X

Vous n'êtes pas connecté

Rubriques :

  - ITSECURITYNEWS.INFO - A La Une - 22/Aug 06:03

Windows Docker Desktop Vulnerability Allows Full Host Compromise

A critical vulnerability in Docker Desktop for Windows has been discovered that allows any container to achieve full host system compromise through a simple Server-Side Request Forgery (SSRF) attack. The flaw, designated CVE-2025-9074, was patched in Docker Desktop version 4.44.3…

Articles similaires

Sorry! Image not available at this time

Docker fixes critical Desktop flaw allowing container escapes

securityaffairs.co - 25/Aug 22:30

Docker fixed a critical flaw in the Docker Desktop app for Windows and macOS that could potentially allow an attacker to escape the confines of a...

Sorry! Image not available at this time

Critical Docker Desktop flaw lets attackers hijack Windows hosts

bleepingcomputer.com - 25/Aug 15:11

A critical vulnerability in Docker Desktop for Windows and macOS allows compromising the host by running a malicious container, even if the Enhanced...

Sorry! Image not available at this time

Windows Heap Buffer Overflow Vulnerability Allows Attackers to Gain Elevated Privileges

itsecuritynews.info - 06:36

A critical security vulnerability has been discovered in Microsoft Windows systems that allows attackers to escalate their privileges and potentially...

Sorry! Image not available at this time

Windows Heap Buffer Overflow Vulnerability Allows Attackers to Gain Elevated Privileges

itsecuritynews.info - 06:36

A critical security vulnerability has been discovered in Microsoft Windows systems that allows attackers to escalate their privileges and potentially...

Sorry! Image not available at this time

Netskope Windows Client Vulnerability Enables Privilege Escalation via Rogue Server

itsecuritynews.info - 31/Aug 15:06

A serious security vulnerability in Netskope’s Windows client has been discovered that could allow attackers to escalate privileges from a...

Sorry! Image not available at this time

WhatsApp’s Zero-Click Vulnerability and Targeted Spyware Attacks

thecyberthrone.in - 30/Aug 02:28

A newly discovered critical vulnerability has put WhatsApp users across the globe on high alert. CVE-2025-55177, patched in August 2025, was a serious...

Sorry! Image not available at this time

WhatsApp’s Zero-Click Vulnerability and Targeted Spyware Attacks

thecyberthrone.in - 30/Aug 02:28

A newly discovered critical vulnerability has put WhatsApp users across the globe on high alert. CVE-2025-55177, patched in August 2025, was a serious...

Sorry! Image not available at this time

Securden Unified PAM Vulnerability Let Attackers Bypass Authentication

itsecuritynews.info - 27/Aug 04:32

Cybersecurity researchers have uncovered a critical security flaw in Securden Unified PAM that allows attackers to completely bypass authentication...

Sorry! Image not available at this time

Securden Unified PAM Vulnerability Let Attackers Bypass Authentication

itsecuritynews.info - 27/Aug 04:32

Cybersecurity researchers have uncovered a critical security flaw in Securden Unified PAM that allows attackers to completely bypass authentication...

Sorry! Image not available at this time

Critical SAP S/4HANA flaw CVE-2025-42957 under active exploitation

securityaffairs.co - 20:08

Experts warn of an actively exploited vulnerability, tracked as CVE-2025-42957 (CVSS score: 9.9), in SAP S/4HANA software. A critical command...