Cybersecurity & Regolamentazione UE

News & Sicurezza

Aggiornamenti da ENISA, NVD e le principali fonti di cybersecurity europee. Tutto quello che un Responsabile Tecnico deve sapere.

33693 risultati

VulnerabilitàAlta
CVE-2026-19346 - Tenda CH22 CertListInfo formCertListInfo command injection

CVE ID :CVE-2026-19346 Published : Aug. 9, 2026, 10:17 a.m. | 10 hours, 12 minutes ago Description :A vulnerability was determined in Tenda CH22 1.0.0.1. This vulnerability affects the function formCertListInfo of the file /goform/CertListInfo. This manipulation of the argument Name causes command injection. The attack can be initiated remotely. The exploit has been publicly disclosed and may be utilized. Severity: 9.0 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE09 ago 2026
VulnerabilitàAlta
CVE-2026-19344 (CVSS 7.3)

A vulnerability has been found in code-projects Task Management System 1.0. Affected by this issue is some unknown functionality of the file /user/comment_count_user.php. The manipulation of the argument task_id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

NVD (NIST)09 ago 2026
VulnerabilitàAlta
CVE-2026-19344 - code-projects Task Management System comment_count_user.php sql injection

CVE ID :CVE-2026-19344 Published : Aug. 9, 2026, 10:17 a.m. | 8 hours, 11 minutes ago Description :A vulnerability has been found in code-projects Task Management System 1.0. Affected by this issue is some unknown functionality of the file /user/comment_count_user.php. The manipulation of the argument task_id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. Severity: 7.5 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE09 ago 2026
VulnerabilitàAlta
CVE-2026-19345 - code-projects Task Management System UpdateTaskStatus.php authorization

CVE ID :CVE-2026-19345 Published : Aug. 9, 2026, 10:17 a.m. | 10 hours, 12 minutes ago Description :A vulnerability was found in code-projects Task Management System 1.0. This affects an unknown part of the file /user/UpdateTaskStatus.php. The manipulation of the argument task_id/val results in missing authorization. It is possible to launch the attack remotely. The exploit has been made public and could be used. Severity: 6.5 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE09 ago 2026
VulnerabilitàAlta
CVE-2026-19343 (CVSS 7.3)

A flaw has been found in code-projects Task Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/AdminLogin.php. Executing a manipulation of the argument email/password can lead to sql injection. The attack may be performed from remote. The exploit has been published and may be used.

NVD (NIST)09 ago 2026
VulnerabilitàAlta
CVE-2026-19343 - code-projects Task Management System AdminLogin.php sql injection

CVE ID :CVE-2026-19343 Published : Aug. 9, 2026, 8:16 a.m. | 10 hours, 12 minutes ago Description :A flaw has been found in code-projects Task Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/AdminLogin.php. Executing a manipulation of the argument email/password can lead to sql injection. The attack may be performed from remote. The exploit has been published and may be used. Severity: 7.5 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE09 ago 2026
VulnerabilitàAlta
CVE-2026-19342 (CVSS 7.3)

A vulnerability was detected in code-projects Task Management System 1.0. Affected is an unknown function of the file /index.php of the component Login. Performing a manipulation of the argument Password results in improper authentication. The attack is possible to be carried out remotely. The exploit is now public and may be used.

NVD (NIST)09 ago 2026
VulnerabilitàAlta
CVE-2026-19342 - code-projects Task Management System Login index.php improper authentication

CVE ID :CVE-2026-19342 Published : Aug. 9, 2026, 8:16 a.m. | 10 hours, 12 minutes ago Description :A vulnerability was detected in code-projects Task Management System 1.0. Affected is an unknown function of the file /index.php of the component Login. Performing a manipulation of the argument Password results in improper authentication. The attack is possible to be carried out remotely. The exploit is now public and may be used. Severity: 7.3 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE09 ago 2026
VulnerabilitàAlta
CVE-2026-19341 (CVSS 8.8)

A security vulnerability has been detected in UTT HiPER 1200GW up to 2.5.3-170306. This impacts the function strcpy of the file /goform/pptpSrvGlobalConfig. Such manipulation of the argument EncryptionMode leads to stack-based buffer overflow. The attack can be executed remotely. The exploit has been disclosed publicly and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

NVD (NIST)09 ago 2026
VulnerabilitàAlta
CVE-2026-19339 - aliyun alibabacloud-dataworks-mcp-server initResources.ts ReadResourceRequestSchema server-side request forgery

CVE ID :CVE-2026-19339 Published : Aug. 9, 2026, 7:17 a.m. | 9 hours, 11 minutes ago Description :A security flaw has been discovered in aliyun alibabacloud-dataworks-mcp-server up to 1.0.43. The impacted element is the function ReadResourceRequestSchema of the file src/resources/initResources.ts. The manipulation of the argument request.params.uri results in server-side request forgery. The attack may be launched remotely. The project was informed of the problem early through an issue report but has not responded yet. Severity: 6.5 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE09 ago 2026
VulnerabilitàAlta
CVE-2026-19341 - UTT HiPER 1200GW pptpSrvGlobalConfig strcpy stack-based overflow

CVE ID :CVE-2026-19341 Published : Aug. 9, 2026, 7:17 a.m. | 11 hours, 11 minutes ago Description :A security vulnerability has been detected in UTT HiPER 1200GW up to 2.5.3-170306. This impacts the function strcpy of the file /goform/pptpSrvGlobalConfig. Such manipulation of the argument EncryptionMode leads to stack-based buffer overflow. The attack can be executed remotely. The exploit has been disclosed publicly and may be used. The vendor was contacted early about this disclosure but did not respond in any way. Severity: 9.0 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE09 ago 2026
VulnerabilitàAlta
CVE-2026-19340 - anubissbe ProjectHub-Mcp Webhooks API complete_backend.js server-side request forgery

CVE ID :CVE-2026-19340 Published : Aug. 9, 2026, 7:17 a.m. | 9 hours, 11 minutes ago Description :A weakness has been identified in anubissbe ProjectHub-Mcp up to 5.0.0. This affects an unknown function of the file backend-fix/complete_backend.js of the component Webhooks API. This manipulation of the argument url causes server-side request forgery. Remote exploitation of the attack is possible. The project was informed of the problem early through an issue report but has not responded yet. Severity: 6.5 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE09 ago 2026

Pagina 144 di 2808

Resta aggiornato sulla cybersecurity

Iscriviti a CodersRegistry per ricevere gli aggiornamenti più importanti su regolamentazione EU e vulnerabilità critiche.