X

Vous n'êtes pas connecté

Maroc Maroc - SECURITYAFFAIRS.CO - A La Une - 23/Mar 20:49

QNAP fixed four vulnerabilities demonstrated at Pwn2Own Ireland 2025

QNAP fixed four vulnerabilities shown at Pwn2Own 2025 that could enable code execution, data access, or system disruption. Taiwanese vendor QNAP has addressed multiple vulnerabilities, including four SD-WAN router issues (CVE-2025-62843 to CVE-2025-62846) demonstrated at the Pwn2Own Ireland 2025 by Team DDOS. The team chained multiple bugs in QNAP devices to gain root access and […]

Articles similaires

Sorry! Image not available at this time

Patch now: TP-Link Archer NX routers vulnerable to firmware takeover

securityaffairs.co - 25/Mar 14:44

TP-Link patched a high severity flaw (CVE-2025-15517) in Archer NX routers that could let attackers bypass authentication and install malicious...

Sorry! Image not available at this time

Patch now: TP-Link Archer NX routers vulnerable to firmware takeover

itsecuritynews.info - 25/Mar 16:07

TP-Link patched a high severity flaw (CVE-2025-15517) in Archer NX routers that could let attackers bypass authentication and install malicious...

Sorry! Image not available at this time

Multiple Vulnerabilities in TP-Link Devices Enable Arbitrary Command Execution

itsecuritynews.info - 24/Mar 11:12

TP-Link recently published a critical security advisory addressing four high-severity vulnerabilities in its Archer series routers. The flaws impact...

Sorry! Image not available at this time

Critical Ubiquiti UniFi UniFi security flaw allows potential account hijacking

securityaffairs.co - 19/Mar 21:21

Ubiquiti fixed two UniFi vulnerabilities, including a critical flaw that could let attackers take over user accounts. Ubiquiti patched two...

Sorry! Image not available at this time

Critical Ubiquiti UniFi UniFi security flaw allows potential account hijacking

securityaffairs.co - 19/Mar 21:21

Ubiquiti fixed two UniFi vulnerabilities, including a critical flaw that could let attackers take over user accounts. Ubiquiti patched two...

Sorry! Image not available at this time

CISA adds Langflow and Trivy bugs to KEV Catalog

thecyberthrone.in - 27/Mar 12:07

Langflow Code Injection Flaw Actively Exploited — CVE-2026-33017 CISA has added a critical code injection vulnerability in Langflow to its Known...

Sorry! Image not available at this time

Ubuntu Desktop Systems Vulnerability Enables Attackers to Gain Full Root Access

itsecuritynews.info - 18/Mar 07:36

A Local Privilege Escalation (LPE) vulnerability in default installations of Ubuntu Desktop 24.04 and later allows an unprivileged local attacker to...

Sorry! Image not available at this time

Ubuntu Desktop Systems Vulnerability Enables Attackers to Gain Full Root Access

itsecuritynews.info - 18/Mar 07:36

A Local Privilege Escalation (LPE) vulnerability in default installations of Ubuntu Desktop 24.04 and later allows an unprivileged local attacker to...

Sorry! Image not available at this time

Node.js Patches Multiple Vulnerabilities That Enable DoS Attacks and Process Crashes

itsecuritynews.info - 25/Mar 16:07

The Node.js project released a critical security update on March 24, 2026, for the Long-Term Support (LTS) branch, designating version 20.20.2...

Sorry! Image not available at this time

U.S. CISA adds a flaw in Wing FTP Server to its Known Exploited Vulnerabilities catalog

securityaffairs.co - 16/Mar 21:08

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds a flaw in Wing FTP Server to its Known Exploited Vulnerabilities catalog. The...