CISA adds N-Able vulnerability to KEV Catalog

CISA adds N-Able vulnerability to KEV Catalog

The Cybersecurity and Infrastructure Security Agency (CISA) has recently added two critical vulnerabilities affecting N-able's N-central to its Known Exploited Vulnerabilities (KEV) Catalog. These are identified as CVE-2025-8875 (insecure deserialization)…
CVE-2025-25256 affects FortiSIEM

CVE-2025-25256 affects FortiSIEM

1. Vulnerability Overview CVE-2025-25256 is a critical command injection bug in Fortinet FortiSIEM’s phMonitor service, exposed on TCP port 7900. It enables unauthenticated remote attackers to execute OS-level commands by…