X

Vous n'êtes pas connecté

Maroc Maroc - SECURITYAFFAIRS.CO - A La Une - Hier 06:17

Attackers exploit SimpleHelp RMM Software flaws for initial access

Threat actors exploit recently fixed SimpleHelp RMM software vulnerabilities to breach targeted networks, experts warn. Horizon3 researchers discovered three vulnerabilities, tracked as CVE-2024-57726, CVE-2024-57727, and CVE-2024-57728, that could be used to compromise a SimpleHelp server, as well as clients machines being managed by SimpleHelp. The first vulnerability, CVE-2024-57727 (CVSS score of 7.5), is an unauthenticated […]

Articles similaires

Sorry! Image not available at this time

Hackers exploiting flaws in SimpleHelp RMM to breach networks

bleepingcomputer.com - 28/Jan 21:49

Hackers are believed to be exploiting recently fixed SimpleHelp Remote Monitoring and Management (RMM) software vulnerabilities to gain initial access...

Sorry! Image not available at this time

Attackers actively exploit a critical zero-day in Zyxel CPE Series devices

securityaffairs.co - 10:17

Experts warn that threat actors are actively exploiting critical zero-day vulnerability, tracked as CVE-2024-40891, in Zyxel CPE Series devices....

Sorry! Image not available at this time

VMware fixed a flaw in Avi Load Balancer

itsecuritynews.info - 00:15

VMware fixed a high-risk blind SQL injection vulnerability in Avi Load Balancer, allowing attackers to exploit databases via crafted queries. VMware...

Sorry! Image not available at this time

VMware fixed a flaw in Avi Load Balancer

securityaffairs.co - 28/Jan 23:04

VMware fixed a high-risk blind SQL injection vulnerability in Avi Load Balancer, allowing attackers to exploit databases via crafted queries. VMware...

Sorry! Image not available at this time

FortiOS Authentication Bypass Vulnerability Exploited to Gain Super-Admin Access

itsecuritynews.info - 28/Jan 05:33

A critical zero-day vulnerability in Fortinet’s FortiOS and FortiProxy products tracked as CVE-2024-55591, has been actively exploited in the wild,...

Sorry! Image not available at this time

U.S. CISA adds Aviatrix Controllers vulnerability to its Known Exploited Vulnerabilities catalog

securityaffairs.co - 17/Jan 14:38

U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Aviatrix Controllers vulnerability to its Known Exploited Vulnerabilities catalog....

Sorry! Image not available at this time

A 7-Zip bug allows to bypass the Mark of the Web (MotW) feature

securityaffairs.co - 22/Jan 08:15

A vulnerability in the 7-Zip file software allows attackers to bypass the Mark of the Web (MotW) Windows security feature. Attackers can exploit a...

Sorry! Image not available at this time

U.S. CISA adds JQuery flaw to its Known Exploited Vulnerabilities catalog

itsecuritynews.info - 24/Jan 00:13

U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds JQuery vulnerability to its Known Exploited Vulnerabilities catalog. The U.S....

Sorry! Image not available at this time

A flaw in the W3 Total Cache plugin exposes hundreds of thousands of WordPress sites to attacks

itsecuritynews.info - 19/Jan 20:17

A WordPress W3 Total Cache plugin vulnerability could allow attackers to access information from internal services, including metadata on cloud-based...

Sorry! Image not available at this time

A flaw in the W3 Total Cache plugin exposes hundreds of thousands of WordPress sites to attacks

securityaffairs.co - 19/Jan 19:20

A WordPress W3 Total Cache plugin vulnerability could allow attackers to access information from internal services, including metadata on cloud-based...