Cybersecurity & Regolamentazione UE

News & Sicurezza

Aggiornamenti da ENISA, NVD e le principali fonti di cybersecurity europee. Tutto quello che un Responsabile Tecnico deve sapere.

30583 risultati

VulnerabilitàAlta
CVE-2026-47306 - Samsung Open Source rlottie Uncontrolled Recursion

CVE ID :CVE-2026-47306 Published : June 4, 2026, 10:16 a.m. | 16 minutes ago Description :Uncontrolled Recursion vulnerability in Samsung Open Source rlottie allows Oversized Serialized Data Payloads. This issue affects rlottie: before e2d19e3b150e0e4a9586fa90b56fd3061cc98945. Severity: 6.1 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE04 giu 2026
VulnerabilitàAlta
CVE-2026-10800 - PaddlePaddle FastDeploy MultimodalHasher hasher.py hash_features weak hash

CVE ID :CVE-2026-10800 Published : June 4, 2026, 10:16 a.m. | 16 minutes ago Description :A weakness has been identified in PaddlePaddle FastDeploy up to 2.4.1. Affected by this issue is the function hash_features of the file fastdeploy/multimodal/hasher.py of the component MultimodalHasher. Executing a manipulation can lead to use of weak hash. The attack requires local access. A high complexity level is associated with this attack. The exploitation is known to be difficult. This patch is called 374945747652a8d32965591c0c01a00c88b7067f. Applying a patch is advised to resolve this issue. Severity: 3.6 | LOW Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE04 giu 2026
VulnerabilitàAlta
CVE-2026-10305 - Samsung Open Source rlottie Out-of-Bounds Read

CVE ID :CVE-2026-10305 Published : June 4, 2026, 10:16 a.m. | 16 minutes ago Description :Out-of-bounds read vulnerability in Samsung Open Source rlottie allows Overread Buffers. This issue affects rlottie: before 223a2a41ba4f462e4abe767bebba49a366c9b9fd. Severity: 6.1 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE04 giu 2026
News
Cisco meldt exploitcode voor kritiek lek in Unified Communications Manager

Cisco meldt exploitcode voor kritiek lek in Unified Communications Manager Cisco waarschuwt organisaties voor een kritieke kwetsbaarheid in de Cisco Unified Communications Manager en is bekend met publieke proof-of-concept exploitcode voor het probleem. Er zijn updates uitge ... Read more Published Date: Jun 04, 2026 (2 days, 16 hours ago) Vulnerabilities has been mentioned in this article. CVE-2026-20230

CVEfeed Newsroom04 giu 2026
VulnerabilitàAlta
CVE-2026-50207 - Local Modem Manipulation via Binder Interfaces

CVE ID :CVE-2026-50207 Published : June 4, 2026, 9:16 a.m. | 1 hour, 16 minutes ago Description :The system Binder boundary accepts unverified pass-through AT commands, giving local applications the power to read baseband files or disable cellular connectivity. Severity: 8.5 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE04 giu 2026
VulnerabilitàAlta
CVE-2026-50209 - MDM Server Registration Overriding

CVE ID :CVE-2026-50209 Published : June 4, 2026, 9:16 a.m. | 1 hour, 16 minutes ago Description :Broadcast events allow malicious software to rewrite the device's default Mobile Device Management (MDM) endpoint address, shifting administrative ownership to an external attacker. Severity: 9.3 | CRITICAL Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE04 giu 2026
VulnerabilitàAlta
CVE-2026-50208 - Permissive TrustAllCerts TLS Verification

CVE ID :CVE-2026-50208 Published : June 4, 2026, 9:16 a.m. | 1 hour, 16 minutes ago Description :High-risk TrustAllCerts routines disable standard TLS certificate validation. Combined with hard-coded DES symmetric encryption keys, a Man-in-the-Middle (MITM) actor could decrypt network traffic. Severity: 9.2 | CRITICAL Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE04 giu 2026
VulnerabilitàAlta
CVE-2026-50211 - Exposed Factory Testing App Boundaries

CVE ID :CVE-2026-50211 Published : June 4, 2026, 9:16 a.m. | 1 hour, 16 minutes ago Description :Leftover engineering diagnostics and factory-level diagnostic software remain exposed on retail builds, giving malicious apps write privileges to internal NVRAM registers. Severity: 8.8 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE04 giu 2026
VulnerabilitàAlta
CVE-2026-50210 - Weak Static Cryptographic Initialization Vectors

CVE ID :CVE-2026-50210 Published : June 4, 2026, 9:16 a.m. | 1 hour, 16 minutes ago Description :The device encrypts data using AES-CBC with static zero-filled Initialization Vectors (IVs), making it susceptible to replay attacks and known-plaintext decryption. Severity: 6.9 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE04 giu 2026
VulnerabilitàAlta
CVE-2026-50213 - Bulk User Private Data Harvesting

CVE ID :CVE-2026-50213 Published : June 4, 2026, 9:16 a.m. | 1 hour, 16 minutes ago Description :The account validation endpoint /v1/User/validate returns comprehensive user profile data sheets, which can be crawled by iterating predictable identification strings. Severity: 8.7 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE04 giu 2026
VulnerabilitàAlta
CVE-2026-50212 - Arbitrary Remote Device Unbinding

CVE ID :CVE-2026-50212 Published : June 4, 2026, 9:16 a.m. | 1 hour, 16 minutes ago Description :Weak validation logic within device dissociation API routines allows a remote entity to forcefully unbind unrelated user endpoints, causing severe denial of service. Severity: 7.1 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE04 giu 2026
VulnerabilitàAlta
CVE-2026-3820 - Supermicro BMC's SMTP service contains a command injection vulnerability

CVE ID :CVE-2026-3820 Published : June 4, 2026, 9:16 a.m. | 1 hour, 16 minutes ago Description :There is a vulnerability in the Supermicro BMC SMTP service at Supermicro AS-2115HS-TNR. An attacker may obtain administrator privileges and inject specially crafted characters into the SMTP service configuration. This may cause the underlying system to execute unintended commands during process invocation. Potential impact includes denial-of-service attacks, arbitrary code execution, or permanent compromise of the controller. Severity: 7.2 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE04 giu 2026

Pagina 880 di 2549

Resta aggiornato sulla cybersecurity

Iscriviti a CodersRegistry per ricevere gli aggiornamenti più importanti su regolamentazione EU e vulnerabilità critiche.