Cybersecurity & Regolamentazione UE

News & Sicurezza

Aggiornamenti da ENISA, NVD e le principali fonti di cybersecurity europee. Tutto quello che un Responsabile Tecnico deve sapere.

38738 risultati

VulnerabilitàAlta
CVE-2026-5854 - Totolink A7100RU CGI cstecgi.cgi setWiFiEasyCfg os command injection

CVE ID :CVE-2026-5854 Published : April 9, 2026, 7:16 a.m. | 6 hours, 40 minutes ago Description :A vulnerability was detected in Totolink A7100RU 7.4cu.2313_b20191024. Affected by this issue is the function setWiFiEasyCfg of the file /cgi-bin/cstecgi.cgi of the component CGI Handler. Performing a manipulation of the argument merge results in os command injection. It is possible to initiate the attack remotely. The exploit is now public and may be used. Severity: 10.0 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE09 apr 2026
VulnerabilitàAlta
CVE-2026-5853 - Totolink A7100RU CGI cstecgi.cgi setIpv6LanCfg os command injection

CVE ID :CVE-2026-5853 Published : April 9, 2026, 7:16 a.m. | 6 hours, 40 minutes ago Description :A security vulnerability has been detected in Totolink A7100RU 7.4cu.2313_b20191024. Affected by this vulnerability is the function setIpv6LanCfg of the file /cgi-bin/cstecgi.cgi of the component CGI Handler. Such manipulation of the argument addrPrefixLen leads to os command injection. The attack may be performed from remote. The exploit has been disclosed publicly and may be used. Severity: 10.0 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE09 apr 2026
VulnerabilitàCritica
CVE-2026-5852 (CVSS 9.8)

A weakness has been identified in Totolink A7100RU 7.4cu.2313_b20191024. Affected is the function setIptvCfg of the file /cgi-bin/cstecgi.cgi of the component CGI Handler. This manipulation of the argument igmpVer causes os command injection. The attack is possible to be carried out remotely. The exploit has been made available to the public and could be used for attacks.

NVD (NIST)09 apr 2026
VulnerabilitàAlta
CVE-2026-5852 - Totolink A7100RU CGI cstecgi.cgi setIptvCfg os command injection

CVE ID :CVE-2026-5852 Published : April 9, 2026, 7:16 a.m. | 6 hours, 40 minutes ago Description :A weakness has been identified in Totolink A7100RU 7.4cu.2313_b20191024. Affected is the function setIptvCfg of the file /cgi-bin/cstecgi.cgi of the component CGI Handler. This manipulation of the argument igmpVer causes os command injection. The attack is possible to be carried out remotely. The exploit has been made available to the public and could be used for attacks. Severity: 10.0 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE09 apr 2026
News
Critical Chrome Vulnerabilities Let Attackers to Execute Arbitrary Code

Critical Chrome Vulnerabilities Let Attackers to Execute Arbitrary Code Google has released Chrome 147 to the stable channel for Windows, Mac, and Linux, patching a sweeping set of security vulnerabilities — including two critical-severity flaws that could allow remote at ... Read more Published Date: Apr 09, 2026 (1 day, 5 hours ago) Vulnerabilities has been mentioned in this article. CVE-2026-5889 CVE-2026-5873 CVE-2026-5872 CVE-2026-5871 CVE-2026-5870 CVE-2026-5869 CVE-2026-5868 CVE-2026-5867 CVE-2026-5866 CVE-2026-5865 CVE-2026-5864 CVE-2026-5863 CVE-2026-5862 CVE-2026-5861 CVE-2026-5860 CVE-2026-5859 CVE-2026-5858

CVEfeed Newsroom09 apr 2026
VulnerabilitàCritica
CVE-2026-5851 (CVSS 9.8)

A security flaw has been discovered in Totolink A7100RU 7.4cu.2313_b20191024. This impacts the function setUPnPCfg of the file /cgi-bin/cstecgi.cgi of the component CGI Handler. The manipulation of the argument enable results in os command injection. The attack can be executed remotely. The exploit has been released to the public and may be used for attacks.

NVD (NIST)09 apr 2026
VulnerabilitàCritica
CVE-2026-5850 (CVSS 9.8)

A vulnerability was identified in Totolink A7100RU 7.4cu.2313_b20191024. This affects the function setVpnPassCfg of the file /cgi-bin/cstecgi.cgi of the component CGI Handler. The manipulation of the argument pptpPassThru leads to os command injection. Remote exploitation of the attack is possible. The exploit is publicly available and might be used.

NVD (NIST)09 apr 2026
VulnerabilitàAlta
CVE-2026-5849 (CVSS 7.3)

A vulnerability was determined in Tenda i12 1.0.0.11(3862). The impacted element is an unknown function of the component HTTP Handler. Executing a manipulation can lead to path traversal. The attack may be launched remotely. The exploit has been publicly disclosed and may be utilized.

NVD (NIST)09 apr 2026
VulnerabilitàAlta
CVE-2026-5851 - Totolink A7100RU CGI cstecgi.cgi setUPnPCfg os command injection

CVE ID :CVE-2026-5851 Published : April 9, 2026, 6:16 a.m. | 7 hours, 40 minutes ago Description :A security flaw has been discovered in Totolink A7100RU 7.4cu.2313_b20191024. This impacts the function setUPnPCfg of the file /cgi-bin/cstecgi.cgi of the component CGI Handler. The manipulation of the argument enable results in os command injection. The attack can be executed remotely. The exploit has been released to the public and may be used for attacks. Severity: 10.0 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE09 apr 2026
VulnerabilitàAlta
CVE-2026-5850 - Totolink A7100RU CGI cstecgi.cgi setVpnPassCfg os command injection

CVE ID :CVE-2026-5850 Published : April 9, 2026, 6:16 a.m. | 7 hours, 40 minutes ago Description :A vulnerability was identified in Totolink A7100RU 7.4cu.2313_b20191024. This affects the function setVpnPassCfg of the file /cgi-bin/cstecgi.cgi of the component CGI Handler. The manipulation of the argument pptpPassThru leads to os command injection. Remote exploitation of the attack is possible. The exploit is publicly available and might be used. Severity: 10.0 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE09 apr 2026
News
ClickFix macOS Attack Uses Script Editor to Bypass Security Controls

ClickFix macOS Attack Uses Script Editor to Bypass Security Controls A newly identified ClickFix-style macOS attack demonstrates how threat actors are refining their techniques to evade security defenses. The campaign moves away from the traditional reliance on Termina ... Read more Published Date: Apr 09, 2026 (1 day, 6 hours ago) Vulnerabilities has been mentioned in this article. CVE-2026-22778 CVE-2025-55182 CVE-2025-59528

CVEfeed Newsroom09 apr 2026
VulnerabilitàAlta
CVE-2026-5849 - Tenda i12 HTTP path traversal

CVE ID :CVE-2026-5849 Published : April 9, 2026, 6:16 a.m. | 7 hours, 40 minutes ago Description :A vulnerability was determined in Tenda i12 1.0.0.11(3862). The impacted element is an unknown function of the component HTTP Handler. Executing a manipulation can lead to path traversal. The attack may be launched remotely. The exploit has been publicly disclosed and may be utilized. Severity: 7.5 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE09 apr 2026

Pagina 2363 di 3229

Resta aggiornato sulla cybersecurity

Iscriviti a CodersRegistry per ricevere gli aggiornamenti più importanti su regolamentazione EU e vulnerabilità critiche.