X

Vous n'êtes pas connecté

Maroc Maroc - SECURITYAFFAIRS.CO - A La Une - 31/12/2025 14:23

Singapore CSA warns of maximun severity SmarterMail RCE flaw

Singapore’s CSA warns of CVE-2025-52691, a critical SmarterMail flaw enabling unauthenticated remote code execution via arbitrary file upload. Singapore’s Cyber Security Agency of Singapore (CSA) warns of a maximum severity flaw, tracked as CVE-2025-52691 (CVSS score of 10.0), in SmarterMail. The vulnerability enables unauthenticated remote code execution via arbitrary file upload. “Successful exploitation of the […]

Articles similaires

Sorry! Image not available at this time

SmarterTools patches critical SmarterMail flaw allowing code execution

securityaffairs.co - 30/Jan 11:53

SmarterTools fixed two SmarterMail flaws, including a critical bug (CVE-2026-24423) that could allow arbitrary code execution. SmarterTools fixed two...

Sorry! Image not available at this time

Ingress-NGINX Flaw Enables Arbitrary Code Execution Attacks

itsecuritynews.info - 04/Feb 07:02

A high-severity vulnerability has been discovered in the Kubernetes ingress-nginx controller, allowing attackers to execute arbitrary code and...

Sorry! Image not available at this time

Critical Johnson Controls Products Vulnerabilities Enables Remote SQL Injection Attacks

itsecuritynews.info - 01/Feb 16:36

A critical advisory addressing a severe SQL injection vulnerability affecting multiple Johnson Controls industrial control system products. The...

Sorry! Image not available at this time

Command injection in Apache bRPC heap profiler

australiancybersecuritymagazine.com.au - 29/Jan 02:52

The CyberArk Labs team have identified Apache bRPC users are exposed to a critical command injection flaw in the /pprof/heap endpoint...

Sorry! Image not available at this time

CISA Adds Five Known Exploited Vulnerabilities to Catalog

itsecuritynews.info - 26/Jan 21:36

CISA has added five new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation. CVE-2018-14634...

Sorry! Image not available at this time

CISA Adds Five Known Exploited Vulnerabilities to Catalog

itsecuritynews.info - 26/Jan 21:36

CISA has added five new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation. CVE-2018-14634...

Sorry! Image not available at this time

Hackers Actively Exploit React Native Metro Server to Target Software Developers

itsecuritynews.info - 04/Feb 05:38

Threat actors are exploiting a critical remote code execution vulnerability in React Native’s Metro development server to deploy sophisticated...

Sorry! Image not available at this time

SCADA Flaw Enables DoS Condition, Impacting Availability of Affected Systems

itsecuritynews.info - 31/Jan 15:09

A vulnerability affecting the Mitsubishi Electric Iconics Suite, a widely deployed supervisory control and data acquisition (SCADA) system used across...

Sorry! Image not available at this time

SCADA Flaw Enables DoS Condition, Impacting Availability of Affected Systems

itsecuritynews.info - 31/Jan 15:09

A vulnerability affecting the Mitsubishi Electric Iconics Suite, a widely deployed supervisory control and data acquisition (SCADA) system used across...

Sorry! Image not available at this time

Cisco Meeting Management Vulnerability Let Remote Attacker Upload Arbitrary Files

itsecuritynews.info - 10:36

A high-severity security advisory has been issued for a critical vulnerability in Meeting Management software. This vulnerability allows authenticated...