All news with #eclipse threadx tag
Wed, August 6, 2025
Talos Discloses Multiple WWBN, MedDream, ThreadX Flaws
#Eclipse ThreadX
#MedDream
#Patch
#Privilege Escalation
#Race Condition
#RCE
#Security Advisory
#SSRF
#WWBN
🔒 Cisco Talos disclosed multiple vulnerabilities across WWBN AVideo, MedDream PACS Premium, and the Eclipse ThreadX FileX component. The issues include several reflected and stored XSS flaws, a race condition and incomplete blacklist handling in AVideo that can be chained to achieve arbitrary code execution, privilege escalation and credential exposure in MedDream, and a RAM-disk buffer overflow in FileX that can lead to remote code execution on embedded devices. All affected vendors issued patches per Cisco’s disclosure policy, and Talos advises deploying vendor fixes and using Snort rule updates and Talos advisories for detection and mitigation guidance.