News & Sicurezza
Aggiornamenti da ENISA, NVD e le principali fonti di cybersecurity europee. Tutto quello che un Responsabile Tecnico deve sapere.
31864 risultati
Cisco meldt exploitcode voor kritiek lek in Unified Communications Manager Cisco waarschuwt organisaties voor een kritieke kwetsbaarheid in de Cisco Unified Communications Manager en is bekend met publieke proof-of-concept exploitcode voor het probleem. Er zijn updates uitge ... Read more Published Date: Jun 04, 2026 (2 days, 16 hours ago) Vulnerabilities has been mentioned in this article. CVE-2026-20230
CVE ID :CVE-2026-50211 Published : June 4, 2026, 9:16 a.m. | 1 hour, 16 minutes ago Description :Leftover engineering diagnostics and factory-level diagnostic software remain exposed on retail builds, giving malicious apps write privileges to internal NVRAM registers. Severity: 8.8 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE ID :CVE-2026-50208 Published : June 4, 2026, 9:16 a.m. | 1 hour, 16 minutes ago Description :High-risk TrustAllCerts routines disable standard TLS certificate validation. Combined with hard-coded DES symmetric encryption keys, a Man-in-the-Middle (MITM) actor could decrypt network traffic. Severity: 9.2 | CRITICAL Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE ID :CVE-2026-50207 Published : June 4, 2026, 9:16 a.m. | 1 hour, 16 minutes ago Description :The system Binder boundary accepts unverified pass-through AT commands, giving local applications the power to read baseband files or disable cellular connectivity. Severity: 8.5 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE ID :CVE-2026-50209 Published : June 4, 2026, 9:16 a.m. | 1 hour, 16 minutes ago Description :Broadcast events allow malicious software to rewrite the device's default Mobile Device Management (MDM) endpoint address, shifting administrative ownership to an external attacker. Severity: 9.3 | CRITICAL Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE ID :CVE-2026-50210 Published : June 4, 2026, 9:16 a.m. | 1 hour, 16 minutes ago Description :The device encrypts data using AES-CBC with static zero-filled Initialization Vectors (IVs), making it susceptible to replay attacks and known-plaintext decryption. Severity: 6.9 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE ID :CVE-2026-50212 Published : June 4, 2026, 9:16 a.m. | 1 hour, 16 minutes ago Description :Weak validation logic within device dissociation API routines allows a remote entity to forcefully unbind unrelated user endpoints, causing severe denial of service. Severity: 7.1 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE ID :CVE-2026-50213 Published : June 4, 2026, 9:16 a.m. | 1 hour, 16 minutes ago Description :The account validation endpoint /v1/User/validate returns comprehensive user profile data sheets, which can be crawled by iterating predictable identification strings. Severity: 8.7 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE ID :CVE-2026-3820 Published : June 4, 2026, 9:16 a.m. | 1 hour, 16 minutes ago Description :There is a vulnerability in the Supermicro BMC SMTP service at Supermicro AS-2115HS-TNR. An attacker may obtain administrator privileges and inject specially crafted characters into the SMTP service configuration. This may cause the underlying system to execute unintended commands during process invocation. Potential impact includes denial-of-service attacks, arbitrary code execution, or permanent compromise of the controller. Severity: 7.2 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Cisco Unified Communications Manager Vulnerability Exposed Along With PoC Exploit Code Cisco has disclosed a critical server-side request forgery (SSRF) vulnerability in its Unified Communications Manager (Unified CM) and Unified CM Session Management Edition (SME). Tracked as CVE-2026- ... Read more Published Date: Jun 04, 2026 (1 day, 22 hours ago) Vulnerabilities has been mentioned in this article. CVE-2026-20230
CISA Warns of Android Framework Integer Overflow Vulnerability Exploited in Attacks The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a newly identified Android Framework vulnerability, tracked as CVE-2025-48595, to its Known Exploited Vulnerabilities (KEV) c ... Read more Published Date: Jun 04, 2026 (1 day, 23 hours ago) Vulnerabilities has been mentioned in this article. CVE-2025-48595
Magento-webwinkels aangevallen via kritieke Mirasvit-kwetsbaarheid Op Magento gebaseerde webwinkels worden aangevallen via een kritieke kwetsbaarheid in Mirasvit Full Page Cache Warmer. Via het beveiligingslek kan een ongeauthenticeerde aanvaller willekeurige code op ... Read more Published Date: Jun 04, 2026 (1 day, 23 hours ago) Vulnerabilities has been mentioned in this article. CVE-2026-45247
Pagina 987 di 2656