X

Vous n'êtes pas connecté

Maroc Maroc - SECURITYAFFAIRS.CO - A La Une - 15/Oct 10:03

SAP fixed maximum-severity bug in NetWeaver

SAP addressed 13 new flaws, including a maximum severity vulnerability in SAP NetWeaver, which could lead to arbitrary command execution. SAP addressed 13 new vulnerabilities, including a maximum severity issue, tracked as CVE-2025-42944 (CVSS score of 10.0) in SAP NetWeaver. The vulnerability is an insecure deserialization that could lead to arbitrary command execution. “Due to a deserialization […]

Articles similaires

Sorry! Image not available at this time

TARmageddon Flaw in Async-Tar Rust Library Could Enable Remote Code Execution

itsecuritynews.info - 22/Oct 08:34

Cybersecurity researchers have disclosed details of a high-severity flaw impacting the popular async-tar Rust library and its forks, including...

Sorry! Image not available at this time

Chrome V8 JavaScript Engine Vulnerability Let Attackers Execute Remote Code

itsecuritynews.info - 22/Oct 03:05

Google has swiftly addressed a high-severity flaw in its Chrome browser’s V8 JavaScript engine, releasing an emergency update to thwart potential...

Sorry! Image not available at this time

CISA Adds Two Known Exploited Vulnerabilities to Catalog

itsecuritynews.info - 24/Oct 18:04

CISA has added two new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation....

Sorry! Image not available at this time

U.S. CISA adds Oracle, Windows, Kentico, and Apple flaws to its Known Exploited Vulnerabilities catalog

securityaffairs.co - 21/Oct 14:10

U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Oracle, Windows, Kentico, and Apple flaws to its Known Exploited Vulnerabilities...

Sorry! Image not available at this time

Multiple BIND 9 DNS Vulnerabilities Enable Cache Poisoning and Denial Of Service Attacks

itsecuritynews.info - 23/Oct 07:04

The Internet Systems Consortium (ISC) disclosed three high-severity vulnerabilities in BIND 9 on October 22, 2025, potentially allowing remote...

Sorry! Image not available at this time

TARmageddon Security Flaw in Rust Library Could Lead to Config Tampering and RCE

itsecuritynews.info - 23/Oct 07:04

The Edera security team has discovered a critical vulnerability in the async-tar Rust library and its descendants, including the widely-used...

Sorry! Image not available at this time

WatchGuard VPN Vulnerability Let Remote Attacker Execute Arbitrary Code

itsecuritynews.info - 19/Oct 12:32

WatchGuard has disclosed a critical out-of-bounds write vulnerability in its Fireware OS, enabling remote unauthenticated attackers to execute...

Sorry! Image not available at this time

WatchGuard VPN Vulnerability Let Remote Attacker Execute Arbitrary Code

itsecuritynews.info - 19/Oct 12:32

WatchGuard has disclosed a critical out-of-bounds write vulnerability in its Fireware OS, enabling remote unauthenticated attackers to execute...

Sorry! Image not available at this time

CISA Beware! Hackers Are Actively Exploiting Windows Server Update Services RCE Flaw in the Wild

itsecuritynews.info - 25/Oct 17:05

Cybersecurity researchers are sounding the alarm after discovering that hackers are actively exploiting a critical remote code execution (RCE)...

Sorry! Image not available at this time

Apache Tomcat Security Vulnerabilities Expose Servers to Remote Code Execution Attacks

itsecuritynews.info - 28/Oct 04:04

The Apache Software Foundation has highlighted critical flaws in Apache Tomcat, a widely used open-source Java servlet container that powers numerous...

Les derniers communiqués