A digitally signed adware tool has deployed payloads running with SYSTEM privileges that disabled antivirus protections on thousands of endpoints, some in the educational, utilities, government, and healthcare sectors. [...]
A vulnerability was found in Mafintosh Protocol-buffers-schema parser up to 3.6.0. It has been classified as critical. This affects an unknown function. The manipulation leads to code injection.
This vulnerability is documented as CVE-2026-5758. The attack can be initiated remotely. There is not any exploit available.
Upgrading the affected component is recommended.
A vulnerability was found in Slah CMS up to 1.5.0 and classified as critical. The impacted element is an unknown function of the file config.php. Executing a manipulation can lead to improper access controls.
This vulnerability is registered as CVE-2026-30994. It is possible to launch the attack remotely. No exploit is available.
A vulnerability has been found in SAC-NFe 2.0.02 and classified as critical. The affected element is an unknown function of the file download.php of the component GET Handler. Performing a manipulation results in path traversal.
This vulnerability is cataloged as CVE-2026-30996. It is possible to initiate the attack remotely. There is no exploit available.
A vulnerability, which was classified as critical, was found in Slah CMS up to 1.5.0. Impacted is the function session of the file config.php. Such manipulation leads to privilege escalation.
This vulnerability is listed as CVE-2026-30993. The attack may be performed from remote. There is no available exploit.
A vulnerability, which was classified as problematic, was found in SAP S4HANA OData Service 4CORE 109. Affected is an unknown function of the component Manage Reference Equipment. Executing a manipulation can lead to missing authorization.
This vulnerability appears as CVE-2026-27677. The attack may be performed from remote. There is no available exploit.
It is advisable to implement a patch to correct this issue.
A vulnerability was found in SAP S4HANA Backend OData Service 4CORE 109 and classified as problematic. Affected by this issue is some unknown functionality of the component Manage Reference Structures. The manipulation results in missing authorization.
This vulnerability is known as CVE-2026-27678. It is possible to launch the attack remotely. No exploit is available.
It is best practice to apply a patch to resolve this issue.
A vulnerability, which was classified as problematic, has been found in SAP S4HANA OData Service 4CORE 109. This impacts an unknown function of the component Manage Technical Object Structures. Performing a manipulation results in missing authorization.
This vulnerability is reported as CVE-2026-27676. The attack is possible to be carried out remotely. No exploit exists.
To fix this issue, it is recommended to deploy a patch.
A vulnerability was found in SAP Landscape Transformation. It has been rated as critical. This impacts an unknown function. The manipulation leads to code injection.
This vulnerability is referenced as CVE-2026-27675. Remote exploitation of the attack is possible. No exploit is available.
Applying a patch is the recommended action to fix this issue.
A vulnerability categorized as problematic has been discovered in Bdtask Isshue Multi Store eCommerce Shopping Cart Solution 4.0. This affects an unknown function of the file /dashboard/Cinvoice/manage_invoice of the component Manage Sale Page. Such manipulation of the argument Title leads to cross site scripting.
This vulnerability is traded as CVE-2024-2133. The attack may be launched remotely. Furthermore, there is an exploit available.
A vulnerability classified as problematic was found in Baizhuo Smart S200 Management Platform. This issue affects some unknown processing of the file /importexport.php. Such manipulation leads to information disclosure.
This vulnerability is referenced as CVE-2024-27718. The attack can only be performed from a local environment. No exploit is available.
A vulnerability labeled as critical has been found in Gallagher Controller 7000. This vulnerability affects unknown code. The manipulation results in missing release of resource.
This vulnerability is known as CVE-2024-22383. Attacking locally is a requirement. No exploit is available.
The affected component should be upgraded.
A vulnerability classified as problematic was found in Cybellum Maintenance Server up to 1.x/2.18/2.27. The impacted element is an unknown function. Executing a manipulation can lead to use of hard-coded cryptographic key
.
The identification of this vulnerability is CVE-2023-42419. The attack can only be executed locally. There is no exploit available.
Upgrading the affected component is advised.
A vulnerability was found in Motorola Phones and classified as problematic. This vulnerability affects unknown code of the component Carrier Services Application. Executing a manipulation can lead to improper export of android application components.
This vulnerability is tracked as CVE-2023-41829. The attack is restricted to local execution. No exploit exists.
It is suggested to upgrade the affected component.
A vulnerability was found in Motorola Phones. It has been classified as problematic. This issue affects some unknown processing of the component OTA Update Application. The manipulation leads to improper export of android application components.
This vulnerability is listed as CVE-2023-41827. The attack must be carried out locally. There is no available exploit.
Upgrading the affected component is recommended.