X

Vous n'êtes pas connecté

Maroc Maroc - THECYBERTHRONE.IN - A La Une - 01/01/2025 09:58

CVE-2024-12987 affecting DrayTek Routers

CVE-2024-12987 is a critical security vulnerability identified in the DrayTek Vigor2960 and Vigor300B routers, specifically affecting firmware version 1.5.1.4. This vulnerability resides within the Web Management Interface, in the file path /cgi-bin/mainfunction.cgi/apmcfgupload. Detailed Breakdown 1. Nature of the Vulnerability:This vulnerability involves an OS Command Injection flaw. It is triggered by manipulating the session argument passed […]

Articles similaires

Sorry! Image not available at this time

Patch now: TP-Link Archer NX routers vulnerable to firmware takeover

securityaffairs.co - 14:44

TP-Link patched a high severity flaw (CVE-2025-15517) in Archer NX routers that could let attackers bypass authentication and install malicious...

Sorry! Image not available at this time

Qualys discloses Ubuntu Desktop local privilege escalation vulnerability CVE-2026-3888

australiancybersecuritymagazine.com.au - 18/Mar 02:21

Security researchers at Qualys Threat Research Unit (TRU) have disclosed a local privilege escalation vulnerability affecting default installations of...

Sorry! Image not available at this time

Qualys discloses Ubuntu Desktop local privilege escalation vulnerability CVE-2026-3888

australiancybersecuritymagazine.com.au - 18/Mar 02:21

Security researchers at Qualys Threat Research Unit (TRU) have disclosed a local privilege escalation vulnerability affecting default installations of...

Sorry! Image not available at this time

Oracle fixes critical RCE flaw CVE-2026-21992 in Identity Manager

securityaffairs.co - 22/Mar 15:37

Oracle fixed a critical severity flaw, tracked as CVE-2026-21992, enabling unauthenticated remote code execution in Identity Manager. Oracle released...

Sorry! Image not available at this time

Oracle fixes critical RCE flaw CVE-2026-21992 in Identity Manager

securityaffairs.co - 22/Mar 15:37

Oracle fixed a critical severity flaw, tracked as CVE-2026-21992, enabling unauthenticated remote code execution in Identity Manager. Oracle released...

Sorry! Image not available at this time

New Kubernetes NFS CSI Vulnerability Enables Unauthorized Directory Deletion and Changes

itsecuritynews.info - 18/Mar 07:05

A newly disclosed security flaw in the Kubernetes Container Storage Interface (CSI) Driver for Network File System (NFS) exposes storage servers to...

Sorry! Image not available at this time

New Kubernetes NFS CSI Vulnerability Enables Unauthorized Directory Deletion and Changes

itsecuritynews.info - 18/Mar 07:05

A newly disclosed security flaw in the Kubernetes Container Storage Interface (CSI) Driver for Network File System (NFS) exposes storage servers to...

Sorry! Image not available at this time

U.S. CISA adds a flaw in Wing FTP Server to its Known Exploited Vulnerabilities catalog

securityaffairs.co - 16/Mar 21:08

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds a flaw in Wing FTP Server to its Known Exploited Vulnerabilities catalog. The...

Sorry! Image not available at this time

Cisco Secure Firewall Vulnerability Exposes Systems to Remote Code Execution by Attackers

itsecuritynews.info - 05:11

Cisco has released critical security updates to address a maximum-severity vulnerability affecting its Secure Firewall Management Center (FMC)...

Sorry! Image not available at this time

Patch now: TP-Link Archer NX routers vulnerable to firmware takeover

itsecuritynews.info - 16:07

TP-Link patched a high severity flaw (CVE-2025-15517) in Archer NX routers that could let attackers bypass authentication and install malicious...