X

Vous n'êtes pas connecté

Maroc Maroc - THECYBERTHRONE.IN - A La Une - 01/Jan 09:58

CVE-2024-12987 affecting DrayTek Routers

CVE-2024-12987 is a critical security vulnerability identified in the DrayTek Vigor2960 and Vigor300B routers, specifically affecting firmware version 1.5.1.4. This vulnerability resides within the Web Management Interface, in the file path /cgi-bin/mainfunction.cgi/apmcfgupload. Detailed Breakdown 1. Nature of the Vulnerability:This vulnerability involves an OS Command Injection flaw. It is triggered by manipulating the session argument passed […]

Articles similaires

Sorry! Image not available at this time

CVE-2025-11953: Critical RCE in React Native CLI’s Metro Dev Server

thecyberthrone.in - 22/Dec 02:30

CVE-2025-11953 represents a critical remote code execution vulnerability with a CVSS score of 9.8, affecting the React Native Community CLI’s...

Sorry! Image not available at this time

CVE-2025-11953: Critical RCE in React Native CLI’s Metro Dev Server

thecyberthrone.in - 22/Dec 02:30

CVE-2025-11953 represents a critical remote code execution vulnerability with a CVSS score of 9.8, affecting the React Native Community CLI’s...

Sorry! Image not available at this time

CISA Warns of Gladinet CentreStack and Triofox Vulnerability Exploited in Attacks

itsecuritynews.info - 17/Dec 13:03

CISA issued a critical warning regarding a hardcoded cryptographic key vulnerability affecting Gladinet CentreStack and Triofox file management...

Sorry! Image not available at this time

CISA Warns of Gladinet CentreStack and Triofox Vulnerability Exploited in Attacks

itsecuritynews.info - 17/Dec 13:03

CISA issued a critical warning regarding a hardcoded cryptographic key vulnerability affecting Gladinet CentreStack and Triofox file management...

Sorry! Image not available at this time

Exploited MongoBleed flaw leaks MongoDB secrets, 87K servers exposed

bleepingcomputer.com - 28/Dec 20:38

A severe vulnerability affecting multiple MongoDB versions, dubbed MongoBleed (CVE-2025-14847), is being actively exploited in the wild, with over...

Sorry! Image not available at this time

M-Files Vulnerability Allows Attackers to Steal Active User Session Tokens

itsecuritynews.info - 24/Dec 18:02

A critical security vulnerability in M-Files Server could allow authenticated attackers to capture active user session tokens via the M-Files Web...

Sorry! Image not available at this time

M-Files Vulnerability Allows Attackers to Steal Active User Session Tokens

itsecuritynews.info - 24/Dec 18:02

A critical security vulnerability in M-Files Server could allow authenticated attackers to capture active user session tokens via the M-Files Web...

Sorry! Image not available at this time

Critical MongoDB Flaw Leaks Sensitive Data Through zlib Compression

itsecuritynews.info - 24/Dec 06:02

MongoDB has disclosed a critical security vulnerability tracked as CVE-2025-14847 that could allow attackers to extract uninitialized heap memory from...

Sorry! Image not available at this time

Critical MongoDB Flaw Leaks Sensitive Data Through zlib Compression

itsecuritynews.info - 24/Dec 06:02

MongoDB has disclosed a critical security vulnerability tracked as CVE-2025-14847 that could allow attackers to extract uninitialized heap memory from...

Sorry! Image not available at this time

Net-SNMP Vulnerability Enables Buffer Overflow and the Daemon to Crash

itsecuritynews.info - 25/Dec 12:02

A new critical vulnerability affecting the Net-SNMP software suite has been disclosed, posing a significant risk to network infrastructure worldwide....