X

Vous n'êtes pas connecté

Maroc Maroc - THECYBERTHRONE.IN - A La Une - 21/Dec 08:40

Detailing Databricks Vulnerability CVE-2024-49194

A critical vulnerability has been identified that affects the Databricks JDBC Driver. This vulnerability allows for remote code execution (RCE) through a JNDI injection exploit using a malicious JDBC URL parameter, specifically exploiting the krbJAASFile parameter. In-Depth Details: Affected Component: Vulnerability Characteristics: Impact: Mitigation Strategies: Steps to Apply the Update: By addressing this vulnerability promptly, […]

Articles similaires

Sorry! Image not available at this time

Threat actors are attempting to exploit Apache Struts vulnerability CVE-2024-53677

securityaffairs.co - 18/Dec 20:20

Researchers warn that threat actors are attempting to exploit a recently disclosed Apache Struts vulnerability CVE-2024-53677. Researchers warn that...

Sorry! Image not available at this time

Detailing Critical Microsoft CVE-2024-49112 Vulnerability

thecyberthrone.in - 17/Dec 18:15

Microsoft has recently disclosed a critical Remote Code Execution (RCE) vulnerability in its Lightweight Directory Access Protocol (LDAP) service,...

Sorry! Image not available at this time

Mauri Ransomware Leverages Apache ActiveMQ Vulnerability to Deploy CoinMiners

itsecuritynews.info - 10/Dec 07:37

The Apache ActiveMQ server is vulnerable to remote code execution (CVE-2023-46604), where attackers can exploit this vulnerability by manipulating...

Sorry! Image not available at this time

CISA adds Cleo Vulnerability CVE-2024-50623 to KEV Catalog

thecyberthrone.in - 14/Dec 03:39

The US CISA adds Cleo vulnerability to its Known Exploited Vulnerabilities Catalog based on the evidence of active exploitation reported. Security...

Sorry! Image not available at this time

Mauri Ransomware exploiting Apache ActiveMQ flaw CVE-2024-46604

thecyberthrone.in - 10/Dec 14:55

The Apache ActiveMQ server is currently facing a critical vulnerability identified as CVE-2023-46604. This vulnerability allows attackers to exploit...

Sorry! Image not available at this time

Exploit Code for Apache Struts CVE-2024-53677 released

thecyberthrone.in - 18/Dec 13:13

The proof-of-concept (PoC) exploit code for the critical Apache Struts vulnerability, designated as CVE-2024-53677, has been released. This...

Sorry! Image not available at this time

Apache Tomcat fixes CVE-2024-50379 and CVE-2024-54677

thecyberthrone.in - 18/Dec 15:46

The Apache Software Foundation has released patches to mitigate two newly discovered vulnerabilities in Apache Tomcat, an extensively used open-source...

Sorry! Image not available at this time

Critical OpenWrt Vulnerability Exposes Devices to Malicious Firmware Injection

itsecuritynews.info - 13/Dec 18:04

A security flaw has been disclosed in OpenWrt’s Attended Sysupgrade (ASU) feature that, if successfully exploited, could have been abused to...

Sorry! Image not available at this time

Threat actors are attempting to exploit Apache Struts vulnerability CVE-2024-53677

itsecuritynews.info - 18/Dec 21:32

Researchers warn that threat actors are attempting to exploit a recently disclosed Apache Struts vulnerability CVE-2024-53677. Researchers warn that...

Sorry! Image not available at this time

Critical Apple Security Vulnerability CVE-2024-44131 Patched: What You Need to Know

itsecuritynews.info - 12/Dec 17:04

  Jamf Threat Labs has identified a critical flaw in Apple’s Transparency, Consent, and Control (TCC) framework, labeled CVE-2024-44131. This...

Les derniers communiqués

  • Aucun élément