Aggregator
CVE-2009-4733 | Supercrackmunkey SimpleLoginSys 0.5 checkuser.php Username sql injection (EDB-9336 / ADV-2009-2128)
CVE-2009-4734 | Allomani Movies Library 2.7.0 login.php Username sql injection (EDB-9275 / XFDB-52011)
CVE-2009-4735 | Allomani Audio / Video Library 2.7.0 login.php Username sql injection (EDB-9274 / XFDB-52013)
Телефон тормозит и греется? Возможно, ваши личные фото прямо сейчас смотрят тысячи незнакомцев
CVE-2026-7692 | Wavlink WL-WN570HA1 R70HA1 V1410_221110 /cgi-bin/adm.cgi ping_ddns DDNS command injection (EUVD-2026-26831)
CVE-2026-7691 | Wavlink WL-WN570HA1 R70HA1 V1410_221110 /cgi-bin/adm.cgi set_sys_cmd command command injection (EUVD-2026-26830)
CVE-2026-7690 | Wavlink WL-WN570HA1 R70HA1 V1410_221110 /cgi-bin/adm.cgi set_sys_adm Username command injection (EUVD-2026-26829)
Trellix Source Code Breach – Hackers Gain Unauthorized Access to Repository
Cybersecurity giant Trellix has disclosed a significant security incident involving unauthorized access to a portion of its source code repository. The company confirmed the breach in an official statement published on its website, stating it immediately engaged leading forensic experts upon discovering the intrusion. Threat actors gained unauthorized access to part of Trellix’s internal source […]
The post Trellix Source Code Breach – Hackers Gain Unauthorized Access to Repository appeared first on Cyber Security News.
Submit #807807: Wavlink WN570HA1 WL-WN570HA1 221110 Command Injection [Accepted]
Submit #807806: Wavlink WN570HA1 WL-WN570HA1 221110 Command Injection [Accepted]
Submit #807805: Wavlink WN570HA1 WL-WN570HA1 221110 Command Injection [Accepted]
CVE-2026-7689 | Dolibarr ERP CRM up to 23.0.2 Online Signature security.lib.php dol_verifyHash signature verification (EUVD-2026-26827)
CVE-2026-7688 | Dolibarr ERP CRM up to 23.0.2 Shipments API Endpoint expedition.class.php _checkValForAPI fields sql injection (EUVD-2026-26826)
Submit #801794: Dolibarr Dolibarr ERP/CRM 23.0.2 Authentication Bypass Issues [Accepted]
Submit #799337: Dolibarr Dolibarr ERP CRM 23.0.2 and earlier SQL Injection [Accepted]
Hackers Breach Government and Military Servers by Exploiting cPanel Vulnerability
A sophisticated adversarial campaign targeting South-East Asian government and military infrastructure, combining rapid exploitation of a critical cPanel authentication bypass with a custom zero-day exploit chain against an Indonesian defense-sector portal and ultimately pivoting to exfiltrate over 4GB of sensitive Chinese railway documents. The campaign’s initial access vector centered on CVE-2026-41940, a critical CVSS 9.8 […]
The post Hackers Breach Government and Military Servers by Exploiting cPanel Vulnerability appeared first on Cyber Security News.