Aggregator
AL26-004 - Critical vulnerability affecting Cisco Catalyst SD-WAN - CVE-2026-20127
2 months ago
Canadian Centre for Cyber Security
CVE-2018-20029 | NoMachine up to 6.4.5 on Windows 10 DokanFS nxfs.sys memory corruption (ID 371373)
2 months ago
A vulnerability categorized as problematic has been discovered in NoMachine up to 6.4.5 on Windows 10. Affected is an unknown function in the library nxfs.sys of the component DokanFS. Executing a manipulation can lead to memory corruption.
This vulnerability is handled as CVE-2018-20029. It is possible to launch the attack on the local host. There is not any exploit available.
It is advisable to upgrade the affected component.
vuldb.com
CVE-2018-5410 | Dokan up to 1.2.0.1000 Driver dokan1.sys stack-based overflow (EDB-46155 / BID-106274)
2 months ago
A vulnerability was found in Dokan up to 1.2.0.1000. It has been rated as critical. This impacts an unknown function in the library dokan1.sys of the component Driver. Performing a manipulation results in stack-based buffer overflow.
This vulnerability is cataloged as CVE-2018-5410. The attack must be initiated from a local position. Furthermore, there is an exploit available.
vuldb.com
CVE-2022-28773 | SAP Web Dispatcher/Internet Communication Manager memory allocation
2 months ago
A vulnerability identified as problematic has been detected in SAP Web Dispatcher and Internet Communication Manager. Affected is an unknown function. This manipulation causes uncontrolled memory allocation.
This vulnerability is registered as CVE-2022-28773. The attack requires access to the local network. No exploit is available.
It is suggested to install a patch to address this issue.
vuldb.com
CVE-2022-2054 | nuitka up to 0.8 command injection
2 months ago
A vulnerability has been found in nuitka up to 0.8 and classified as critical. Affected by this issue is some unknown functionality. This manipulation causes command injection.
This vulnerability is handled as CVE-2022-2054. It is possible to launch the attack on the local host. There is not any exploit available.
The affected component should be upgraded.
vuldb.com
CVE-2022-31595 | SAP Financial Consolidation 1010 authorization
2 months ago
A vulnerability was found in SAP Financial Consolidation 1010 and classified as critical. This affects an unknown part. Executing a manipulation can lead to incorrect authorization.
This vulnerability is registered as CVE-2022-31595. The attack requires access to the local network. No exploit is available.
It is advisable to implement a patch to correct this issue.
vuldb.com
CVE-2022-2368 | microweber up to 1.2.19 behavioral workflow
2 months ago
A vulnerability, which was classified as problematic, was found in microweber up to 1.2.19. This impacts an unknown function. The manipulation results in enforcement of behavioral workflow.
This vulnerability is known as CVE-2022-2368. It is possible to launch the attack remotely. No exploit is available.
You should upgrade the affected component.
vuldb.com
CVE-2022-28771 | SAP Business one License Service API 10.0 HTTP Request improper authentication
2 months ago
A vulnerability has been found in SAP Business one License Service API 10.0 and classified as critical. This impacts an unknown function of the component HTTP Request Handler. This manipulation causes improper authentication.
This vulnerability appears as CVE-2022-28771. The attacker needs to be present on the local network. There is no available exploit.
Applying a patch is the recommended action to fix this issue.
vuldb.com
CVE-2022-2596 | node-fetch up to 3.2.9 denial of service
2 months ago
A vulnerability, which was classified as problematic, was found in node-fetch up to 3.2.9. The impacted element is an unknown function. The manipulation results in denial of service.
This vulnerability is known as CVE-2022-2596. It is possible to launch the attack remotely. No exploit is available.
You should upgrade the affected component.
vuldb.com
CVE-2022-2598 | vim up to 9.0.0060 undefined behavior for input to api
2 months ago
A vulnerability has been found in vim and classified as problematic. This affects an unknown function. This manipulation causes undefined behavior for input to api.
This vulnerability is handled as CVE-2022-2598. The attack can be initiated remotely. There is not any exploit available.
The affected component should be upgraded.
vuldb.com
CVE-2022-2636 | hestiacp up to 1.6.5 code injection
2 months ago
A vulnerability has been found in hestiacp up to 1.6.5 and classified as critical. Impacted is an unknown function. This manipulation causes code injection.
This vulnerability is registered as CVE-2022-2636. Remote exploitation of the attack is possible. No exploit is available.
The affected component should be upgraded.
vuldb.com
CVE-2022-2732 | OpenEMR up to 7.0.0.0 privileges management
2 months ago
A vulnerability classified as critical has been found in OpenEMR up to 7.0.0.0. The impacted element is an unknown function. The manipulation leads to improper privilege management.
This vulnerability is listed as CVE-2022-2732. The attack may be initiated remotely. There is no available exploit.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-2818 | Cockpit up to 2.2.1 authentication bypass
2 months ago
A vulnerability was found in Cockpit up to 2.2.1 and classified as problematic. Impacted is an unknown function. Such manipulation leads to authentication bypass by primary weakness.
This vulnerability is referenced as CVE-2022-2818. It is possible to launch the attack remotely. No exploit is available.
It is suggested to upgrade the affected component.
vuldb.com
One Identity Appoints Michael Henricks as Chief Financial and Operating Officer
2 months ago
Alisa Viejo, CA, United States, February 25th, 2026, CyberNewswire One Identity, a trusted leader in identity security, today announced the appointment of Michael Henricks as Chief Financial and Operating Officer. This decision reflects the continued growth of the business and a focus on aligning financial leadership with operational objectives as One Identity scales. “As One […]
The post One Identity Appoints Michael Henricks as Chief Financial and Operating Officer appeared first on Cyber Security News.
Cybernewswire
SecWiki News 2026-02-25 Review
2 months ago
今日暂未更新资讯~
更多最新文章,请访问SecWiki
更多最新文章,请访问SecWiki
Man Arrested in São Paulo for Running Fake Cell Tower SMS Scam Operation
2 months ago
Man Arrested in São Paulo for Running Fake Cell Tower SMS Scam Operation
Dark Web Informer
CVE-2026-1721 | Cloudflare Agents up to 0.3.9 server.ts error_description cross site scripting (CNNVD-202602-2314)
2 months ago
A vulnerability classified as problematic was found in Cloudflare Agents up to 0.3.9. This affects an unknown function of the file site/ai-playground/src/server.ts. The manipulation of the argument error_description results in cross site scripting.
This vulnerability is known as CVE-2026-1721. It is possible to launch the attack remotely. No exploit is available.
Upgrading the affected component is advised.
vuldb.com
Marquis sues SonicWall over backup breach that led to ransomware attack
2 months ago
Marquis Software Solutions has filed a lawsuit against SonicWall, accusing the cybersecurity company of gross negligence and misrepresentation that allegedly led to a ransomware attack disrupting operations at 74 U.S. banks. [...]
Bill Toulas
Хакеры против семьи президента. Криптопроект Трампа чуть не пустили ко дну
2 months ago
Доллар Трампа оказался не совсем долларом…по крайней мере на несколько минут.