Aggregator
How to Close the Most Expensive Gap in Your SOC
4 weeks ago
There is a quiet gap inside many SOCs. It sits between the moment Tier 1 says “this should be escalated” and the moment the response team can actually act on it. Too often, the alert moves forward, but the context does not. So, the response team has to rebuild the case, filter out false positives, confirm the behavior, and decide what […]
The post How to Close the Most Expensive Gap in Your SOC appeared first on Cyber Security News.
Balaji N
CVE-2026-44925 | Arctera InfoScale Operations Manager 9.1.3 VIOM Web Application cross-site request forgery
4 weeks ago
A vulnerability was found in Arctera InfoScale Operations Manager 9.1.3. It has been rated as problematic. Affected by this vulnerability is an unknown functionality of the component VIOM Web Application. This manipulation causes cross-site request forgery.
This vulnerability appears as CVE-2026-44925. The attack may be initiated remotely. There is no available exploit.
vuldb.com
CVE-2026-20223 | Cisco Secure Workload up to 4.0.3.13 REST API missing authentication (cisco-sa-csw-pnbsa-g8WEnuy)
4 weeks ago
A vulnerability was found in Cisco Secure Workload. It has been declared as critical. Affected is an unknown function of the component REST API. The manipulation results in missing authentication.
This vulnerability is reported as CVE-2026-20223. The attack can be launched remotely. No exploit exists.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2026-20206 | Cisco ThousandEyes Enterprise Agent up to 5.1.3 BrowserBot os command injection (cisco-sa-tebbot-cmdinj-wN3yQ5gn)
4 weeks ago
A vulnerability was found in Cisco ThousandEyes Enterprise Agent up to 5.1.3. It has been classified as critical. This impacts an unknown function of the component BrowserBot. The manipulation leads to os command injection.
This vulnerability is documented as CVE-2026-20206. The attack can be initiated remotely. There is not any exploit available.
Upgrading the affected component is recommended.
vuldb.com
CVE-2026-20199 | Cisco ThousandEyes Enterprise Agent SSL Certificate injection (cisco-sa-tevacert-rce-RMJVEym5)
4 weeks ago
A vulnerability was found in Cisco ThousandEyes Enterprise Agent and classified as critical. This affects an unknown function of the component SSL Certificate Handler. Executing a manipulation can lead to injection.
This vulnerability is registered as CVE-2026-20199. It is possible to launch the attack remotely. No exploit is available.
It is suggested to upgrade the affected component.
vuldb.com
CVE-2026-20171 | Cisco NX-OS Software up to 10.6(1s) BGP Enforce-First-As Feature control flow (cisco-sa-bgp-iefab-3hb2pwtx)
4 weeks ago
A vulnerability has been found in Cisco NX-OS Software and classified as problematic. The impacted element is an unknown function of the component BGP Enforce-First-As Feature. Performing a manipulation results in incorrect control flow.
This vulnerability is cataloged as CVE-2026-20171. It is possible to initiate the attack remotely. There is no exploit available.
The affected component should be upgraded.
vuldb.com
CVE-2026-5783 | Beyaz CityPLus 24.29375/24.29500.1.0 cross site scripting
4 weeks ago
A vulnerability, which was classified as problematic, was found in Beyaz CityPLus 24.29375/24.29500.1.0. The affected element is an unknown function. Such manipulation leads to cross site scripting.
This vulnerability is listed as CVE-2026-5783. The attack may be performed from remote. There is no available exploit.
You should upgrade the affected component.
vuldb.com
CVE-2026-9084 | MISP up to 2.5.37 OIDC Authentication Plugin improper authentication
4 weeks ago
A vulnerability, which was classified as critical, has been found in MISP up to 2.5.37. Impacted is an unknown function of the component OIDC Authentication Plugin. This manipulation causes improper authentication.
This vulnerability is tracked as CVE-2026-9084. The attack is only possible within the local network. No exploit exists.
It is advisable to upgrade the affected component.
vuldb.com
CVE-2026-39047 | Epson L14150 FL27PB RAW Printing Service buffer overflow
4 weeks ago
A vulnerability classified as critical was found in Epson L14150 FL27PB. This issue affects some unknown processing of the component RAW Printing Service. The manipulation results in buffer overflow.
