Threat and Vulnerability Intelligence Database

RSS Feed

Example Searches:

Description: Lake HVAC was founded in 1975. For more than 40 years, Lake HVAC has built and maintained quality HVAC systems for industrial, commercial, institutional and high tech/biotech clients in Massachusetts and New Hampshire. We work with general contractors, developers, facilities departments and engineering firms to ensure that our clients receive efficient, reliable, and cost-effective solutions for their HVAC systems. Our professional experience in HVAC installation, service and design ensures your project will maintain long-term functionality, efficiency and return on facility investment.
Source: Ransomware.live
April 15th, 2025 (6 days ago)
Description: Astra Products of Ohio is a supplier to the window covering industry. We do not fabricate or install window coverings. We offer products that allow for our customers to fabricate window coverings that meet the ANSI/WCMA A100.1-2022 standards. We are committed to continue our search for new, child safe products to offer our customers.
Source: Ransomware.live
April 15th, 2025 (6 days ago)

CVE-2025-25456

Description: Tenda AC10 V4.0si_V16.03.10.20 is vulnerable to Buffer Overflow in AdvSetMacMtuWan via mac2.

EPSS Score: 0.06%

Source: CVE
April 15th, 2025 (6 days ago)

CVE-2025-22903

Description: TOTOLINK N600R V4.3.0cu.7647_B20210106 was discovered to contain a stack overflow via the pin parameter in the function setWiFiWpsConfig.

EPSS Score: 0.03%

Source: CVE
April 15th, 2025 (6 days ago)

CVE-2025-1292

Description: Out-Of-Bounds Write in TPM2 Reference Library in Google ChromeOS 122.0.6261.132 stable on Cr50 Boards allows an attacker with root access to gain persistence and bypass operating system verification via exploiting the NV_Read functionality during the Challenge-Response process.

EPSS Score: 0.01%

Source: CVE
April 15th, 2025 (6 days ago)

CVE-2025-1122

Description: Out-Of-Bounds Write in TPM2 Reference Library in Google ChromeOS 122.0.6261.132 stable on Cr50 Boards allows an attacker with root access to gain persistence and bypass operating system verification via exploiting the NV_Read functionality during the Challenge-Response process.

EPSS Score: 0.01%

Source: CVE
April 15th, 2025 (6 days ago)
Description: Russian state-sponsored espionage group Midnight Blizzard is behind a new spear-phishing campaign targeting diplomatic entities in Europe, including embassies. [...]
Source: BleepingComputer
April 15th, 2025 (6 days ago)
Description: Bad bots are becoming increasingly difficult to detect as they more easily mimic human behaviors and utilize evasion techniques, researchers say.
Source: Dark Reading
April 15th, 2025 (6 days ago)

CVE-2025-29213

Description: A zip slip vulnerability in the component \service\migrate\MigrateForm.java of JEEWMS v3.7 allows attackers to execute arbitrary code via a crafted Zip file.

EPSS Score: 0.03%

Source: CVE
April 15th, 2025 (7 days ago)

CVE-2025-28399

Description: An issue in Erick xmall v.1.1 and before allows a remote attacker to escalate privileges via the updateAddress method of the Address Controller class.

EPSS Score: 0.14%

Source: CVE
April 15th, 2025 (7 days ago)