Cybersecurity & Regolamentazione UE

News & Sicurezza

Aggiornamenti da ENISA, NVD e le principali fonti di cybersecurity europee. Tutto quello che un Responsabile Tecnico deve sapere.

36256 risultati

News
Cisco Catalyst SD-WAN Controller 0-Day Actively Exploited to Gain Admin Access

Cisco Catalyst SD-WAN Controller 0-Day Actively Exploited to Gain Admin Access A maximum-severity zero-day vulnerability in Cisco Catalyst SD-WAN Controller is being actively exploited in the wild, allowing unauthenticated remote attackers to fully bypass authentication and seiz ... Read more Published Date: May 15, 2026 (23 hours, 22 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2026-20182 CVE-2026-20127

CVEfeed Newsroom15 mag 2026
News
cPanel & WHM Patch 5 High-Severity Flaws, Including 8.6 Severity File Read and SQLi

cPanel & WHM Patch 5 High-Severity Flaws, Including 8.6 Severity File Read and SQLi Recently, cPanel & WHM and WP Squared have issued patches for five critical vulnerabilities. These flaws range from arbitrary file reading to SQL injection, posing severe risks to server integrity and ... Read more Published Date: May 15, 2026 (23 hours, 30 minutes ago) Vulnerabilities has been mentioned in this article.

CVEfeed Newsroom15 mag 2026
VulnerabilitàAlta
CVE-2026-8612 - WWW::Mechanize::Cached versions before 2.00 for Perl deserialize cached HTTP responses from a world-writable on-disk cache, enabling local response forgery and code execution

CVE ID :CVE-2026-8612 Published : May 15, 2026, 2:16 a.m. | 14 minutes ago Description :WWW::Mechanize::Cached versions before 2.00 for Perl deserialize cached HTTP responses from a world-writable on-disk cache, enabling local response forgery and code execution. With no explicit cache backend, WWW::Mechanize::Cached constructs a default Cache::FileCache under /tmp/FileCache without overriding the backend's documented directory_umask of 000, so the cache root and its subdirectories are created mode 0777 with no sticky bit. Cache entries are named by sha1_hex of the request and read back through Storable::thaw on the next cache hit. A local attacker with write access to the cache tree can replace a victim's cache entry for a known URL with an arbitrary frozen HTTP::Response blob, causing the victim's next get() of that URL to return attacker controlled response bytes. Because the bytes are passed to Storable::thaw, a victim process that has loaded any class with a side-effectful STORABLE_thaw, DESTROY, or overload hook can be escalated to arbitrary code execution. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE15 mag 2026
VulnerabilitàAlta
CVE-2025-52540 - AMD Platform Management Framework (PMF) Driver Out-of-Bounds Write Privilege Escalation

CVE ID :CVE-2025-52540 Published : May 15, 2026, 2:16 a.m. | 14 minutes ago Description :An improper input validation vulnerability within the AMD Platform Management Framework (PMF) Driver can allow a local attacker to write Out-of-Bounds, potentially resulting in privilege escalation. Severity: 8.5 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE15 mag 2026
VulnerabilitàAlta
CVE-2025-48521 - AMD Secure Processor ASP PCI Driver UAF Vulnerability

CVE ID :CVE-2025-48521 Published : May 15, 2026, 2:16 a.m. | 14 minutes ago Description :Improper input validation in the AMD Secure Processor (ASP) PCI driver could allow a local attacker to trigger a Use-After-Free (UAF) condition, potentially resulting in a loss of platform integrity or crash. Severity: 6.9 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE15 mag 2026
VulnerabilitàAlta
CVE-2026-0438 - Intel System Management Mode (SMM) Callout Code Execution Vulnerability

CVE ID :CVE-2026-0438 Published : May 15, 2026, 2:16 a.m. | 14 minutes ago Description :A System Management Mode (SMM) handler could perform a callout to code located in non-SMM/untrusted memory. A highly privileged attacker could, with active user interaction and under high complexity and present preconditions, trigger execution of attacker-controlled code in SMM, potentially compromising the system’s confidentiality, integrity, and availability. Severity: 5.4 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE15 mag 2026
VulnerabilitàAlta
CVE-2026-0432 - AMD Chipset Driver Privilege Escalation Vulnerability

CVE ID :CVE-2026-0432 Published : May 15, 2026, 2:16 a.m. | 14 minutes ago Description :Incorrect default permissions in the installation directory for the AMD chipset driver could allow an attacker to achieve privilege escalation resulting in arbitrary code execution. Severity: 8.5 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE15 mag 2026
VulnerabilitàAlta
CVE-2025-48512 - Incorrect default permissions in the installation

CVE ID :CVE-2025-48512 Published : May 15, 2026, 2:16 a.m. | 14 minutes ago Description :Incorrect default permissions in the installation directory for the AMD general-purpose input/output controller (GPIO) could allow an attacker to achieve privilege escalation resulting in arbitrary code execution. Severity: 7.0 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE15 mag 2026
VulnerabilitàAlta
CVE-2025-48520 - AMD Platform Management Framework (PMF) Driver Out-of-Bounds Information Disclosure and Crash Vulnerability

CVE ID :CVE-2025-48520 Published : May 15, 2026, 2:16 a.m. | 14 minutes ago Description :An improper input validation vulnerability within the AMD Platform Management Framework (PMF) driver can allow a local attacker to read Out-of-Bounds potentially resulting in information disclosure or a crash Severity: 6.9 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE15 mag 2026
VulnerabilitàAlta
CVE-2025-48519 - AMD Platform Management Framework Driver Out-of-Bounds Write/Read Vulnerability

CVE ID :CVE-2025-48519 Published : May 15, 2026, 2:16 a.m. | 14 minutes ago Description :An improper input validation vulnerability within the AMD Platform Management Framework (PMF) driver can allow a local attacker to read or write Out-of-Bounds, potentially resulting in privilege escalation Severity: 8.5 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE15 mag 2026
VulnerabilitàAlta
CVE-2025-0045 - AMD Secure Processor ASP Buffer Overflow Vulnerability

CVE ID :CVE-2025-0045 Published : May 15, 2026, 2:16 a.m. | 14 minutes ago Description :Improper Input validation in the AMD Secure Processor (ASP) PCI driver may allow a local attacker to create a buffer overflow condition, potentially resulting in a crash or denial of service Severity: 6.9 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE15 mag 2026
VulnerabilitàAlta
CVE-2024-36345 - AMD OverDrive SMM Out-of-Bounds Read Vulnerability

CVE ID :CVE-2024-36345 Published : May 15, 2026, 2:16 a.m. | 14 minutes ago Description :Improper input validation in the AMD OverDrive (AOD) System Management Mode (SMM) module could allow a privileged attacker to perform an out-of-bounds read, potentially resulting in loss of confidentiality. Severity: 4.6 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE15 mag 2026

Pagina 1630 di 3022

Resta aggiornato sulla cybersecurity

Iscriviti a CodersRegistry per ricevere gli aggiornamenti più importanti su regolamentazione EU e vulnerabilità critiche.