Vulnerability
The latest Vulnerability coverage — news, analysis, and updates from the WindowsNews.AI desk.
CVE-2024-48510: Unauthenticated RCE in Siemens SiPass Integrated Before V2.90
A critical vulnerability has been discovered in Siemens SiPass Integrated, a widely used access control system in industrial and enterprise environments. Tracked as CVE-2024-48510, this flaw poses...
CISA warns ABB FLXEON controllers face takeover via CVE-2025-XXXX1 and others, urging immediate patching.
The Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent advisory regarding critical vulnerabilities in ABB FLXEON controllers that could allow attackers to take complete...
CISA Warns: Hard-Coded Credentials Expose ABB PLCs to Critical Infrastructure Attacks
The Cybersecurity and Infrastructure Security Agency (CISA) has issued a critical alert regarding multiple vulnerabilities in ABB industrial control systems (ICS), with the most severe flaw stemming...
CISA Warns: Patch Craft CMS & PAN-OS Flaws Now to Protect Windows Systems
The Cybersecurity and Infrastructure Security Agency (CISA) has issued urgent warnings about critical vulnerabilities affecting Craft CMS and Palo Alto Networks' PAN-OS, posing significant risks to...
Critical Carrier Block Load DLL Hijacking Flaw Hits Industrial Systems
The cybersecurity landscape has been shaken by the discovery of a critical vulnerability known as the Carrier Block Load (CBL) vulnerability, which exposes systems to DLL hijacking and potential...
CISA Adds New Vulnerabilities: Critical Security Updates IT Professionals Must Know
The Cybersecurity and Infrastructure Security Agency (CISA) has recently updated its Known Exploited Vulnerabilities (KEV) catalog with several critical security flaws that demand immediate attention...
CVE-2024-51547 ABB ICS Bug Hits 9.8 CVSS, Patches Released
A newly discovered critical vulnerability, identified as CVE-2024-51547, has been reported in multiple ABB industrial control systems (ICS) products. This flaw poses significant risks to operational...
CISA Urges Immediate Windows Patching for Critical Zero-Day Flaws
The Cybersecurity and Infrastructure Security Agency (CISA) has issued urgent warnings about newly discovered vulnerabilities affecting Windows systems, emphasizing the need for immediate patching to...
CISA warns of 9.8 critical Elseta Vinci flaw enabling remote code execution in ICS versions 4.2-5.1
The Cybersecurity and Infrastructure Security Agency (CISA) has issued a critical advisory regarding a newly discovered vulnerability in the Elseta Vinci Protocol Analyzer, a widely used tool in...
CISA Warns: Critical RadiAnt DICOM Viewer Bug Exposes Medical Data to MITM Attacks
The Cybersecurity and Infrastructure Security Agency (CISA) has issued a critical alert regarding a certificate validation vulnerability in RadiAnt DICOM Viewer, a widely used medical imaging...
CISA warns ABB FLXEON bugs (CVE-2024-0728, CVSS 9.8) allow root-level command injection in ICS devices.
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued a critical advisory regarding multiple vulnerabilities in ABB FLXEON controllers that could allow attackers to execute...
Critical CISA Advisory: Vulnerability in Carrier Block Load Software (CVE-2024-10930) Explained
The Cybersecurity and Infrastructure Security Agency (CISA) has issued a critical advisory regarding a newly discovered vulnerability in Carrier Block Load software, designated as CVE-2024-10930....