Cybersecurity & Regolamentazione UE

News & Sicurezza

Aggiornamenti da ENISA, NVD e le principali fonti di cybersecurity europee. Tutto quello che un Responsabile Tecnico deve sapere.

31864 risultati

News
Cisco meldt exploitcode voor kritiek lek in Unified Communications Manager

Cisco meldt exploitcode voor kritiek lek in Unified Communications Manager Cisco waarschuwt organisaties voor een kritieke kwetsbaarheid in de Cisco Unified Communications Manager en is bekend met publieke proof-of-concept exploitcode voor het probleem. Er zijn updates uitge ... Read more Published Date: Jun 04, 2026 (2 days, 16 hours ago) Vulnerabilities has been mentioned in this article. CVE-2026-20230

CVEfeed Newsroom04 giu 2026
VulnerabilitàAlta
CVE-2026-50211 - Exposed Factory Testing App Boundaries

CVE ID :CVE-2026-50211 Published : June 4, 2026, 9:16 a.m. | 1 hour, 16 minutes ago Description :Leftover engineering diagnostics and factory-level diagnostic software remain exposed on retail builds, giving malicious apps write privileges to internal NVRAM registers. Severity: 8.8 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE04 giu 2026
VulnerabilitàAlta
CVE-2026-50208 - Permissive TrustAllCerts TLS Verification

CVE ID :CVE-2026-50208 Published : June 4, 2026, 9:16 a.m. | 1 hour, 16 minutes ago Description :High-risk TrustAllCerts routines disable standard TLS certificate validation. Combined with hard-coded DES symmetric encryption keys, a Man-in-the-Middle (MITM) actor could decrypt network traffic. Severity: 9.2 | CRITICAL Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE04 giu 2026
VulnerabilitàAlta
CVE-2026-50207 - Local Modem Manipulation via Binder Interfaces

CVE ID :CVE-2026-50207 Published : June 4, 2026, 9:16 a.m. | 1 hour, 16 minutes ago Description :The system Binder boundary accepts unverified pass-through AT commands, giving local applications the power to read baseband files or disable cellular connectivity. Severity: 8.5 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE04 giu 2026
VulnerabilitàAlta
CVE-2026-50209 - MDM Server Registration Overriding

CVE ID :CVE-2026-50209 Published : June 4, 2026, 9:16 a.m. | 1 hour, 16 minutes ago Description :Broadcast events allow malicious software to rewrite the device's default Mobile Device Management (MDM) endpoint address, shifting administrative ownership to an external attacker. Severity: 9.3 | CRITICAL Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE04 giu 2026
VulnerabilitàAlta
CVE-2026-50210 - Weak Static Cryptographic Initialization Vectors

CVE ID :CVE-2026-50210 Published : June 4, 2026, 9:16 a.m. | 1 hour, 16 minutes ago Description :The device encrypts data using AES-CBC with static zero-filled Initialization Vectors (IVs), making it susceptible to replay attacks and known-plaintext decryption. Severity: 6.9 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE04 giu 2026
VulnerabilitàAlta
CVE-2026-50212 - Arbitrary Remote Device Unbinding

CVE ID :CVE-2026-50212 Published : June 4, 2026, 9:16 a.m. | 1 hour, 16 minutes ago Description :Weak validation logic within device dissociation API routines allows a remote entity to forcefully unbind unrelated user endpoints, causing severe denial of service. Severity: 7.1 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE04 giu 2026
VulnerabilitàAlta
CVE-2026-50213 - Bulk User Private Data Harvesting

CVE ID :CVE-2026-50213 Published : June 4, 2026, 9:16 a.m. | 1 hour, 16 minutes ago Description :The account validation endpoint /v1/User/validate returns comprehensive user profile data sheets, which can be crawled by iterating predictable identification strings. Severity: 8.7 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE04 giu 2026
VulnerabilitàAlta
CVE-2026-3820 - Supermicro BMC's SMTP service contains a command injection vulnerability

CVE ID :CVE-2026-3820 Published : June 4, 2026, 9:16 a.m. | 1 hour, 16 minutes ago Description :There is a vulnerability in the Supermicro BMC SMTP service at Supermicro AS-2115HS-TNR. An attacker may obtain administrator privileges and inject specially crafted characters into the SMTP service configuration. This may cause the underlying system to execute unintended commands during process invocation. Potential impact includes denial-of-service attacks, arbitrary code execution, or permanent compromise of the controller. Severity: 7.2 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE04 giu 2026
News
Cisco Unified Communications Manager Vulnerability Exposed Along With PoC Exploit Code

Cisco Unified Communications Manager Vulnerability Exposed Along With PoC Exploit Code Cisco has disclosed a critical server-side request forgery (SSRF) vulnerability in its Unified Communications Manager (Unified CM) and Unified CM Session Management Edition (SME). Tracked as CVE-2026- ... Read more Published Date: Jun 04, 2026 (1 day, 22 hours ago) Vulnerabilities has been mentioned in this article. CVE-2026-20230

CVEfeed Newsroom04 giu 2026
News
CISA Warns of Android Framework Integer Overflow Vulnerability Exploited in Attacks

CISA Warns of Android Framework Integer Overflow Vulnerability Exploited in Attacks The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a newly identified Android Framework vulnerability, tracked as CVE-2025-48595, to its Known Exploited Vulnerabilities (KEV) c ... Read more Published Date: Jun 04, 2026 (1 day, 23 hours ago) Vulnerabilities has been mentioned in this article. CVE-2025-48595

CVEfeed Newsroom04 giu 2026
News
Magento-webwinkels aangevallen via kritieke Mirasvit-kwetsbaarheid

Magento-webwinkels aangevallen via kritieke Mirasvit-kwetsbaarheid Op Magento gebaseerde webwinkels worden aangevallen via een kritieke kwetsbaarheid in Mirasvit Full Page Cache Warmer. Via het beveiligingslek kan een ongeauthenticeerde aanvaller willekeurige code op ... Read more Published Date: Jun 04, 2026 (1 day, 23 hours ago) Vulnerabilities has been mentioned in this article. CVE-2026-45247

CVEfeed Newsroom04 giu 2026

Pagina 987 di 2656

Resta aggiornato sulla cybersecurity

Iscriviti a CodersRegistry per ricevere gli aggiornamenti più importanti su regolamentazione EU e vulnerabilità critiche.