CVE-2024-12345

A vulnerability classified as problematic was found in INW Krbyyyzo 25.2002. Affected by this vulnerability is an unknown functionality of the file /gbo.aspx of the component Daily Huddle Site. The manipulation of the argument s leads to resource consumption. It is possible to launch the attack on the local host. Other endpoints might be affected as well.

This Cyber News was published on www.tenable.com. Publication date: Tue, 28 Jan 2025 04:56:02 +0000


Cyber News related to CVE-2024-12345

CISA Flags Critical TP-Link Router Flaws Exploited in the Wild (CVE-2025-12345, CVE-2025-12346) - The Cybersecurity and Infrastructure Security Agency (CISA) has issued an alert regarding critical vulnerabilities discovered in TP-Link routers, identified as CVE-2025-12345 and CVE-2025-12346. These flaws have been actively exploited by threat ...
2 months ago Thehackernews.com CVE-2025-12345 CVE-2025-12346
Critical SAP S/4HANA Vulnerability CVE-2025-12345 Exposes Enterprises to Remote Code Execution - A critical vulnerability identified as CVE-2025-12345 has been discovered in SAP S/4HANA, a leading enterprise resource planning software. This flaw allows remote attackers to execute arbitrary code, potentially compromising sensitive business data ...
2 months ago Thehackernews.com CVE-2025-12345
Google Patches Chrome Zero-Day Vulnerability Actively Exploited in the Wild (CVE-2025-12345) - Google has released an urgent security update to patch a critical zero-day vulnerability in its Chrome browser, identified as CVE-2025-12345. This flaw was actively exploited by threat actors, putting millions of users at risk of remote code ...
2 months ago Thehackernews.com CVE-2025-12345
AWS LetsEncrypt Lambda: Custom TLS Provider - DZone - Trying to renew ... INFO[0000] Checking certificate for domain 'hackernoon.referrs.me' with arn 'arn:aws:acm:us-east-2:004867756392:certificate/72f872fd-e577-43f4-ae38-6833962630af' INFO[0000] Certificate status is 'ISSUED' INFO[0000] Certificate in ...
1 year ago Feeds.dzone.com
Vulnerability Summary for the Week of March 11, 2024 - Published 2024-03-15 CVSS Score not yet calculated Source & Patch Info CVE-2021-47111416baaa9-dc9f-4396-8d5f-8c081fb06d67416baaa9-dc9f-4396-8d5f-8c081fb06d67416baaa9-dc9f-4396-8d5f-8c081fb06d67 PrimaryVendor - Product linux - linux Description In the ...
1 year ago Cisa.gov
Vulnerability Summary for the Week of March 4, 2024 - Published 2024-03-06 CVSS Score not yet calculated Source & Patch Info CVE-2023-52584416baaa9-dc9f-4396-8d5f-8c081fb06d67416baaa9-dc9f-4396-8d5f-8c081fb06d67416baaa9-dc9f-4396-8d5f-8c081fb06d67416baaa9-dc9f-4396-8d5f-8c081fb06d67 PrimaryVendor - ...
1 year ago Cisa.gov
Weekly Cybersecurity Recap : Sharepoint 0-day, Vmware Exploitation, Threats and Cyber Attacks - Tracked as CVE-2025-12345, this flaw allows remote code execution (RCE) without authentication, potentially enabling attackers to compromise sensitive data or deploy malware on affected servers. The U.S. Cybersecurity and Infrastructure Security ...
4 months ago Cybersecuritynews.com CVE-2025-12345 APT41
Salt Typhoon Exploits Cisco, Ivanti, Palo Alto, and F5 Vulnerabilities to Target Organizations Globally - Salt Typhoon, a sophisticated cyber espionage group, has been actively exploiting critical vulnerabilities in widely used enterprise software from Cisco, Ivanti, Palo Alto Networks, and F5 Networks. These exploits allow the threat actors to gain ...
2 months ago Thehackernews.com CVE-2025-12345 CVE-2024-56789 CVE-2024-98765 Salt Typhoon
Tenable Research - TRA-2025-35: Analysis of Recent Cyber Threats - This Tenable Research article, TRA-2025-35, provides an in-depth analysis of recent cyber threats impacting global organizations. It highlights emerging attack vectors, notable vulnerabilities, and the evolving tactics of threat actors. The report ...
2 months ago Tenable.com CVE-2024-12345 CVE-2024-67890 APT29 FIN7
Two zero-days patched in April Patch Tuesday alongside 74 other CVEs - In April's Patch Tuesday, Microsoft addressed two critical zero-day vulnerabilities alongside 74 other CVEs, underscoring the ongoing importance of timely patch management in cybersecurity. The first zero-day, CVE-2024-12345, is a remote code ...
2 months ago Infosecurity-magazine.com CVE-2024-12345 CVE-2024-67890
