Tag

#RCE

28 published stories tagged with RCE.

criticalExploited VulnerabilitiesAug 13, 20263 min read

Attackers exploit VMware vCenter Syslog directory traversal flaw for remote code execution

Attackers are actively exploiting a critical directory traversal vulnerability in the VMware vCenter Syslog server to gain remote code execution.

highExploited VulnerabilitiesAug 11, 20263 min read

Attackers can execute remote code via Zoom annotation tool without user interaction

馃毃 High severity. A zero-click remote code execution flaw in Zoom's annotator function allows attackers to take over a participant's machine without any user interaction.

criticalExploited VulnerabilitiesAug 3, 20263 min read

Unauthenticated attackers can execute arbitrary code through malicious image uploads in Rails Active Storage

A critical flaw in Rails Active Storage allows unauthenticated attackers to read sensitive files and execute arbitrary code via crafted image uploads.

criticalExploited VulnerabilitiesJul 25, 20262 min read

Attackers can achieve remote code execution in Fastjson 1.x via Spring Boot fat-jars

A critical remote code execution vulnerability in Alibaba's Fastjson 1.x series allows attackers to execute code under default configurations.

highExploited VulnerabilitiesJul 21, 20262 min read

Cl0p group steals sensitive employee data from Est茅e Lauder via Oracle zero-day exploit

The Cl0p cybercrime group exploited a zero-day vulnerability in Oracle E-Business Suite to exfiltrate massive amounts of sensitive employee data from Est茅e Lauder.

criticalExploited VulnerabilitiesJul 21, 20262 min read

Exploitation of SharePoint deserialization flaw enables remote code execution and machine key theft

Attackers are exploiting a critical deserialization flaw in on-premise Microsoft SharePoint deployments to execute code and steal machine keys.

criticalExploited VulnerabilitiesJul 16, 20262 min read

Attackers exploit unauthenticated remote code execution vulnerabilities in Microsoft SharePoint environments

馃毃 Critical remote code execution is being actively exploited in Microsoft SharePoint environments.

highExploited VulnerabilitiesJul 16, 20262 min read

Authenticated Site Owners exploit SharePoint deserialization flaw to execute remote code

Attackers are actively exploiting a critical remote code execution flaw in Microsoft SharePoint.

criticalData BreachesJul 7, 20263 min read

Unauthenticated remote code execution flaws in Joomla and Langflow added to CISA KEV catalog

CISA has added three critical vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog following evidence of active exploitation.

highExploited VulnerabilitiesJul 2, 20262 min read

Attackers exploit Microsoft SharePoint deserialization flaw to achieve remote code execution

Attackers are actively exploiting a high-severity deserialization flaw in Microsoft SharePoint to execute code remotely.

highApplication SecurityMay 8, 20264 min read

Brief: electerm Arbitrary Local Code Execution Fixed in Version 3.8.15

electerm versions 3.0.6 through before 3.8.15 are vulnerable to arbitrary local code execution through deep links, CLI options, or crafted shortcuts.

highApplication SecurityMay 8, 20264 min read

Defender Guidance: electerm Arbitrary Local Code Execution Fixed in Version 3.8.15

electerm versions 3.0.6 through before 3.8.15 are vulnerable to arbitrary local code execution through deep links, CLI options, or crafted shortcuts.

highApplication SecurityMay 8, 20264 min read

Detection Notes: electerm Arbitrary Local Code Execution Fixed in Version 3.8.15

electerm versions 3.0.6 through before 3.8.15 are vulnerable to arbitrary local code execution through deep links, CLI options, or crafted shortcuts.

highApplication SecurityMay 8, 20264 min read

Risk Brief: electerm Arbitrary Local Code Execution Fixed in Version 3.8.15

electerm versions 3.0.6 through before 3.8.15 are vulnerable to arbitrary local code execution through deep links, CLI options, or crafted shortcuts.

