X

Vous n'êtes pas connecté

Maroc Maroc - THECYBERTHRONE.IN - A La Une - 18/01/2025 15:10

CVE-2024-7344 impacts UEFI based systems

CVE-2024-7344 is a critical vulnerability affecting UEFI-based systems. It was discovered by researchers at ESET and involves a bypass of the UEFI Secure Boot mechanism, allowing untrusted code to run during system boot, posing a significant security risk. Key Highlights: Technical Details: Resolution: Implications: Future Considerations: Conclusion: The discovery of CVE-2024-7344 highlights the need for […]

Articles similaires

Sorry! Image not available at this time

Imperva Customers Protected Against CVE-2026-41940 in cPanel & WHM

itsecuritynews.info - 30/Apr 18:36

What is CVE-2026-41940? CVE-2026-41940 is a critical authentication bypass vulnerability affecting cPanel & WHM, including DNSOnly, in versions after...

Sorry! Image not available at this time

Imperva Customers Protected Against CVE-2026-41940 in cPanel & WHM

itsecuritynews.info - 30/Apr 18:36

What is CVE-2026-41940? CVE-2026-41940 is a critical authentication bypass vulnerability affecting cPanel & WHM, including DNSOnly, in versions after...

Sorry! Image not available at this time

Cisco patches another actively exploited SD-WAN zero-day (CVE-2026-20182)

itsecuritynews.info - 13:03

Cisco has patched yet another Catalyst SD-WAN Controller authentication bypass vulnerability (CVE-2026-20182) that has been exploited as a zero-day by...

Sorry! Image not available at this time

Broadcom releases VMware Fusion security update for root access bug

securityaffairs.co - 15:46

Broadcom patched a high-severity VMware Fusion flaw, CVE-2026-41702, that could let local attackers gain root privileges. Broadcom released a security...

Sorry! Image not available at this time

CVE-2025-68670: discovering an RCE vulnerability in xrdp

itsecuritynews.info - 08/May 08:32

During a security assessment of Kaspersky USB Redirector, we discovered CVE-2025-68670: a pre-auth RCE in the xrdp server component. Project...

Sorry! Image not available at this time

Critical Fortinet vulnerabilities fixed in FortiSandbox and FortiAuthenticator

securityaffairs.co - 13/May 06:22

Fortinet patched critical flaws in FortiSandbox and FortiAuthenticator that could let attackers remotely execute code on unpatched systems. Fortinet...

Sorry! Image not available at this time

200,000 WordPress Sites at Risk from Critical Authentication Bypass Vulnerability in Burst Statistics Plugin

itsecuritynews.info - 13/May 17:03

On May 8, 2026, PRISM, Wordfence Threat Intelligence’s autonomous vulnerability research platform, discovered a critical Authentication Bypass...

Sorry! Image not available at this time

Another Universal Linux Local Privilege Escalation (LPE) Vulnerability: Dirty Frag, (Fri, May 8th)

itsecuritynews.info - 08/May 08:05

Less than two weeks after the public disclosure of the Copy Fail vulnerability (CVE-2026-31431), another local privilege escalation (LPE)...

Sorry! Image not available at this time

Critical CVE-2026-0073 — Android ADB Wireless Authentication Bypass RCE

thecyberthrone.in - 05/May 17:17

Overview CVE-2026-0073 is a critical remote code execution vulnerability residing in the adbd_tls_verify_cert function within auth.cpp — the Android...

Sorry! Image not available at this time

Cisco Catalyst SD-WAN Controller Auth Bypass Actively Exploited to Gain Admin Access

itsecuritynews.info - 19:02

Cisco has released updates to address a maximum-severity authentication bypass flaw in Catalyst SD-WAN Controller that it said has been exploited in...