Cybersecurity & Regolamentazione UE

News & Sicurezza

Aggiornamenti da ENISA, NVD e le principali fonti di cybersecurity europee. Tutto quello che un Responsabile Tecnico deve sapere.

32238 risultati

VulnerabilitàAlta
CVE-2026-24755 - Kiteworks Secure Data Forms is vulnerable to Authorization Bypass Through User-Controlled Key

CVE ID :CVE-2026-24755 Published : June 1, 2026, 11:16 p.m. | 1 hour, 16 minutes ago Description :Kiteworks is a private data network (PDN). Prior to version 9.3.0, an Insecure Direct Object Reference (IDOR) vulnerability in Kiteworks Secure Data Forms allows an authenticated user to modify permissions on resources belonging to other users due to insufficient authorization checks on resource ownership. Upgrade Kiteworks to version 9.3.0 or later to receive a patch. Severity: 5.4 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE01 giu 2026
VulnerabilitàAlta
CVE-2026-24754 - Kiteworks Secure Data Forms Vulnerable to Cross-site Scripting

CVE ID :CVE-2026-24754 Published : June 1, 2026, 11:16 p.m. | 1 hour, 16 minutes ago Description :Kiteworks is a private data network (PDN). Prior to version 9.3.0, a stored XSS vulnerability in Kiteworks Secure Data Forms could allow an authenticated attacker to execute arbitrary JavaScript code in other users' sessions. Upgrade Kiteworks to version 9.3.0 or later to receive a patch. Severity: 5.4 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE01 giu 2026
VulnerabilitàAlta
CVE-2026-24761 - Kiteworks Secure Data Forms is vulnerable to Authorization Bypass Through User-Controlled Key

CVE ID :CVE-2026-24761 Published : June 1, 2026, 11:16 p.m. | 1 hour, 16 minutes ago Description :Kiteworks is a private data network (PDN). Prior to version 9.3.0, an Insecure Direct Object Reference (IDOR) vulnerability in Kiteworks Secure Data Forms allows an authenticated user to access metadata of resources belonging to other users due to insufficient authorization checks on resource ownership. Upgrade Kiteworks to version 9.3.0 or later to receive a patch. Severity: 3.7 | LOW Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE01 giu 2026
VulnerabilitàAlta
CVE-2026-24091 (CVSS 7.2)

Memory corruption while processing fastboot commands with improperly formatted input.

NVD (NIST)01 giu 2026
VulnerabilitàAlta
CVE-2026-24090 (CVSS 7.1)

Cryptographic issue while processing partition table entries allows unauthorized modification of boot flow.

NVD (NIST)01 giu 2026
VulnerabilitàAlta
CVE-2026-24089 (CVSS 7.2)

Memory corruption while processing fastboot commands with invalid input.

NVD (NIST)01 giu 2026
VulnerabilitàAlta
CVE-2026-24088 (CVSS 8.2)

Cryptographic Issue while processing a specific partition which allows unauthorized write access to load a customized bootloader.

NVD (NIST)01 giu 2026
VulnerabilitàAlta
CVE-2026-24087 (CVSS 7.2)

Memory corruption while processing fastboot OEM commands.

NVD (NIST)01 giu 2026
VulnerabilitàAlta
CVE-2026-24085 (CVSS 7.2)

Memory Corruption when processing display command line information due to improper initialization of a variable.

NVD (NIST)01 giu 2026
VulnerabilitàAlta
CVE-2026-24091 - Improper Validation of Syntactic Correctness of Input in Display

CVE ID :CVE-2026-24091 Published : June 1, 2026, 11:16 p.m. | 1 hour, 16 minutes ago Description :Memory corruption while processing fastboot commands with improperly formatted input. Severity: 7.2 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE01 giu 2026
VulnerabilitàAlta
CVE-2026-24088 - Missing Authentication for Critical Function in Boot

CVE ID :CVE-2026-24088 Published : June 1, 2026, 11:16 p.m. | 1 hour, 16 minutes ago Description :Cryptographic Issue while processing a specific partition which allows unauthorized write access to load a customized bootloader. Severity: 8.2 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE01 giu 2026
VulnerabilitàAlta
CVE-2026-24090 - Missing Authentication for Critical Function in HLOS

CVE ID :CVE-2026-24090 Published : June 1, 2026, 11:16 p.m. | 1 hour, 16 minutes ago Description :Cryptographic issue while processing partition table entries allows unauthorized modification of boot flow. Severity: 7.1 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE01 giu 2026

Pagina 1055 di 2687

Resta aggiornato sulla cybersecurity

Iscriviti a CodersRegistry per ricevere gli aggiornamenti più importanti su regolamentazione EU e vulnerabilità critiche.