X

Vous n'êtes pas connecté

العناوين :

Maroc Maroc - ITSECURITYNEWS.INFO - A La Une - 17/12/2024 16:05

ThreatQuotient ThreatQ Platform

View CSAF 1. EXECUTIVE SUMMARY CVSS v4 8.7 ATTENTION: Exploitable remotely/low attack complexity Vendor: ThreatQuotient Inc. Equipment: ThreatQ Platform Vulnerability: Command Injection 2. RISK EVALUATION Successful exploitation of this vulnerability could allow an attacker to perform remote code execution. 3.…

Articles similaires

Sorry! Image not available at this time

Critical Fortinet FortiClient EMS flaw exploited for Remote Code Execution

securityaffairs.co - 30/Mar 10:43

Attackers are exploiting a critical Fortinet FortiClient EMS flaw (CVE-2026-21643) that allows remote code execution via SQL injection. A critical...

Sorry! Image not available at this time

It’s a mystery … alleged unpatched Telegram zero-day allows device takeover, but Telegram denies

securityaffairs.co - 30/Mar 14:07

A critical Telegram flaw could allow zero-click remote code execution on devices, but Telegram denies it. Researcher Michael DePlante (@izobashi) of...

Sorry! Image not available at this time

13-year-old bug in ActiveMQ lets hackers remotely execute commands

bleepingcomputer.com - 08/Apr 17:26

Security researchers discovered a remote code execution (RCE) vulnerability in Apache ActiveMQ Classic that has gone undetected for 13 years and could...

Sorry! Image not available at this time

Attackers Exploit RCE Flaw as 14,000 F5 BIG-IP APM Instances Remain Exposed

securityaffairs.co - 06/Apr 13:07

Over 14,000 F5 BIG-IP APM instances remain exposed online, as attackers actively exploit a critical remote code execution flaw CVE-2025-53521. Over...

Sorry! Image not available at this time

Attackers exploit critical Flowise flaw CVE-2025-59528 for remote code execution

securityaffairs.co - 07/Apr 20:16

Attackers are exploiting a critical Flowise flaw, tracked as CVE-2025-59528 (CVSS score of 10), that lets them run malicious code and access systems...

Sorry! Image not available at this time

CVE-2025-59528: Flowise CustomMCP Code Injection RCE

thecyberthrone.in - 07/Apr 17:05

Status: Actively exploited | CVSS: 10.0 (Critical) | EPSS: 99.25% | Exposure: 12,000+ internet-facing instances Vulnerability Summary...

Sorry! Image not available at this time

Attackers exploit critical Flowise flaw CVE-2025-59528 for remote code execution

itsecuritynews.info - 07/Apr 21:04

Attackers are exploiting a critical Flowise flaw, tracked as CVE-2025-59528 (CVSS score of 10), that lets them run malicious code and access systems...

Sorry! Image not available at this time

AI agents found vulns in this popular Linux and Unix print server

itsecuritynews.info - 06/Apr 23:09

CUPS server shown spilling out remote code execution and root access In the latest chapter on leaky CUPS, a security researcher and his band of...

Sorry! Image not available at this time

Hackers Targeting Ninja Forms Vulnerability That Exposes WordPress Sites to Takeover

itsecuritynews.info - 08/Apr 11:34

The vulnerability allows hackers to upload arbitrary files to a site’s server and achieve remote code execution. The post Hackers Targeting Ninja...

Sorry! Image not available at this time

Claude Finds 13-Year-Old 0-Day RCE Vulnerability in Apache ActiveMQ in 10 Minutes

itsecuritynews.info - 08/Apr 09:07

A critical remote code execution (RCE) vulnerability has been disclosed in Apache ActiveMQ Classic, a flaw that sat undetected for over a decade and...