Anwendungssicherheit

Check Point Patches Exploited SmartConsole Flaw Allowing Full Admin Access ANWENDUNGSSICHERHEIT

Check Point Patches Exploited SmartConsole Flaw Allowing Full Admin Access

Check Point has released security updates to address multiple vulnerabilities impacting Security Management and Multi-Domain Management (MDSM) products, including a...

24. Juli 2026 Keine Kommentare
Russian Espionage Group Exploited Zimbra Zero-Day to Steal Mail and 2FA Codes ANWENDUNGSSICHERHEIT

Russian Espionage Group Exploited Zimbra Zero-Day to Steal Mail and 2FA Codes

A Russian state-supported espionage group spent months reading Western mailboxes through a then-unknown flaw in Zimbra's webmail client. The payload...

24. Juli 2026 Keine Kommentare
🟡 CVE-2026-44192: Medium Schwachstelle ANWENDUNGSSICHERHEIT

🟡 CVE-2026-44192: Medium Schwachstelle

A flaw was found in the Ansible Lightspeed Model Context Protocol (MCP) server. This vulnerability, known as path traversal, allows...

24. Juli 2026 Keine Kommentare
🟠 CVE-2026-11605: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-11605: High Schwachstelle

The issue is a resource exhaustion vulnerability associated with DNSSEC validation. BIND always validates all RRSIG records in an answer,...

24. Juli 2026 Keine Kommentare
🟠 CVE-2026-12987: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-12987: High Schwachstelle

The Events Manager WordPress plugin before 7.3.7 does not safely handle booking-registration data on sites using No-User-Account Booking Mode: a...

24. Juli 2026 Keine Kommentare
🟠 CVE-2026-44191: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-44191: High Schwachstelle

A flaw was found in the Visual Studio Code Ansible Lightspeed extension. This command injection vulnerability (CWE-78) arises from improper...

24. Juli 2026 Keine Kommentare
🟠 CVE-2026-44190: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-44190: High Schwachstelle

A flaw was found in the Ansible Lightspeed Visual Studio Code extension. This Command Injection vulnerability (CWE-78) allows a remote...

24. Juli 2026 Keine Kommentare
🟠 CVE-2026-44189: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-44189: High Schwachstelle

A flaw was found in the Visual Studio Code Ansible Lightspeed extension's AnsiblePlaybookRunProvider. This command injection vulnerability allows an attacker...

24. Juli 2026 Keine Kommentare
🟠 CVE-2026-13185: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-13185: High Schwachstelle

In Progress® Telerik® UI for AJAX prior to v2026.2.708, applications using cookie-based storage in RadPersistenceManager or RadDockLayout deserialize attacker-controlled cookie...

24. Juli 2026 Keine Kommentare
🟠 CVE-2026-65603: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-65603: High Schwachstelle

The Grav Login plugin (grav-plugin-login) versions

24. Juli 2026 Keine Kommentare