X

Vous n'êtes pas connecté

Maroc Maroc - THECYBERTHRONE.IN - A La Une - 26/12/2024 13:00

CVE-2024-52046 Impacts Apache Mina

CVE-2024-52046 is a critical security vulnerability found in the Apache MINA library. This vulnerability is located within the ObjectSerializationDecoder component, which uses Java’s native serialization mechanisms to decode incoming serialized data. The core issue is the absence of robust security checks and validation during the deserialization process, allowing attackers to craft malicious serialized data that […]

Articles similaires

Sorry! Image not available at this time

Longwatch RCE Vulnerability Let Attackers Execute Remote Code With Elevated Privileges

itsecuritynews.info - 03/Dec 18:32

A critical security vulnerability has been discovered in Industrial Video & Control’s Longwatch video surveillance system, allowing attackers to...

Sorry! Image not available at this time

Longwatch RCE Vulnerability Let Attackers Execute Remote Code With Elevated Privileges

itsecuritynews.info - 03/Dec 18:32

A critical security vulnerability has been discovered in Industrial Video & Control’s Longwatch video surveillance system, allowing attackers to...

Sorry! Image not available at this time

Maximum-severity XXE vulnerability discovered in Apache Tika

securityaffairs.co - 06/Dec 00:03

A maximum severity vulnerability in Apache Tika, tracked as CVE-2025-66516 (CVSS score of 10.0), allows XML external entity attacks. CVE-2025-66516...

Sorry! Image not available at this time

Apache Tika CVE-2025-66516 Scores Perfect 10

thecyberthrone.in - 06/Dec 11:28

CVE-2025-66516, a critical XXE vulnerability in Apache Tika’s core with CVSS 10.0, exposes organizations to data exfiltration and SSRF through...

Sorry! Image not available at this time

Apache Tika CVE-2025-66516 Scores Perfect 10

thecyberthrone.in - 06/Dec 11:28

CVE-2025-66516, a critical XXE vulnerability in Apache Tika’s core with CVSS 10.0, exposes organizations to data exfiltration and SSRF through...

Sorry! Image not available at this time

Cacti Command Injection Vulnerability Let Attackers Execute Malicious Code Remotely

itsecuritynews.info - 05/Dec 08:32

A critical command injection vulnerability in the open-source network monitoring tool Cacti allows authenticated attackers to execute arbitrary code...

Sorry! Image not available at this time

Cacti Command Injection Vulnerability Let Attackers Execute Malicious Code Remotely

itsecuritynews.info - 05/Dec 08:32

A critical command injection vulnerability in the open-source network monitoring tool Cacti allows authenticated attackers to execute arbitrary code...

Sorry! Image not available at this time

Apache Struts Flaw Allows Attackers to Launch Disk Exhaustion Attacks

itsecuritynews.info - 02/Dec 08:04

A new security flaw has been found in Apache Struts, a popular open‑source web application framework used by many companies worldwide. The issue,...

Sorry! Image not available at this time

Maximum-severity XXE vulnerability discovered in Apache Tika

itsecuritynews.info - 06/Dec 01:02

A maximum severity vulnerability in Apache Tika, tracked as CVE-2025-66516 (CVSS score of 10.0), allows XML external entity attacks. CVE-2025-66516...

Sorry! Image not available at this time

Maximum-severity XXE vulnerability discovered in Apache Tika

itsecuritynews.info - 06/Dec 01:02

A maximum severity vulnerability in Apache Tika, tracked as CVE-2025-66516 (CVSS score of 10.0), allows XML external entity attacks. CVE-2025-66516...