This vulnerability is identified as CVE-2026-39047. The attack can be executed remotely. There is not any exploit available.
vuldb.com
CVE-2026-4293 | Kieback & Peter DDC520 up to 1.12.14 cross site scripting (icsa-26-139-05)
4 weeks ago
A vulnerability classified as problematic has been found in Kieback & Peter DDC4002, DDC4100, DDC4200, DDC4200-L, DDC4400, DDC4002e, DDC4200e, DDC4400e, DDC4020e, DDC4040e and DDC520 up to 1.12.14. This vulnerability affects unknown code. The manipulation leads to cross site scripting.
This vulnerability is referenced as CVE-2026-4293. Remote exploitation of the attack is possible. No exploit is available.
vuldb.com
CVE-2023-7346 | Ledger Bitcoin app up to 2.1.0/2.1.1 Miniscript Policy calculation
4 weeks ago
A vulnerability described as problematic has been identified in Ledger Bitcoin app up to 2.1.0/2.1.1. This affects an unknown part of the component Miniscript Policy Handler. Executing a manipulation can lead to incorrect calculation.
The identification of this vulnerability is CVE-2023-7346. The physical device can be targeted for the attack. There is no exploit available.
Upgrading the affected component is recommended.
vuldb.com
CVE-2026-8598 | ZKTeco SSC335-GC2063-Face-0b77 Solution Camera prior 5.0.1.2.20260421 authentication bypass
4 weeks ago
A vulnerability marked as critical has been reported in ZKTeco SSC335-GC2063-Face-0b77 Solution Camera. Affected by this issue is some unknown functionality. Performing a manipulation results in authentication bypass using alternate channel.
This vulnerability was named CVE-2026-8598. The attack may be initiated remotely. There is no available exploit.
It is suggested to upgrade the affected component.
vuldb.com
CVE-2026-8487 | Progress MOVEit Automation up to 2025.0.10/2025.1.6 default permission
4 weeks ago
A vulnerability labeled as critical has been found in Progress MOVEit Automation up to 2025.0.10/2025.1.6. Affected by this vulnerability is an unknown functionality. Such manipulation leads to incorrect default permissions.
This vulnerability is uniquely identified as CVE-2026-8487. The attack can be launched remotely. No exploit exists.
The affected component should be upgraded.
vuldb.com
CVE-2025-32750 | Dell PowerFlex Manager prior IC 48.378.00/IC 48.383.00 exposure of information through directory listing (dsa-2025-435)
4 weeks ago
A vulnerability identified as problematic has been detected in Dell PowerFlex Manager. Affected is an unknown function. This manipulation causes exposure of information through directory listing.
This vulnerability is handled as CVE-2025-32750. The attack can be initiated remotely. There is not any exploit available.
You should upgrade the affected component.
vuldb.com
CVE-2026-8488 | Progress MOVEit Automation up to 2025.0.10/2025.1.6 allocation of resources
4 weeks ago
A vulnerability categorized as problematic has been discovered in Progress MOVEit Automation up to 2025.0.10/2025.1.6. This impacts an unknown function. The manipulation results in allocation of resources.
This vulnerability is known as CVE-2026-8488. It is possible to launch the attack remotely. No exploit is available.
It is advisable to upgrade the affected component.
vuldb.com
CVE-2026-8486 | Progress MOVEit Automation up to 2025.0.10/2025.1.6 allocation of resources
4 weeks ago
A vulnerability was found in Progress MOVEit Automation up to 2025.0.10/2025.1.6. It has been rated as problematic. This affects an unknown function. The manipulation leads to allocation of resources.
This vulnerability is traded as CVE-2026-8486. It is possible to initiate the attack remotely. There is no exploit available.
Upgrading the affected component is advised.
vuldb.com
Ukraine probes teen suspect in cyber theft scheme targeting California online shoppers
4 weeks ago
The investigation began after U.S. authorities informed their Ukrainian counterparts that hackers operating from Ukraine could be involved in attacks targeting users of American e-commerce platforms, Ukraine's Prosecutor General said.
50% компаний, 30% систем, ноль обновлений. Как российский крупный бизнес до сих пор сидит на „мертвом“ зарубежном ПО
4 weeks ago
Половина бизнеса держится за почту, которую Microsoft бросил без поддержки. Треть — за бэкапы Veeam.
Discord migrates all users to end-to-end encryption by default
4 weeks ago
The move comes as other major social media platforms are killing end-to-end encryption for messaging. In recent months, Instagram and TikTok both announced they will no longer offer the feature.