Cybersecurity & Regolamentazione UE

News & Sicurezza

Aggiornamenti da ENISA, NVD e le principali fonti di cybersecurity europee. Tutto quello che un Responsabile Tecnico deve sapere.

36767 risultati

News
New MajorDoMo RCE Vulnerability Exposes Servers to Code Execution Attacks

New MajorDoMo RCE Vulnerability Exposes Servers to Code Execution Attacks A newly disclosed flaw exposes internet-facing MajorDoMo servers to unauthenticated remote code execution via a broken authentication flow and unsafe dynamic PHP evaluation. The vulnerability (CVE-202 ... Read more Published Date: May 06, 2026 (21 hours, 11 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2026-27174

CVEfeed Newsroom06 mag 2026
VulnerabilitàAlta
CVE-2026-6788 - Uncontrolled search path in PluginLauncher allows SYSTEM code execution in WatchGuard Agent

CVE ID :CVE-2026-6788 Published : May 6, 2026, 4:16 p.m. | 2 hours, 7 minutes ago Description :Uncontrolled Search Path Element vulnerability in WatchGuard Agent on Windows allows Using Malicious Files.This issue affects WatchGuard Agent before 1.25.03.0000. Severity: 8.5 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE06 mag 2026
VulnerabilitàAlta
CVE-2026-6787 - Usage of a hard-coded cryptographic key in WatchGuard Agent allows inclusion of code into existing process

CVE ID :CVE-2026-6787 Published : May 6, 2026, 4:16 p.m. | 2 hours, 7 minutes ago Description :Use of Hard-coded Cryptographic Key vulnerability in WatchGuard Agent on Windows allows Inclusion of Code in Existing Process.This issue affects WatchGuard Agent: before 1.25.03.0000. Severity: 8.5 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE06 mag 2026
VulnerabilitàAlta
CVE-2026-41286 - Stack-based Buffer Overflow in WatchGuard Agent Discovery Service on Windows Causes Denial of Service - Variant B

CVE ID :CVE-2026-41286 Published : May 6, 2026, 4:16 p.m. | 2 hours, 7 minutes ago Description :Stack-based Buffer Overflow vulnerability in the WatchGuard Agent discovery service on Windows allows Overflow Buffers. An unauthenticated attacker on the same local network could exploit this vulnerability to crash the agent service. Severity: 7.1 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE06 mag 2026
VulnerabilitàAlta
CVE-2026-41288 - WatchGuard Agent on Windows Privilege Escalation Vulnerability

CVE ID :CVE-2026-41288 Published : May 6, 2026, 4:16 p.m. | 2 hours, 7 minutes ago Description :Incorrect permission assignment for a resource in the patch management component of the WatchGuard Agent on Windows allows an authenticated local user to elevate their privileges to NT AUTHORITY\\SYSTEM. Severity: 7.3 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE06 mag 2026
VulnerabilitàAlta
CVE-2026-8028 - FlowiseAI Flowise Endpoint account.service.ts verify information disclosure

CVE ID :CVE-2026-8028 Published : May 6, 2026, 3:16 p.m. | 1 hour, 7 minutes ago Description :A vulnerability was detected in FlowiseAI Flowise up to 3.0.12. This affects the function verify of the file packages/server/src/enterprise/services/account.service.ts of the component Endpoint. Performing a manipulation results in information disclosure. Remote exploitation of the attack is possible. The attack is considered to have high complexity. It is indicated that the exploitability is difficult. The exploit is now public and may be used. Upgrading the affected component is recommended. Severity: 3.7 | LOW Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE06 mag 2026
VulnerabilitàAlta
CVE-2026-8027 - FlowiseAI Flowise User Controller authorization

CVE ID :CVE-2026-8027 Published : May 6, 2026, 3:16 p.m. | 1 hour, 7 minutes ago Description :A weakness has been identified in FlowiseAI Flowise up to 3.0.12. Affected by this vulnerability is an unknown functionality of the component User Controller Handler. This manipulation of the argument userId/organizationId/workspaceId/email causes authorization bypass. The attack may be initiated remotely. The affected component should be upgraded. Severity: 5.3 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE06 mag 2026
VulnerabilitàAlta
CVE-2026-41287 - Stack-based Buffer Overflow in WatchGuard Agent Discovery Service on Windows Causes Denial of Service - Variant A

CVE ID :CVE-2026-41287 Published : May 6, 2026, 3:16 p.m. | 1 hour, 7 minutes ago Description :Stack-based Buffer Overflow vulnerability in the WatchGuard Agent discovery service on Windows allows Overflow Buffers. An unauthenticated attacker on the same local network could exploit this vulnerability to crash the agent service. Severity: 7.1 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE06 mag 2026
VulnerabilitàAlta
CVE-2025-52613 - HCL BigFix Service Management (SM) is affected by use of a vulnerable component

CVE ID :CVE-2025-52613 Published : May 6, 2026, 3:16 p.m. | 1 hour, 7 minutes ago Description :HCL BigFix Service Management (SM) is affected by use of a vulnerable WSGI Server was identified. Deploying an outdated or insecure WSGI server may expose the application to known security weaknesses, potentially increasing the risk of exploitation and unauthorized access. Severity: 4.6 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE06 mag 2026
VulnerabilitàAlta
CVE-2025-31984 - HCL BigFix Service Management (SM) is affected by a security misconfiguration due to a missing or insecure “X-Content-Type-Options” header

CVE ID :CVE-2025-31984 Published : May 6, 2026, 3:16 p.m. | 1 hour, 7 minutes ago Description :HCL BigFix Service Management (SM) is affected by a security misconfiguration due to a missing or insecure “X-Content-Type-Options” header. This could allow browsers to perform MIME-type sniffing, potentially causing malicious content to be interpreted and executed incorrectly. Severity: 3.7 | LOW Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE06 mag 2026
VulnerabilitàAlta
CVE-2025-31983 - HCL BigFix Service Management (SM) is affected by a security misconfiguration vulnerability due to CSP header

CVE ID :CVE-2025-31983 Published : May 6, 2026, 3:16 p.m. | 1 hour, 7 minutes ago Description :HCL BigFix Service Management (SM) is affected by a security misconfiguration vulnerability due to CSP header. This could allow attackers to inject malicious scripts increasing the risk of cross-site scripting (XSS) and potential exposure of sensitive information. Severity: 3.7 | LOW Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE06 mag 2026
VulnerabilitàAlta
CVE-2025-31982 - HCL BigFix Service Management (SM) had directories that were not linked or publicly visible but could be accessed directl

CVE ID :CVE-2025-31982 Published : May 6, 2026, 3:16 p.m. | 1 hour, 7 minutes ago Description :HCL BigFix Service Management (SM) had directories that were not linked or publicly visible but could be accessed directly. This could allow an increased risk of information disclosure or misuse of sensitive functionality. Severity: 3.7 | LOW Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE06 mag 2026

Pagina 1818 di 3064

Resta aggiornato sulla cybersecurity

Iscriviti a CodersRegistry per ricevere gli aggiornamenti più importanti su regolamentazione EU e vulnerabilità critiche.