Cybersecurity & Regolamentazione UE

News & Sicurezza

Aggiornamenti da ENISA, NVD e le principali fonti di cybersecurity europee. Tutto quello che un Responsabile Tecnico deve sapere.

39344 risultati

VulnerabilitàAlta
CVE-2026-1612 - Hard-coded AWS Key in AL-KO Robolinho Update Software

CVE ID :CVE-2026-1612 Published : March 30, 2026, 11:16 a.m. | 2 hours, 37 minutes ago Description :AL-KO Robolinho Update Software has hard-coded AWS Access and Secret keys that allow anyone to access AL-KO's AWS bucket. Using the keys directly might give the attacker greater access than the app itself. Key grants AT LEAST read access to some of the objects in bucket. The vendor was notified early about this vulnerability, but didn't respond with the details of vulnerability or vulnerable version range. Only versions 8.0.21.0610 was tested and confirmed as vulnerable, other versions were not tested and might also be vulnerable. Severity: 6.9 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE30 mar 2026
News
Critical n8n Vulnerability Let Attackers Achieve Remote Code Execution

Critical n8n Vulnerability Let Attackers Achieve Remote Code Execution A critical security flaw in n8n, a widely used open-source workflow automation platform, exposes host servers to Remote Code Execution (RCE) attacks. Tracked as CVE-2026-33660, this critical vulnerabi ... Read more Published Date: Mar 30, 2026 (1 day, 3 hours ago) Vulnerabilities has been mentioned in this article. CVE-2026-33660

CVEfeed Newsroom30 mar 2026
VulnerabilitàAlta
CVE-2019-25655 - Device Monitoring Studio 8.10.00.8925 Denial of Service

CVE ID :CVE-2019-25655 Published : March 30, 2026, 12:16 p.m. | 3 hours, 37 minutes ago Description :Device Monitoring Studio 8.10.00.8925 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an excessively long string to the server connection dialog. Attackers can trigger the crash by entering a malformed server name or address containing repeated characters through the Tools menu Connect to New Server interface. Severity: 6.9 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE30 mar 2026
VulnerabilitàAlta
CVE-2019-25654 - Core FTP/SFTP Server 1.2 Denial of Service via Buffer Overflow

CVE ID :CVE-2019-25654 Published : March 30, 2026, 12:16 p.m. | 3 hours, 37 minutes ago Description :Core FTP/SFTP Server 1.2 contains a buffer overflow vulnerability that allows attackers to crash the service by supplying an excessively long string in the User domain field. Attackers can paste a malicious payload containing 7000 bytes of data into the domain configuration to trigger an application crash and deny service. Severity: 8.7 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE30 mar 2026
VulnerabilitàAlta
CVE-2019-25653 - Navicat for Oracle 12.1.15 Password Field Denial of Service

CVE ID :CVE-2019-25653 Published : March 30, 2026, 12:16 p.m. | 3 hours, 37 minutes ago Description :Navicat for Oracle 12.1.15 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an excessively long string in the password field. Attackers can paste a buffer of 550 repeated characters into the password parameter during Oracle connection configuration to trigger an application crash. Severity: 6.9 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE30 mar 2026
VulnerabilitàAlta
CVE-2018-25235 - NetworkActiv Web Server 4.0 Username Field Buffer Overflow DoS

CVE ID :CVE-2018-25235 Published : March 30, 2026, 12:16 p.m. | 3 hours, 37 minutes ago Description :NetworkActiv Web Server 4.0 contains a buffer overflow vulnerability in the username field of the Security options that allows local attackers to crash the application by supplying an excessively long string. Attackers can trigger a denial of service by entering a crafted username value exceeding the expected buffer size through the Set username interface. Severity: 6.9 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE30 mar 2026
VulnerabilitàAlta
CVE-2018-25234 - SmartFTP Client 9.0.2615.0 Denial of Service via Host Field

CVE ID :CVE-2018-25234 Published : March 30, 2026, 12:16 p.m. | 3 hours, 37 minutes ago Description :SmartFTP Client 9.0.2615.0 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an excessively long string in the Host field. Attackers can paste a buffer of 300 repeated characters into the Host connection parameter to trigger an application crash. Severity: 6.9 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE30 mar 2026
VulnerabilitàAlta
CVE-2018-25233 - WebDrive 18.00.5057 Denial of Service via Secure WebDAV

CVE ID :CVE-2018-25233 Published : March 30, 2026, 12:16 p.m. | 3 hours, 37 minutes ago Description :WebDrive 18.00.5057 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an excessively long string in the username field during Secure WebDAV connection setup. Attackers can input a buffer-overflow payload of 5000 bytes in the username parameter and trigger a connection test to cause the application to crash. Severity: 6.9 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE30 mar 2026
VulnerabilitàAlta
CVE-2018-25231 - HeidiSQL 9.5.0.5196 Denial of Service via Preferences

CVE ID :CVE-2018-25231 Published : March 30, 2026, 12:16 p.m. | 3 hours, 37 minutes ago Description :HeidiSQL 9.5.0.5196 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an excessively long file path in the logging preferences. Attackers can input a buffer-overflow payload through the SQL log file path field in Preferences > Logging to trigger an application crash. Severity: 6.9 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE30 mar 2026
VulnerabilitàAlta
CVE-2018-25232 - Softros LAN Messenger 9.2 Denial of Service via Log Files Location

CVE ID :CVE-2018-25232 Published : March 30, 2026, 12:16 p.m. | 3 hours, 37 minutes ago Description :Softros LAN Messenger 9.2 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an excessively long string to the custom log files location field. Attackers can input a buffer of 2000 characters in the Log Files Location custom path parameter to trigger a crash when the OK button is clicked. Severity: 6.8 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE30 mar 2026
VulnerabilitàAlta
CVE-2018-25230 - Free IP Switcher 3.1 Denial of Service via Computer Name

CVE ID :CVE-2018-25230 Published : March 30, 2026, 12:16 p.m. | 3 hours, 37 minutes ago Description :Free IP Switcher 3.1 contains a buffer overflow vulnerability that allows local attackers to crash the application by supplying an excessively long string in the Computer Name field. Attackers can paste a malicious payload into the Computer Name input field and click Activate to trigger a denial of service condition that crashes the application. Severity: 6.8 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE30 mar 2026
VulnerabilitàAlta
CVE-2018-25228 - NetSetMan 4.7.1 Workgroup Buffer Overflow Denial of Service

CVE ID :CVE-2018-25228 Published : March 30, 2026, 12:16 p.m. | 1 hour, 37 minutes ago Description :NetSetMan 4.7.1 contains a buffer overflow vulnerability in the Workgroup feature that allows local attackers to crash the application by supplying oversized input. Attackers can create a malicious configuration file with excessive data and paste it into the Workgroup field to trigger a denial of service condition. Severity: 6.9 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE30 mar 2026

Pagina 2578 di 3279

Resta aggiornato sulla cybersecurity

Iscriviti a CodersRegistry per ricevere gli aggiornamenti più importanti su regolamentazione EU e vulnerabilità critiche.