X

Vous n'êtes pas connecté

Maroc Maroc - THECYBERTHRONE.IN - A La Une - 01/01/2025 09:58

CVE-2024-12987 affecting DrayTek Routers

CVE-2024-12987 is a critical security vulnerability identified in the DrayTek Vigor2960 and Vigor300B routers, specifically affecting firmware version 1.5.1.4. This vulnerability resides within the Web Management Interface, in the file path /cgi-bin/mainfunction.cgi/apmcfgupload. Detailed Breakdown 1. Nature of the Vulnerability:This vulnerability involves an OS Command Injection flaw. It is triggered by manipulating the session argument passed […]

Articles similaires

Sorry! Image not available at this time

SCADA Flaw Enables DoS Condition, Impacting Availability of Affected Systems

itsecuritynews.info - 31/Jan 15:09

A vulnerability affecting the Mitsubishi Electric Iconics Suite, a widely deployed supervisory control and data acquisition (SCADA) system used across...

Sorry! Image not available at this time

SCADA Flaw Enables DoS Condition, Impacting Availability of Affected Systems

itsecuritynews.info - 31/Jan 15:09

A vulnerability affecting the Mitsubishi Electric Iconics Suite, a widely deployed supervisory control and data acquisition (SCADA) system used across...

Sorry! Image not available at this time

CISA Adds SolarWinds Web Help Desk RCE Flaw to Known Exploited Vulnerabilities List

itsecuritynews.info - 04/Feb 08:37

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a newly disclosed vulnerability CVE‑2025‑40551 affecting SolarWinds...

Sorry! Image not available at this time

11-Year-Old critical telnetd flaw found in GNU InetUtils (CVE-2026-24061)

securityaffairs.co - 24/Jan 00:27

Critical telnetd flaw CVE-2026-24061 (CVSS 9.8) affects all GNU InetUtils versions 1.9.3–2.7 and went unnoticed for nearly 11 years. A critical...

Sorry! Image not available at this time

Cisco Meeting Management Vulnerability Let Remote Attacker Upload Arbitrary Files

itsecuritynews.info - 05/Feb 10:36

A high-severity security advisory has been issued for a critical vulnerability in Meeting Management software. This vulnerability allows authenticated...

Sorry! Image not available at this time

Cisco Meeting Management Vulnerability Let Remote Attacker Upload Arbitrary Files

itsecuritynews.info - 05/Feb 10:36

A high-severity security advisory has been issued for a critical vulnerability in Meeting Management software. This vulnerability allows authenticated...

Sorry! Image not available at this time

Critical sandbox escape flaw found in popular vm2 NodeJS library

bleepingcomputer.com - 27/Jan 16:35

A critical-severity vulnerability in the vm2 Node.js sandbox library, tracked as CVE-2026-22709, allows escaping the sandbox and executing arbitrary...

Sorry! Image not available at this time

Critical sandbox escape flaw found in popular vm2 NodeJS library

bleepingcomputer.com - 27/Jan 16:35

A critical-severity vulnerability in the vm2 Node.js sandbox library, tracked as CVE-2026-22709, allows escaping the sandbox and executing arbitrary...

Sorry! Image not available at this time

Ransomware attackers are exploiting critical SmarterMail vulnerability (CVE-2026-24423)

itsecuritynews.info - 11:12

For the third time in two weeks, CISA added a vulnerability (CVE-2026-24423) affecting SmarterTools’ SmarterMail email and collaboration server to...

Sorry! Image not available at this time

Ransomware attackers are exploiting critical SmarterMail vulnerability (CVE-2026-24423)

itsecuritynews.info - 11:12

For the third time in two weeks, CISA added a vulnerability (CVE-2026-24423) affecting SmarterTools’ SmarterMail email and collaboration server to...