Remove 01
article thumbnail

CISA adds CVE-2022-30525 flaw in Zyxel Firewalls to its Known Exploited Vulnerabilities Catalog

Security Affairs

US Critical Infrastructure Security Agency (CISA) adds critical CVE-2022-30525 RCE flaw in Zyxel Firewalls to its Known Exploited Vulnerabilities Catalog. Last week, Zyxel has addressed the critical CVE-2022-30525 (CVSS score: 9.8) Most of the CVE-2022-30525 affected models are in the EU – France (4.5K) and Italy (4.4K).

IT 75
article thumbnail

CISA adds Zimbra email bug to Known Exploited Vulnerabilities Catalog

Security Affairs

The Cybersecurity & Infrastructure Security Agency (CISA) has added a recently disclosed flaw in the Zimbra email suite, tracked as CVE-2022-27924 , to its Known Exploited Vulnerabilities Catalog. Zimbra addressed the issue on May 10, 2022, with the release of versions 8.8.15 Follow me on Twitter: @securityaffairs and Facebook.

Passwords 122
Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Hacktivists hacked Russian TV schedules during Victory Day and displayed anti-war messages?

Security Affairs

Hacktivists yesterday defaced the Russian TV with pro-Ukraine messages and took down the RuTube video streaming site. Hacktivists and white hat hackers continue to support Ukraine against the Russian invasion, in a recent attack, they defaced Russian TV with anti-war messages and took down the RuTube video streaming site.

article thumbnail

CISA adds ZK Java Web Framework bug to Known Exploited Vulnerabilities Catalog

Security Affairs

Cybersecurity and Infrastructure Security Agency (CISA) has added a vulnerability, tracked as CVE-2022-36537 (CVSS score: 7.5), in the ZK Java Web open-source framework to its Known Exploited Vulnerabilities Catalog. The vulnerability affects ZK Framework versions 9.6.1, and 8.6.4.1. and 8.6.4.2. ransomware to all downstream endpoints.

article thumbnail

CISA adds Stuxnet bug to its Known Exploited Vulnerabilities Catalog

Security Affairs

Below is the list of vulnerabilities added to the catalog: CVE-2022-40139 : Trend Micro Apex One and Apex One as a Service – Trend Micro Apex One and Apex One as a Service contain an improper validation of rollback mechanism components that could lead to remote code execution.

IT 98
article thumbnail

May 08 – May 14 Ukraine – Russia the silent cyber conflict

Security Affairs

Hacktivists yesterday defaced the Russian TV with pro-Ukraine messages and took down the RuTube video streaming site. May 01 – May 07 Ukraine – Russia the silent cyber conflict. May 10 – Hacktivists hacked Russian TV schedules during Victory Day and displayed anti-war messages. To nominate, please visit:?

article thumbnail

Russian cybercrime group likely behind ongoing exploitation of PaperCut flaws

Security Affairs

PaperCut has conducted analysis on all customer reports, and the earliest signature of suspicious activity on a customer server potentially linked to this vulnerability is 14th April 01:29 AEST / 13th April 15:29 UTC.” ” The CVE-2023-27350 (CVSS score – 9.8) is a PaperCut MF/NG Improper Access Control Vulnerability.