X

Vous n'êtes pas connecté

Rubriques :

Maroc Maroc - ITSECURITYNEWS.INFO - A La Une - 01/Jan 14:04

DrayTek Devices Vulnerability Let Attackers Arbitrary Commands Remotely

The DrayTek Gateway devices, more specifically the Vigor2960 and Vigor300B models, are susceptible to a critical command injection vulnerability.  Exploitable via the /cgi-bin/mainfunction.cgi/apmcfgupload endpoint, attackers can inject arbitrary commands into the system by manipulating the session parameter within a crafted…

Articles similaires

Sorry! Image not available at this time

DrayTek Devices Vulnerability Let Attackers Arbitrary Commands Remotely

itsecuritynews.info - 01/Jan 14:04

The DrayTek Gateway devices, more specifically the Vigor2960 and Vigor300B models, are susceptible to a critical command injection vulnerability. ...

Sorry! Image not available at this time

CVE-2024-12987 affecting DrayTek Routers

thecyberthrone.in - 01/Jan 09:58

CVE-2024-12987 is a critical security vulnerability identified in the DrayTek Vigor2960 and Vigor300B routers, specifically affecting firmware version...

Sorry! Image not available at this time

IT Security News Hourly Summary 2025-01-01 15h : 3 posts

itsecuritynews.info - 01/Jan 14:05

3 posts were published in the last hour 14:4 : New Stealthy Malware Leveraging SSH Over TOR Attacking Ukrainian Military 14:4 : DrayTek Devices...

Sorry! Image not available at this time

IT Security News Hourly Summary 2025-01-01 15h : 3 posts

itsecuritynews.info - 01/Jan 14:05

3 posts were published in the last hour 14:4 : New Stealthy Malware Leveraging SSH Over TOR Attacking Ukrainian Military 14:4 : DrayTek Devices...

Sorry! Image not available at this time

Exploit Code released for Apache Traffic Control Flaw CVE-2024-45387

thecyberthrone.in - 30/12/2024 10:33

What is CVE-2024-45387? CVE-2024-45387 is a critical vulnerability identified in Apache Traffic Control, specifically affecting the Traffic Ops module...

Sorry! Image not available at this time

CVE-2024-45387 Critical Bug in Apache Traffic Control

thecyberthrone.in - 25/12/2024 15:00

CVE-2024-45387 represents a significant security concern within the Traffic Ops component of Apache Traffic Control, specifically impacting versions...

Sorry! Image not available at this time

Hackers exploit Four-Faith router flaw to open reverse shells

bleepingcomputer.com - 30/12/2024 18:03

Threat actors are exploiting a post-authentication remote command injection vulnerability in Four-Faith routers tracked as CVE-2024-12856 to open...

Sorry! Image not available at this time

New 7-Zip 0-Day Exploit Leaked That Allow Attackers Control Victim Devices Remotely

itsecuritynews.info - 30/12/2024 15:04

A previously unknown zero-day vulnerability in the popular file compression tool 7-Zip has been publicly disclosed by an anonymous user claiming to be...

Sorry! Image not available at this time

Threat actors attempt to exploit a flaw in Four-Faith routers

securityaffairs.co - 30/12/2024 09:04

VulnCheck researchers warn that threat actors are attempting to exploit a high-severity vulnerability impacting some Four-Faith routers. Cybersecurity...

Sorry! Image not available at this time

CVE-2024-11944: TrueNAS CORE has Severe Directory Traversal Flaw

thecyberthrone.in - 04/Jan 05:23

CVE-2024-11944 is a vulnerability identified in iXsystems TrueNAS CORE. This vulnerability is classified as a Directory Traversal and Remote Code...