Author: Angelo Barbosa

CVE-2025-0479 | CP Plus CP-XR-DE21-S Router DE21_S_india_hx806_1.057.043_0023 cookie httponly flag (CIVN-2025-0005)

A vulnerability classified as problematic was found in CP Plus CP-XR-DE21-S Router DE21_S_india_hx806_1.057.043_0023. Affected by this vulnerability is an unknown functionality. The manipulation leads to cookie without ‘httponly’ flag. This vulnerability is known as CVE-2025-0479. The attack can be launched remotely. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2023-52923 | Linux Kernel up to 6.4.10 netfilter nf_tables use after free

A vulnerability classified as critical has been found in Linux Kernel up to 6.4.10. Affected is the function nf_tables of the component netfilter. The manipulation leads to use after free. This vulnerability is traded as CVE-2023-52923. The attack can only be done within the local network. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2025-0577 | GNU glibc up to 2.40 arc4random random values

A vulnerability was found in GNU glibc up to 2.40. It has been rated as problematic. This issue affects the function arc4random. The manipulation leads to insufficiently random values. The identification of this vulnerability is CVE-2025-0577. The attack needs to be approached within the local network. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2025-0411 | 7-zip up to 24.07 Mark-of-the-Web protection mechanism

A vulnerability was found in 7-zip. It has been classified as problematic. This affects an unknown part of the component Mark-of-the-Web. The manipulation leads to protection mechanism failure. This vulnerability is uniquely identified as CVE-2025-0411. The attack needs to be approached locally. There is no exploit available. It is recommended to upgrade the affected...

Read More