Close Menu
Indo Guard OnlineIndo Guard Online
  • Home
  • Cyber Security
  • Risk Management
  • Travel
  • Security News
  • Tech
  • More
    • Data Privacy
    • Data Protection
    • Global Security
What's Hot

New Httpbot Botnet Launches 200+ Precision Ddos Attacks to Game and Technology Sectors

May 16, 2025

10 best practices for effective data protection

May 16, 2025

Rat Remcos delivered via LNK files and mshta in attacks based on PowerShell

May 16, 2025
Facebook X (Twitter) Instagram
Facebook X (Twitter) Instagram YouTube
Indo Guard OnlineIndo Guard Online
Subscribe
  • Home
  • Cyber Security
  • Risk Management
  • Travel
  • Security News
  • Tech
  • More
    • Data Privacy
    • Data Protection
    • Global Security
Indo Guard OnlineIndo Guard Online
Home » New Security Disadvantages found in VMware and Crushftp tools – high risk without handling
Global Security

New Security Disadvantages found in VMware and Crushftp tools – high risk without handling

AdminBy AdminMarch 26, 2025No Comments2 Mins Read
VMware Tools and CrushFTP
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link


March 26, 2025Red LakshmananVulnerability / data safety

VMware and Crushftp tools

Broadcom has released safety patches to solve high -speed security lack in VMware tools for Windows that can lead to bypass authentication.

The vulnerability, which is monitored as the CVE-2025-22230, is assessed by 7.8 on a ten-point total vulnerability (CVSS).

“VMware tools for Windows contain vulnerability of authentication from the wrong access control,” Broadcom – Note in a warning issued on Tuesday. “The No. of non -administrative privileges on Windows VM may be able to perform certain high -profile operations within this VM.”

It is attributed to the identification and report on the shortage – Sergei Blizyuk from the Russian cybersecurity campaign of positive technologies.

Cybersecurity

CVE-2025-22230 influences VMware tools for Windows 11.xx and 12.xx, it was recorded in version 12.5.1. There are no solutions that resolve this issue.

Crushftp reveals a new drawback

Development occurs when CrushftP warns customers about “unauthorized HTTP (s) Port”, a vulnerability that affects the Crushftp 10 and 11.

“This question affects – Note. “The vulnerability was responsible, it is not used actively in the wild, which we know, more details at this time will not be given.”

According to detailed information A total cybersecurity company Rapid7, successful vulnerability can lead to unauthorized access via open http (s) port.

With safety deficiencies Vmware and Crushftp Earlier, it is operated by malicious actors, it is important that users move quickly to apply updates as soon as possible.

Found this article interesting? Keep track of us further Youter  and LinkedIn To read more exclusive content we publish.





Source link

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Admin
  • Website

Related Posts

New Httpbot Botnet Launches 200+ Precision Ddos Attacks to Game and Technology Sectors

May 16, 2025

10 best practices for effective data protection

May 16, 2025

Rat Remcos delivered via LNK files and mshta in attacks based on PowerShell

May 16, 2025

Researchers put up new flaws of the Intel processor that allows for memory leaks and attacks Spectre V2

May 16, 2025

Learn the smarter way to protect modern applications

May 16, 2025

Meta to train AI on EU users since May 27 without consent; NOIB is threatened by lawsuits

May 15, 2025
Add A Comment
Leave A Reply Cancel Reply

Loading poll ...
Coming Soon
Do You Like Our Website
: {{ tsp_total }}

Subscribe to Updates

Get the latest security news from Indoguardonline.com

Latest Posts

New Httpbot Botnet Launches 200+ Precision Ddos Attacks to Game and Technology Sectors

May 16, 2025

10 best practices for effective data protection

May 16, 2025

Rat Remcos delivered via LNK files and mshta in attacks based on PowerShell

May 16, 2025

Researchers put up new flaws of the Intel processor that allows for memory leaks and attacks Spectre V2

May 16, 2025

Learn the smarter way to protect modern applications

May 16, 2025

Meta to train AI on EU users since May 27 without consent; NOIB is threatened by lawsuits

May 15, 2025

Coinbase agents are bribed, data ~ 1% of users were traced; Attempted extortion of $ 20 million will not succeed

May 15, 2025

NPM malicious package uses Unicode Steganography, Google Calendar as C2 Chroper

May 15, 2025
About Us
About Us

Provide a constantly updating feed of the latest security news and developments specific to Indonesia.

Facebook X (Twitter) Pinterest YouTube WhatsApp
Our Picks

New Httpbot Botnet Launches 200+ Precision Ddos Attacks to Game and Technology Sectors

May 16, 2025

10 best practices for effective data protection

May 16, 2025

Rat Remcos delivered via LNK files and mshta in attacks based on PowerShell

May 16, 2025
Most Popular

In Indonesia, crippling immigration ransomware breach sparks privacy crisis

July 6, 2024

Why Indonesia’s Data Breach Crisis Calls for Better Security

July 6, 2024

Indonesia’s plan to integrate 27,000 govt apps in one platform welcomed but data security concerns linger

July 6, 2024
© 2025 indoguardonline.com
  • Home
  • About us
  • Contact us
  • Privacy Policy

Type above and press Enter to search. Press Esc to cancel.