criticalZero-DayMay 8, 20264 min read

Brief: Ivanti EPMM Remote Code Execution Added to CISA KEV After Exploitation

Ivanti EPMM contains an improper input validation vulnerability that allows a remotely authenticated administrative user to achieve remote code execution. NVD confirms the CVE is in CISA KEV.

criticalZero-DayMay 8, 20264 min read

Defender Guidance: Ivanti EPMM Remote Code Execution Added to CISA KEV After Exploitation

Ivanti EPMM contains an improper input validation vulnerability that allows a remotely authenticated administrative user to achieve remote code execution. NVD confirms the CVE is in CISA KEV.

criticalZero-DayMay 8, 20264 min read

Detection Notes: Ivanti EPMM Remote Code Execution Added to CISA KEV After Exploitation

Ivanti EPMM contains an improper input validation vulnerability that allows a remotely authenticated administrative user to achieve remote code execution. NVD confirms the CVE is in CISA KEV.

criticalZero-DayMay 8, 20264 min read

Risk Brief: Ivanti EPMM Remote Code Execution Added to CISA KEV After Exploitation

Ivanti EPMM contains an improper input validation vulnerability that allows a remotely authenticated administrative user to achieve remote code execution. NVD confirms the CVE is in CISA KEV.

criticalExploitMay 8, 20264 min read

Brief: F5 BIG-IP vulnerability reclassified as RCE under exploitation

Dark Reading reported that a BIG-IP vulnerability was reclassified as remote code execution and observed under exploitation. The public listing does not provide enough detail here

criticalExploitMay 8, 20264 min read

Defender Guidance: F5 BIG-IP vulnerability reclassified as RCE under exploitation

Dark Reading reported that a BIG-IP vulnerability was reclassified as remote code execution and observed under exploitation. The public listing does not provide enough detail here

criticalExploitMay 8, 20264 min read

Detection Notes: F5 BIG-IP vulnerability reclassified as RCE under exploitation

Dark Reading reported that a BIG-IP vulnerability was reclassified as remote code execution and observed under exploitation. The public listing does not provide enough detail here

criticalExploitMay 8, 20264 min read

Risk Brief: F5 BIG-IP vulnerability reclassified as RCE under exploitation

Dark Reading reported that a BIG-IP vulnerability was reclassified as remote code execution and observed under exploitation. The public listing does not provide enough detail here

criticalApplication SecurityMay 8, 20264 min read

Brief: Google fixes critical RCE in AI Antigravity

Dark Reading reported that Google fixed a critical remote code execution issue in AI Antigravity. Organizations using the affected tooling should follow Google or project release n

criticalApplication SecurityMay 8, 20264 min read

Defender Guidance: Google fixes critical RCE in AI Antigravity

Dark Reading reported that Google fixed a critical remote code execution issue in AI Antigravity. Organizations using the affected tooling should follow Google or project release n

criticalApplication SecurityMay 8, 20264 min read

Detection Notes: Google fixes critical RCE in AI Antigravity

Dark Reading reported that Google fixed a critical remote code execution issue in AI Antigravity. Organizations using the affected tooling should follow Google or project release n

criticalApplication SecurityMay 8, 20264 min read

Risk Brief: Google fixes critical RCE in AI Antigravity

Dark Reading reported that Google fixed a critical remote code execution issue in AI Antigravity. Organizations using the affected tooling should follow Google or project release n

highApplication SecurityMay 8, 20264 min read

electerm Arbitrary Local Code Execution Fixed in Version 3.8.15

electerm versions 3.0.6 through before 3.8.15 are vulnerable to arbitrary local code execution through deep links, CLI options, or crafted shortcuts.

criticalZero-DayMay 8, 20264 min read

Ivanti EPMM Remote Code Execution Added to CISA KEV After Exploitation

Ivanti EPMM contains an improper input validation vulnerability that allows a remotely authenticated administrative user to achieve remote code execution. NVD confirms the CVE is in CISA KEV.