X

Vous n'êtes pas connecté

  - BLEEPINGCOMPUTER.COM - A La Une - 18/Jul 22:24

New CrushFTP zero-day exploited in attacks to hijack servers

CrushFTP is warning that threat actors are actively exploiting a zero-day vulnerability tracked as CVE-2025-54309, which allows attackers to gain administrative access via the web interface on vulnerable servers. [...]

Articles similaires

Sorry! Image not available at this time

New CrushFTP zero-day exploited in attacks to hijack servers

bleepingcomputer.com - 18/Jul 22:24

CrushFTP is warning that threat actors are actively exploiting a zero-day vulnerability tracked as CVE-2025-54309, which allows attackers to gain...

Sorry! Image not available at this time

Microsoft SharePoint zero-day exploited in RCE attacks, no patch available

bleepingcomputer.com - 15:40

A critical zero-day vulnerability in Microsoft SharePoint, tracked as CVE-2025-53770, has been actively exploited since at least July 18th, with no...

Sorry! Image not available at this time

Microsoft SharePoint zero-day exploited in RCE attacks, no patch available

bleepingcomputer.com - 15:40

A critical zero-day vulnerability in Microsoft SharePoint, tracked as CVE-2025-53770, has been actively exploited since at least July 18th, with no...

Sorry! Image not available at this time

CVE-2025-25257 Critical FortiWeb SQL Injection Leading to RCE

thecyberthrone.in - 14/Jul 10:54

🔐 Vulnerability Summary 📌 Description This vulnerability allows unauthenticated remote attackers to perform SQL injection attacks on FortiWeb...

Sorry! Image not available at this time

Citrix Windows Virtual Delivery Agent Vulnerability Let Attackers Gain SYSTEM Privileges

itsecuritynews.info - 09/Jul 11:39

A critical security vulnerability has been discovered in Citrix Windows Virtual Delivery Agent that allows local attackers to escalate privileges and...

Sorry! Image not available at this time

Wing FTP Server flaw actively exploited shortly after technical details were made public

securityaffairs.co - 13/Jul 15:50

Hackers exploit critical Wing FTP flaw (CVE-2025-47812) for remote code execution with root/system rights after details leaked on June 30. Threat...

Sorry! Image not available at this time

CISA Issues Alert Over Actively Exploited Flaw in Zimbra Collaboration Suite

itsecuritynews.info - 08/Jul 07:05

The Cybersecurity and Infrastructure Security Agency (CISA) has issued a critical alert regarding an actively exploited vulnerability in Synacor’s...

Sorry! Image not available at this time

CISA Issues Alert Over Actively Exploited Flaw in Zimbra Collaboration Suite

itsecuritynews.info - 08/Jul 07:05

The Cybersecurity and Infrastructure Security Agency (CISA) has issued a critical alert regarding an actively exploited vulnerability in Synacor’s...

Sorry! Image not available at this time

CVE-2025-6554 marks the fifth actively exploited Chrome Zero-Day patched by Google in 2025

securityaffairs.co - 16/Jul 10:11

Google released security patches to address multiple Chrome vulnerabilities, including one flaw that has been exploited in the wild. Google released...

Sorry! Image not available at this time

Max severity Cisco ISE bug allows pre-auth command execution, patch now

bleepingcomputer.com - 17/Jul 15:53

A critical vulnerability (CVE-2025-20337) in Cisco's Identity Services Engine (ISE) could be exploited to let an unauthenticated attacker store...

Les derniers communiqués