Firmware Vulnerabilities
The latest Firmware Vulnerabilities coverage — news, analysis, and updates from the WindowsNews.AI desk.
Critical Tycon Firmware Flaw Lets Attackers Remotely Control Power at Industrial Facilities
A critical security vulnerability with a CVSS score of 9.8 out of 10 has been discovered in Tycon Systems’ TPDIN-Monitor-WEB2 remote power monitoring and control device, the U.S. Cybersecurity and...
Hardy Barth Salia EV Charger Vulnerabilities: RCE and File Upload Flaws Threaten Critical Infrastructure
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued a critical advisory warning about multiple vulnerabilities in Hardy Barth's Salia EV Charge Controller, revealing that...
Critical Lantronix EDS Vulnerabilities Exposed: Root Access, 9.8 CVSS Scores Threaten Industrial Networks
A set of severe vulnerabilities in Lantronix's EDS family of serial-to-Ethernet device servers has exposed industrial and enterprise edge networks to potential compromise. The affected...
Windows 10’s KB5065429 Update Opens the Consumer ESU Enrollment Door as End of Support Nears
Microsoft has pushed out KB5065429, the September 2025 cumulative update for Windows 10 22H2, and it arrives as more than just a standard security rollup — it’s the key that unlocks the consumer...
CISA Alerts to Critical EG4 Inverter Flaws That Expose Solar Infrastructure to Remote Sabotage
A cluster of high-severity vulnerabilities in every major EG4 Electronics solar inverter model has set off alarm bells across the global energy sector, with the U.S. Cybersecurity and Infrastructure...
Critical Authentication Bypass in Burk ARC Solo Exposes Broadcast Systems to Remote Takeover
A critical vulnerability in Burk Technology's ARC Solo remote site controller allows attackers to change the device password without any credentials, enabling full device takeover and raising alarms...
Critical Windows 11 Secure Boot Flaw: Millions of Systems at Risk
A critical vulnerability in Windows 11's Secure Boot mechanism, designated CVE-2025-3052, has been discovered, exposing millions of systems to sophisticated firmware attacks. This flaw, uncovered by...
Critical Windows 11 Secure Boot Flaw: CVE-2025-3052 Explained
A recently discovered vulnerability, CVE-2025-3052, exposes a critical flaw in Windows 11's Secure Boot mechanism, potentially allowing attackers to install persistent malware and bypass core system...
Mitsubishi MELSEC iQ-F PLC Vulnerability: How to Secure Industrial Automation Systems
Industrial automation systems worldwide face heightened risks as researchers uncover critical vulnerabilities in Mitsubishi Electric's MELSEC iQ-F series programmable logic controllers (PLCs). These...
Dell iDRAC CVE-2025-27689: Critical Patch Now for Enterprise Server Security
Servers around the globe are the backbone of enterprise digital infrastructure, underpinning cloud platforms, business applications, and sensitive databases. Central to the management of these...
June 2025 Windows Update Causes Boot Failures on Surface Hub v1: What IT Admins Need to Know
Microsoft's June 2025 Patch Tuesday update (KB5060533) has triggered widespread boot failures on first-generation Surface Hub devices, leaving enterprise IT teams scrambling for solutions. The...
Siemens Patches Critical Privilege Flaws in SCALANCE and RUGGEDCOM ICS Devices
Industrial control systems (ICS) form the backbone of critical infrastructure, and their security is paramount to national and economic stability. Siemens' SCALANCE and RUGGEDCOM devices, widely used...