X

Vous n'êtes pas connecté

Maroc Maroc - BLEEPINGCOMPUTER.COM - A La Une - 15/May 09:40

Microsoft warns of Exchange zero-day flaw exploited in attacks

On Thursday, Microsoft shared mitigations for a high-severity Exchange Server vulnerability exploited in attacks that allow threat actors to execute arbitrary code via cross-site scripting (XSS) while targeting Outlook on the web users. [...]

Articles similaires

Sorry! Image not available at this time

Microsoft Warns of Exchange Server Zero-Day Exploited in the Wild

itsecuritynews.info - 15/May 12:32

Microsoft has shared mitigations for CVE-2026-42897 until a permanent patch can be released for affected Exchange Server versions. The post Microsoft...

Sorry! Image not available at this time

CISA Adds One Known Exploited Vulnerability to Catalog

itsecuritynews.info - 15/May 18:02

CISA has added one new vulnerability to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation. CVE-2026-42897...

Sorry! Image not available at this time

CVE-2026-42897 — Microsoft Exchange Server OWA XSS Vulnerability

thecyberthrone.in - 15/May 17:31

Overview Microsoft has confirmed active exploitation of CVE-2026-42897, a Cross-Site Scripting vulnerability in Microsoft Exchange Server carrying a...

Sorry! Image not available at this time

CVE-2026-42897: Microsoft confirms active exploitation of Exchange Server zero-day

securityaffairs.co - 15/May 14:03

Microsoft warned that attackers are exploiting a new Exchange Server zero-day vulnerability, tracked as CVE-2026-42897, in the wild. Microsoft warned...

Sorry! Image not available at this time

Ivanti warns of new EPMM flaw exploited in zero-day attacks

bleepingcomputer.com - 07/May 15:20

Ivanti warned customers today to patch a high-severity remote code execution vulnerability in Endpoint Manager Mobile (EPMM) exploited in zero-day...

Sorry! Image not available at this time

CISA Flags Linux Kernel Vulnerability as Threat Actors Launch Attacks

itsecuritynews.info - 04/May 10:14

The Cybersecurity and Infrastructure Security Agency (CISA) has officially added a high-severity Linux kernel vulnerability to its Known Exploited...

Sorry! Image not available at this time

CISA Flags Linux Kernel Vulnerability as Threat Actors Launch Attacks

itsecuritynews.info - 04/May 10:14

The Cybersecurity and Infrastructure Security Agency (CISA) has officially added a high-severity Linux kernel vulnerability to its Known Exploited...

Sorry! Image not available at this time

Open WebUI File Upload Vulnerability Enables 1-Click RCE Attack

itsecuritynews.info - 12/May 11:32

A critical, unpatched vulnerability is actively threatening Open WebUI users, turning a simple profile picture upload into a gateway for complete...

Sorry! Image not available at this time

U.S. CISA adds a flaw in Microsoft Exchange Server to its Known Exploited Vulnerabilities catalog

securityaffairs.co - 17:30

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds a flaw in Microsoft Exchange Server to its Known Exploited Vulnerabilities...

Sorry! Image not available at this time

Canon MailSuite Security Flaw Allows Attackers to Execute Code Remotely

itsecuritynews.info - 14/May 11:34

Canon has disclosed a critical security vulnerability in its GUARDIANWALL MailSuite product that could allow attackers to execute arbitrary code...