Citrix Releases Emergency Patches for Actively Exploited CVE-2025-6543 in NetScaler ADC
The Hacker News 25.06.2025 16:51
Citrix has released security updates to address a critical flaw affecting NetScaler ADC that it said has been exploited in the wild.
The vulnerability, tracked as CVE-2025-6543, carries a CVSS score of 9.2 out of a maximum of 10.0.
It has been described as a case of memory overflow that could result in unintended control flow and denial-of-service. However, successful exploitation requires the
Citrix Bleed 2 Flaw Enables Token Theft; SAP GUI Flaws Risk Sensitive Data Exposure
The Hacker News 25.06.2025 15:37
Cybersecurity researchers have detailed two now-patched security flaws in SAP Graphical User Interface (GUI) for Windows and Java that, if successfully exploited, could have enabled attackers to access sensitive information under certain conditions.
The vulnerabilities, tracked as CVE-2025-0055 and CVE-2025-0056 (CVSS scores: 6.0), were patched by SAP as part of its monthly updates for January
SAP GUI Input History Found Vulnerable to Weak Encryption
Infosecurity Magazine 25.06.2025 15:00
Two SAP GUI vulnerabilities have been identified exposing sensitive data due to weak encryption in input history features
Admin-Attacken auf HPE OneView für VMware vCenter möglich
Heise Security 25.06.2025 11:41
Angreifer können an einer Sicherheitslücke in HPE OneView für VMware vCenter ansetzen. Eine dagegen gerüstete Version ist verfügbar.
Direkt nach Verurteilung: Russland entlässt hochgefährliche Hacker aus der Haft
Golem 25.06.2025 10:51
Einst bescherte die Cybergang Revil ihren Opfern Schäden in Millionenhöhe. Vier Mitglieder sind nun in Russland verurteilt worden – und durften sofort wieder gehen. (Cybercrime, Cyberwar)
Sonicwall: Angreifer kopieren VPN-Daten mittels Fake-NetExtender-App
Heise Security 25.06.2025 10:37
Derzeit ist eine von Cyberkriminellen manipulierte Ausgabe der VPN-Anwendung NetExtender in Umlauf.