Friday, April 24, 2026
HomeTagsVulnerabilities

Tag: Vulnerabilities

Xerox FreeFlow Vulnerabilities Enable SSRF and Remote Code Execution Attacks

Xerox Corporation has released a critical security bulletin addressing two high-severity vulnerabilities in its FreeFlow Core v8.0.4 software that could allow attackers to execute server-side request forgery (SSRF) and remote code execution (RCE) attacks, potentially compromising enterprise printing infrastructure. Diagram illustrating the process of Remote...

Critical Security Vulnerabilities Discovered in WWBN AVideo, MedDream, and Eclipse ThreadX Module

Cisco Talos’ Vulnerability Discovery & Research team has disclosed a total of twelve security vulnerabilities affecting three distinct software products. Seven vulnerabilities impact WWBN AVideo, four reside within the MedDream PACS Premium system, and one exists in the Eclipse ThreadX FileX module. All issues...

CISA Issues 10 ICS Advisories on Critical Vulnerabilities and Exploitation Risks

The Cybersecurity and Infrastructure Security Agency (CISA) on August 7, 2025, published ten new Industrial Control Systems (ICS) advisories to alert organizations to critical vulnerabilities and potential exploits affecting control-system components. These advisories address a broad spectrum of products—from programmable logic controllers to remote...

Rockwell Arena Simulation Vulnerabilities Enable Remote Attacks

Rockwell Automation has disclosed three high-severity vulnerabilities affecting its Arena Simulation software that could allow attackers to execute arbitrary code on targeted systems. The vulnerabilities, discovered by security researcher Michael Heinzl and tracked as CVE-2025-7025, CVE-2025-7032, and CVE-2025-7033, affect all Arena Simulation versions 16.20.09...

Millions of Dell PCs at Risk from Broadcom Chip Vulnerabilities Allowing Device Takeover

A critical vulnerabilities affecting over 100 Dell laptop models that could allow attackers to completely compromise systems and steal sensitive data, including passwords and biometric information. The vulnerabilities, collectively dubbed "ReVault" by Cisco Talos researchers, pose a significant threat to millions of business-critical devices...

SharePoint Deserialization Vulnerabilities Lets Hackers Steal IIS Machine Keys

Security researchers have revealed alarming details about how attackers are exploiting recently disclosed Microsoft SharePoint vulnerabilities to steal critical IIS Machine Keys, potentially giving hackers persistent backdoor access to compromised servers. The exploitation campaign, which began approximately 10 days ago, leverages CVE-2025-53770 and CVE-2025-53771...