endian Firewall 3.3.25 . This affects the function Open of the file /cgi-bin/logs_log.cgi of the component Regular Expression Hand…
A vulnerability, which was classified as critical , was found in Endian Firewall 3.3.25 . This impacts the function Open of the file /cgi-bin/logs_firewall.cgi of the component Regular Expression Hand…
A vulnerability has been found in Endian Firewall 3.3.25 and classified as critical . Affected is the function Open of the file /cgi-bin/logs_smtp.cgi of the component Regular Expression Handler . Per…
A vulnerability was found in Endian Firewall 3.3.25 and classified as problematic . Affected by this vulnerability is an unknown functionality of the file /manage/dhcp/fixed_leases/ of the component P…
A vulnerability was found in Endian Firewall 3.3.25 . It has been classified as problematic . Affected by this issue is some unknown functionality of the file /cgi-bin/salearn.cgi of the component Par…
Written by: Stuart Carrera Introduction Building on recent BRICKSTORM research from Google Threat Intelligence Group (GTIG), this post explores the evolving threats facing virtualized environments. Th…
This report provides an overview of trends and developments in the cybercriminal ecosystem of Latin America and the Caribbean (LAC) in 2025.
From its GitHub repo: "Vite (French word for "quick", pronounced /vi?t/, like "veet") is a new breed of frontend build tooling that significantly improves the frontend development experience" [https:/…
A widely used JavaScript library called Axios was at the center of a serious supply chain attack that came to light on March 31, 2026. Two updated versions of the Axios npm package — version 1.14.1 an…
A dangerous Android rootkit named NoVoice has been hiding inside over 50 apps on Google Play, compromising more than 2.3 million devices worldwide. Tracked as Operation NoVoice, the malware uses 22 ex…
A critical warning has been issued over a newly discovered zero-day vulnerability in Google Chrome, raising serious concerns for users worldwide. This flaw is actively exploited in the wild, allowing …
A seemingly routine procurement email has become the entry point for a sophisticated six-stage malware attack targeting industrial suppliers and procurement teams. The campaign, tracked as NKFZ5966PUR…
The OpenSSH project released version 10.3 and 10.3p1 on April 2, 2026, addressing a shell injection vulnerability and introducing several security-hardening changes that administrators should review b…
Qilin ransomware group is deploying a sophisticated, multi-stage infection chain via a malicious msimg32.dll that can disable over 300 endpoint detection and response (EDR) drivers from virtually ever…
LNK files use GitHub C2, embedded decoders and PowerShell for persistence and data exfiltration