Apache Tomcat Security Vulnerabilities: What You Need to Know - Apache Tomcat, a widely used open-source web server and servlet container, has recently been the focus of several critical security vulnerability disclosures. These vulnerabilities pose significant risks to organizations relying on Tomcat for their ...
1 month ago Cybersecuritynews.com CVE-2024-12345 CVE-2024-12346
CVE-2024-24760 - mailcow is a dockerized email package, with multiple containers linked in one bridged network. A security vulnerability has been identified in mailcow affecting versions < 2024-01c. This vulnerability potentially allows attackers on the same ...
1 year ago
CVE-2024-12345 - A vulnerability classified as problematic was found in INW Krbyyyzo 25.2002. Affected by this vulnerability is an unknown functionality of the file /gbo.aspx of the component Daily Huddle Site. The manipulation of the argument s leads to resource ...
10 months ago Tenable.com
CVE-2024-34358 - TYPO3 is an enterprise content management system. Starting in version 9.0.0 and prior to versions 9.5.48 ELTS, 10.4.45 ELTS, 11.5.37 LTS, 12.4.15 LTS, and 13.1.1, the `ShowImageController` (`_eID tx_cms_showpic_`) lacks a cryptographic HMAC-signature ...
1 year ago Tenable.com
Tableau Server Vulnerability Exposes Sensitive Data to Attackers - A critical vulnerability has been discovered in Tableau Server, a widely used data visualization platform, which could allow attackers to access sensitive data. This security flaw, identified as CVE-2024-12345, enables unauthorized users to bypass ...
3 months ago Cybersecuritynews.com CVE-2024-12345
SAP S/4HANA Vulnerability Actively Exploited in the Wild - A critical vulnerability in SAP S/4HANA, a widely used enterprise resource planning software, is currently being actively exploited by threat actors. This security flaw allows attackers to execute unauthorized commands and potentially gain control ...
2 months ago Cybersecuritynews.com CVE-2024-12345 Unknown threat actors
Linux CUPS Vulnerability Exposes Systems to Remote Code Execution - A critical vulnerability has been discovered in the Linux Common UNIX Printing System (CUPS), which could allow attackers to execute remote code on affected systems. This security flaw poses a significant risk to Linux users, especially those running ...
2 months ago Cybersecuritynews.com CVE-2024-12345
Cisco ASA and FTD Software 0-Day Vulnerability - Cisco has disclosed a critical zero-day vulnerability affecting its Adaptive Security Appliance (ASA) and Firepower Threat Defense (FTD) software. This vulnerability allows remote attackers to execute arbitrary code, potentially leading to full ...
1 month ago Cybersecuritynews.com CVE-2024-12345
Critical Samba RCE Vulnerability Exposes Millions to Remote Attacks - A critical remote code execution (RCE) vulnerability has been discovered in Samba, the widely used open-source software that enables file and print services to SMB/CIFS clients. This vulnerability allows attackers to execute arbitrary code on ...
1 month ago Cybersecuritynews.com CVE-2024-12345
WSUS Vulnerability Actively Exploited: What You Need to Know - A critical vulnerability in Microsoft's Windows Server Update Services (WSUS) is currently being actively exploited by threat actors. This flaw allows attackers to execute arbitrary code on affected systems, potentially leading to full system ...
3 weeks ago Cybersecuritynews.com CVE-2024-12345
Apache ActiveMQ Vulnerability: Critical Flaw Exposes Messaging Systems to Remote Attacks - Apache ActiveMQ, a widely used open-source messaging server, has been found vulnerable to a critical security flaw that could allow remote attackers to execute arbitrary code and disrupt messaging services. This vulnerability, identified as ...
1 month ago Cybersecuritynews.com CVE-2024-12345
CVE-2024-37051 - GitHub access token could be exposed to third-party sites in JetBrains IDEs after version 2023.1 and less than: IntelliJ IDEA 2023.1.7, 2023.2.7, 2023.3.7, 2024.1.3, 2024.2 EAP3; Aqua 2024.1.2; CLion 2023.1.7, 2023.2.4, 2023.3.5, 2024.1.3, 2024.2 ...
1 year ago Tenable.com
Android Security Alert: Google Patches Critical Vulnerabilities in Latest Update - Google has released a critical security update addressing multiple vulnerabilities in the Android operating system. These patches fix several high-severity flaws that could allow remote code execution and privilege escalation, potentially exploited ...
2 months ago Thehackernews.com CVE-2025-12345 CVE-2025-12346