ThreatCluster
About Blog Help Contact
Login
  • Feed
  • Dashboard
  • Saved
THREAT HUNTING
  • Domains
  • IP Addresses
  • File Hashes
  • CVEs
THREAT INTELLIGENCE
  • APT Groups
  • Ransomware Groups
  • Malware Families
  • Attack Types
  • MITRE ATT&CK
  • Security Standards
  • Vulnerability Types
BUSINESS INTELLIGENCE
  • Companies
  • Industry Sectors
  • Security Vendors
  • Government Agencies
  • Countries
  • Platforms
Home / Feed / Article

Xerox FreeFlow Core Vulnerability Allows Remote Code Execution — PoC Now Public

Threat Score:
54
GB Hackers
1 day ago
Part of cluster #1837
Xerox FreeFlow Core Vulnerability Allows Remote Code Execution — PoC Now Public

Overview

Xerox FreeFlow Core Vulnerability Allows Remote Code Execution — PoC Now Public Security researchers have disclosed critical vulnerabilities in Xerox FreeFlow Core that enable unauthenticated remote attackers to executearbitrary codeon vulnerable systems. The proof-of-concept exploits are now publicly available, raising immediate concerns for organizations using the popular print orchestration platform. Critical Vulnerabilities Discovered Cybersecurity firm Horizon3.aidiscoveredtwo severe vulner...

Continue Reading on Original Site

Related Articles

5 articles
1

New Crypto24 Ransomware Attacks Bypass EDR

Dark Reading • 10 hours ago

While several cybercrime groups have embraced "EDR killers," researchers say the deep knowledge and technical skills demonstrated by Crypto24 signify a dangerous escalation.

Score
84
Read more
2
Stop Reacting; Start Anticipating: The Global State of Threat Intelligence

Stop Reacting; Start Anticipating: The Global State of Threat Intelligence

Brighttalk • 14 hours ago

Presented by Jitin Shabadu, Forrester Analyst | Jayce Nichols, Director, Intelligence Solutions, Google Threat Intelligence Group

Score
83
Read more
3

How your solar rooftop became a national security issue

TechCrunch • 8 hours ago

Texas solar company EG4 became the poster child for energy cybersecurity risks this week after federal officials published an advisory detailing how hackers could hijack its inverters.

Score
80
Read more
4

Ransomware Actors Blending Legitimate Tools with Custom Malware to Evade Detection

Cybersecurity News • 8 hours ago

The cybersecurity landscape faces a new sophisticated threat as the Crypto24 ransomware group demonstrates an alarming evolution in attack methodology, seamlessly blending legitimate administrative tools with custom-developed malware to execute precision strikes against high-value targets. This emerging ransomware operation has successfully compromised organizations across Asia, Europe, and the United States, with a particular focus on […]

Score
74
Read more
5

Colt Telecommunications Struggles in Wake of Cyber Incident

Dark Reading • 11 hours ago

The UK telco said it temporarily took some systems offline as a "protective" measure in its investigation.

Score
74
Read more

Save to Folder

Choose a folder to save this article:

Article Intelligence

Key entities and indicators for this article

CVES
CVE-2025-8355
CVE-2025-8356
DOMAINS
Horizon3.ai
ATTACK TYPES
Phishing
Remote Code Execution
Server-Side Request Forgery
INDUSTRIES
Commercial Printing
Education
Government
VULNERABILITIES
DDoS
DoS
Path Traversal
Remote Code Execution
Server-Side Request Forgery
COMPANIES
AMD
Adobe
Amazon
Apple
Cisco
AGENCIES
CISA
SECURITY VENDORS
Cloudflare
PLATFORMS
AWS
Android
Apache
Azure
Docker
RANSOMWARE
AnDROid
Zlader
core
MITRE ATT&CK
Phishing
T1003
T1046
T1059.001
T1190
MALWARE
Dark
DOMAINS
Horizon3.ai
ARTICLE INFORMATION
Article #11424
Published 1 day ago
GB Hackers

We use cookies

We use cookies and similar technologies to enhance your experience, analyse site usage, and assist in our marketing efforts.

Cookie Settings

Essential Cookies

Required for the website to function. Cannot be disabled.

  • Session management and authentication
  • Security and fraud prevention
  • Cookie consent preferences

Analytics Cookies

Help us understand how visitors interact with our website.

  • Plausible Analytics - Privacy-focused usage statistics
  • PostHog - Product analytics and feature tracking
  • Page views and user journey analysis

Performance Cookies

Help us monitor and improve website performance.

  • Page load time monitoring
  • Error tracking and debugging
  • Performance optimisation

Marketing Cookies

Used to track visitors across websites for marketing purposes.

  • Conversion tracking
  • Remarketing campaigns
  • Social media integration