Cybersecurity & Regolamentazione UE

News & Sicurezza

Aggiornamenti da ENISA, NVD e le principali fonti di cybersecurity europee. Tutto quello che un Responsabile Tecnico deve sapere.

35262 risultati

VulnerabilitàAlta
CVE-2025-15649 - IO::Uncompress::Unzip versions before 2.215 for Perl propagate uncaught exception when parsing zip header with malformed DOS date

CVE ID :CVE-2025-15649 Published : May 27, 2026, 4:16 a.m. | 15 minutes ago Description :IO::Uncompress::Unzip versions before 2.215 for Perl propagate uncaught exception when parsing zip header with malformed DOS date. _dosToUnixTime() decodes the local-file-header last-modification date field and calls Time::Local::timelocal() without an eval guard. A header whose date field decodes to an out-of-range month, day, or hour causes timelocal() to die. The exception propagates out of IO::Uncompress::Unzip->new($file) where callers expect undef plus $UnzipError. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE27 mag 2026
News
BIND 9 Software Vulnerabilities Exposes Resolvers and Authoritative Servers to Remote Exploits

BIND 9 Software Vulnerabilities Exposes Resolvers and Authoritative Servers to Remote Exploits A series of newly documented vulnerabilities in ISC BIND 9 has raised significant security concerns for DNS infrastructure operators, with multiple flaws enabling denial-of-service (DoS) attacks, memo ... Read more Published Date: May 27, 2026 (1 day, 10 hours ago) Vulnerabilities has been mentioned in this article. CVE-2026-5950 CVE-2026-5947 CVE-2026-5946 CVE-2026-3593 CVE-2026-3592 CVE-2026-3039

CVEfeed Newsroom27 mag 2026
VulnerabilitàAlta
CVE-2026-9632 (CVSS 8.8)

A flaw has been found in UTT HiPER 1250GW up to 3.2.7-210907-180535. Affected by this issue is the function strcpy of the file /goform/formGroupConfig of the component Web Management Interface. Executing a manipulation of the argument Profile can lead to stack-based buffer overflow. It is possible to launch the attack remotely. The exploit has been published and may be used.

NVD (NIST)27 mag 2026
VulnerabilitàAlta
CVE-2026-9632 - UTT HiPER 1250GW Web Management formGroupConfig strcpy stack-based overflow

CVE ID :CVE-2026-9632 Published : May 27, 2026, 2:16 a.m. | 2 hours, 15 minutes ago Description :A flaw has been found in UTT HiPER 1250GW up to 3.2.7-210907-180535. Affected by this issue is the function strcpy of the file /goform/formGroupConfig of the component Web Management Interface. Executing a manipulation of the argument Profile can lead to stack-based buffer overflow. It is possible to launch the attack remotely. The exploit has been published and may be used. Severity: 9.0 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE27 mag 2026
VulnerabilitàAlta
CVE-2026-9631 (CVSS 8.8)

A vulnerability was detected in UTT HiPER 1250GW up to 3.2.7-210907-180535. Affected by this vulnerability is the function strcpy of the file /goform/formConfigFastDirectionW of the component Web Management Interface. Performing a manipulation of the argument Profile results in stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit is now public and may be used.

NVD (NIST)27 mag 2026
VulnerabilitàAlta
CVE-2026-9628 (CVSS 8.8)

A weakness has been identified in UTT HiPER 1200GW up to 2.5.3-170306. Affected is an unknown function of the file /goform/formPptpClientConfig of the component Web Management Interface. This manipulation of the argument PPTP server address/username/password/tunnel name causes stack-based buffer overflow. The attack may be initiated remotely. The exploit has been made available to the public and could be used for attacks.

NVD (NIST)27 mag 2026
VulnerabilitàAlta
CVE-2026-9627 (CVSS 8.8)

A security flaw has been discovered in UTT HiPER 1200GW up to 2.5.3-170306. This impacts the function strcpy of the file /goform/setSysAdm of the component Web Management Interface. The manipulation of the argument sysAdmUser/sysAdmPass results in buffer overflow. The attack can be launched remotely. The exploit has been released to the public and may be used for attacks.

NVD (NIST)27 mag 2026
VulnerabilitàAlta
CVE-2026-9609 - QianFox FoxCMS Admin.php edit password recovery

CVE ID :CVE-2026-9609 Published : May 27, 2026, 2:16 a.m. | 2 hours, 15 minutes ago Description :A vulnerability was identified in QianFox FoxCMS up to 1.2.6. This affects the function Edit of the file Admin.php. The manipulation leads to weak password recovery. The attack can be initiated remotely. The exploit is publicly available and might be used. The project was informed of the problem early through an issue report but has not responded yet. Severity: 5.8 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE27 mag 2026
VulnerabilitàAlta
CVE-2026-9156 - Tanium addressed a denial of service vulnerability in Tanium Server.

CVE ID :CVE-2026-9156 Published : May 27, 2026, 2:16 a.m. | 2 hours, 15 minutes ago Description :Tanium addressed a denial of service vulnerability in Tanium Server. Severity: 6.5 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE27 mag 2026
VulnerabilitàAlta
CVE-2026-9207 - Command Injection in Connect Allows Privilege Escalation on Windows Tanium Module Server

CVE ID :CVE-2026-9207 Published : May 27, 2026, 2:16 a.m. | 2 hours, 15 minutes ago Description :Tanium addressed an unauthorized code execution vulnerability in Connect. Severity: 8.8 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE27 mag 2026
VulnerabilitàAlta
CVE-2026-9608 - QianFox FoxCMS Administrator Backend edit cross site scripting

CVE ID :CVE-2026-9608 Published : May 27, 2026, 2:16 a.m. | 2 hours, 15 minutes ago Description :A vulnerability was determined in QianFox FoxCMS up to 1.2.6. The impacted element is an unknown function of the file /Tag/edit of the component Administrator Backend. Executing a manipulation can lead to cross site scripting. It is possible to launch the attack remotely. The exploit has been publicly disclosed and may be utilized. The project was informed of the problem early through an issue report but has not responded yet. Severity: 3.3 | LOW Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE27 mag 2026
VulnerabilitàAlta
CVE-2026-9627 - UTT HiPER 1200GW Web Management setSysAdm strcpy buffer overflow

CVE ID :CVE-2026-9627 Published : May 27, 2026, 2:16 a.m. | 2 hours, 15 minutes ago Description :A security flaw has been discovered in UTT HiPER 1200GW up to 2.5.3-170306. This impacts the function strcpy of the file /goform/setSysAdm of the component Web Management Interface. The manipulation of the argument sysAdmUser/sysAdmPass results in buffer overflow. The attack can be launched remotely. The exploit has been released to the public and may be used for attacks. Severity: 9.0 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE27 mag 2026

Pagina 1401 di 2939

Resta aggiornato sulla cybersecurity

Iscriviti a CodersRegistry per ricevere gli aggiornamenti più importanti su regolamentazione EU e vulnerabilità critiche.