Cybersecurity & Regolamentazione UE

News & Sicurezza

Aggiornamenti da ENISA, NVD e le principali fonti di cybersecurity europee. Tutto quello che un Responsabile Tecnico deve sapere.

30609 risultati

VulnerabilitàAlta
CVE-2026-50212 - Arbitrary Remote Device Unbinding

CVE ID :CVE-2026-50212 Published : June 4, 2026, 9:16 a.m. | 1 hour, 16 minutes ago Description :Weak validation logic within device dissociation API routines allows a remote entity to forcefully unbind unrelated user endpoints, causing severe denial of service. Severity: 7.1 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE04 giu 2026
VulnerabilitàAlta
CVE-2026-3820 - Supermicro BMC's SMTP service contains a command injection vulnerability

CVE ID :CVE-2026-3820 Published : June 4, 2026, 9:16 a.m. | 1 hour, 16 minutes ago Description :There is a vulnerability in the Supermicro BMC SMTP service at Supermicro AS-2115HS-TNR. An attacker may obtain administrator privileges and inject specially crafted characters into the SMTP service configuration. This may cause the underlying system to execute unintended commands during process invocation. Potential impact includes denial-of-service attacks, arbitrary code execution, or permanent compromise of the controller. Severity: 7.2 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE04 giu 2026
News
Cisco Unified Communications Manager Vulnerability Exposed Along With PoC Exploit Code

Cisco Unified Communications Manager Vulnerability Exposed Along With PoC Exploit Code Cisco has disclosed a critical server-side request forgery (SSRF) vulnerability in its Unified Communications Manager (Unified CM) and Unified CM Session Management Edition (SME). Tracked as CVE-2026- ... Read more Published Date: Jun 04, 2026 (1 day, 22 hours ago) Vulnerabilities has been mentioned in this article. CVE-2026-20230

CVEfeed Newsroom04 giu 2026
News
CISA Warns of Android Framework Integer Overflow Vulnerability Exploited in Attacks

CISA Warns of Android Framework Integer Overflow Vulnerability Exploited in Attacks The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a newly identified Android Framework vulnerability, tracked as CVE-2025-48595, to its Known Exploited Vulnerabilities (KEV) c ... Read more Published Date: Jun 04, 2026 (1 day, 23 hours ago) Vulnerabilities has been mentioned in this article. CVE-2025-48595

CVEfeed Newsroom04 giu 2026
News
Magento-webwinkels aangevallen via kritieke Mirasvit-kwetsbaarheid

Magento-webwinkels aangevallen via kritieke Mirasvit-kwetsbaarheid Op Magento gebaseerde webwinkels worden aangevallen via een kritieke kwetsbaarheid in Mirasvit Full Page Cache Warmer. Via het beveiligingslek kan een ongeauthenticeerde aanvaller willekeurige code op ... Read more Published Date: Jun 04, 2026 (1 day, 23 hours ago) Vulnerabilities has been mentioned in this article. CVE-2026-45247

CVEfeed Newsroom04 giu 2026
News
CISA Adds Exploited Magento RCE Flaw CVE-2026-45247 to KEV Catalog

CISA Adds Exploited Magento RCE Flaw CVE-2026-45247 to KEV Catalog The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Wednesday added a critical flaw impacting Mirasvit Cache Warmer, a popular Magento full-page cache extension, to its Known Exploited ... Read more Published Date: Jun 04, 2026 (1 day, 22 hours ago) Vulnerabilities has been mentioned in this article. CVE-2026-45247 CVE-2026-45659 CVE-2026-0257 CVE-2026-39987 CVE-2024-21182

CVEfeed Newsroom04 giu 2026
VulnerabilitàAlta
CVE-2026-50206 - VPN Command Injection Vulnerability

CVE ID :CVE-2026-50206 Published : June 4, 2026, 7:16 a.m. | 3 hours, 16 minutes ago Description :Incoming VPN network profile settings fail to process special characters safely, enabling command injection via malicious config files. Severity: 8.5 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE04 giu 2026
VulnerabilitàAlta
CVE-2026-50205 - Plaintext Log Credential Leakage

CVE ID :CVE-2026-50205 Published : June 4, 2026, 7:16 a.m. | 3 hours, 16 minutes ago Description :System log files output unencrypted SMTP server authentication passwords alongside sensitive employee corporate identification data. Severity: 8.8 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE04 giu 2026
VulnerabilitàAlta
CVE-2026-49194 - SCREEN_CLICK Authentication Bypass

CVE ID :CVE-2026-49194 Published : June 4, 2026, 7:16 a.m. | 1 hour, 16 minutes ago Description :The debugging routine SCREEN_CLICK(5053) enables a connection to skip the standard device login prompt entirely and directly enter an interactive shell interface. Severity: 9.4 | CRITICAL Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE04 giu 2026
VulnerabilitàAlta
CVE-2026-49191 - Exposed Hard-coded M3WebServer Backend API Key

CVE ID :CVE-2026-49191 Published : June 4, 2026, 7:16 a.m. | 1 hour, 16 minutes ago Description :The production build of the M3WebServer hard-codes its backend API keys, which can be easily intercepted through verbose error handling pages. Severity: 9.3 | CRITICAL Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE04 giu 2026
VulnerabilitàAlta
CVE-2026-49192 - Summary Service Insecure Direct Object Reference

CVE ID :CVE-2026-49192 Published : June 4, 2026, 7:16 a.m. | 1 hour, 16 minutes ago Description :The summary service endpoint suffers from an IDOR vulnerability where it fails to verify user ownership of hardware serial numbers, exposing device data to scraping. Severity: 5.3 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE04 giu 2026
VulnerabilitàAlta
CVE-2026-49204 - Hard-coded AWS Cognito Testing Accounts

CVE ID :CVE-2026-49204 Published : June 4, 2026, 7:16 a.m. | 3 hours, 16 minutes ago Description :Leftover debug modules contain fixed credentials for internal AWS Cognito test sandboxes, risking asset exploitation. Severity: 6.9 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE04 giu 2026

Pagina 883 di 2551

Resta aggiornato sulla cybersecurity

Iscriviti a CodersRegistry per ricevere gli aggiornamenti più importanti su regolamentazione EU e vulnerabilità critiche.