X

Vous n'êtes pas connecté

Maroc Maroc - SECURITYAFFAIRS.CO - A La Une - 15/May 14:03

CVE-2026-42897: Microsoft confirms active exploitation of Exchange Server zero-day

Microsoft warned that attackers are exploiting a new Exchange Server zero-day vulnerability, tracked as CVE-2026-42897, in the wild. Microsoft warned that threat actors are actively exploiting a new Exchange Server zero-day vulnerability tracked as CVE-2026-42897 (CVSS score 8.1). The vulnerability is an improper neutralization of input during web page generation (‘cross-site scripting’) in Microsoft Exchange […]

Articles similaires

Sorry! Image not available at this time

CVE-2026-42897 — Microsoft Exchange Server OWA XSS Vulnerability

thecyberthrone.in - 15/May 17:31

Overview Microsoft has confirmed active exploitation of CVE-2026-42897, a Cross-Site Scripting vulnerability in Microsoft Exchange Server carrying a...

Sorry! Image not available at this time

U.S. CISA adds a flaw in Microsoft Exchange Server to its Known Exploited Vulnerabilities catalog

securityaffairs.co - 17:30

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds a flaw in Microsoft Exchange Server to its Known Exploited Vulnerabilities...

Sorry! Image not available at this time

CISA Adds One Known Exploited Vulnerability to Catalog

itsecuritynews.info - 15/May 18:02

CISA has added one new vulnerability to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation. CVE-2026-42897...

Sorry! Image not available at this time

Microsoft Warns of Exchange Server Zero-Day Exploited in the Wild

itsecuritynews.info - 15/May 12:32

Microsoft has shared mitigations for CVE-2026-42897 until a permanent patch can be released for affected Exchange Server versions. The post Microsoft...

Sorry! Image not available at this time

Attackers exploit cPanel CVE-2026-41940 to deploy Filemanager Backdoor

securityaffairs.co - 12/May 11:41

Attackers are exploiting cPanel flaw CVE-2026-41940 to install the Filemanager backdoor and gain unauthorized admin access. Cybercriminals are...

Sorry! Image not available at this time

U.S. CISA adds a flaw in Microsoft Exchange Server to its Known Exploited Vulnerabilities catalog

itsecuritynews.info - 18:32

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds a flaw in Microsoft Exchange Server to its Known Exploited Vulnerabilities...

Sorry! Image not available at this time

Microsoft warns of Exchange zero-day flaw exploited in attacks

bleepingcomputer.com - 15/May 09:40

On Thursday, Microsoft shared mitigations for a high-severity Exchange Server vulnerability exploited in attacks that allow threat actors to execute...

Sorry! Image not available at this time

Nation-state actors exploit Palo Alto PAN-OS zero-day for weeks

securityaffairs.co - 07/May 20:44

Palo Alto says hackers exploited PAN-OS zero-day CVE-2026-0300 for weeks, gaining root access to exposed firewalls and hiding traces. Palo Alto...

Sorry! Image not available at this time

Cisco warns of new critical SD-WAN flaw exploited in zero-day attacks

bleepingcomputer.com - 14/May 20:09

Cisco is warning that a critical Catalyst SD-WAN Controller authentication bypass flaw, tracked as CVE-2026-20182, was actively exploited in zero-day...

Sorry! Image not available at this time

Linux Kernel bug Fragnesia allows local root access attacks

itsecuritynews.info - 14/May 18:32

Fragnesia, a new Linux kernel flaw tracked as CVE-2026-46300, could let local attackers gain root access through page cache corruption. Researchers...