Anwendungssicherheit

🟠 CVE-2025-15654: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2025-15654: High Schwachstelle

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Fox-themes Prague allows Reflected XSS. This issue affects...

05. Juni 2026 Keine Kommentare
🟠 CVE-2026-36609: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-36609: High Schwachstelle

Mercusys AC12G (EU) V1 router with firmware AC12G(EU)_V1_200909 uses a static authentication nonce that does not change between requests from...

05. Juni 2026 Keine Kommentare
🟠 CVE-2025-15655: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2025-15655: High Schwachstelle

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Mojoomla School Management allows SQL Injection....

05. Juni 2026 Keine Kommentare
🟠 CVE-2025-14773: High Luecke in Abb T-Mac_Plus ANWENDUNGSSICHERHEIT

🟠 CVE-2025-14773: High Luecke in Abb T-Mac_Plus

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in ABB T-MAC Plus. This issue affects T-MAC Plus:...

05. Juni 2026 Keine Kommentare
🟠 CVE-2026-20230: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-20230: High Schwachstelle

A vulnerability in Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communications Manager Session Management Edition (Unified CM SME)...

05. Juni 2026 Keine Kommentare
🟠 CVE-2026-36607: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-36607: High Schwachstelle

Mercusys AC12G (EU) V1 router with firmware AC12G(EU)_V1_200909 allows unauthenticated brute-force attacks via the TDDP password change endpoint (code=10), which...

05. Juni 2026 Keine Kommentare
🔴 CVE-2026-36748: Critical Schwachstelle ANWENDUNGSSICHERHEIT

🔴 CVE-2026-36748: Critical Schwachstelle

RockRMS v16.13 and before v.17.7.0 is vulnerable to Cross Site Scripting (XSS) via Social Media links in user profile.

05. Juni 2026 Keine Kommentare
🔴 CVE-2026-36576: Critical Schwachstelle ANWENDUNGSSICHERHEIT

🔴 CVE-2026-36576: Critical Schwachstelle

An OS command injection vulnerability in the app.py component of openlabs docker-wkhtmltopdf-aas up to commit 9f50579 allows attackers to execute...

05. Juni 2026 Keine Kommentare
Autonomous AI Tool Finds 2-Year-Old RCE Flaw in Redis (CVE-2026-23479) ANWENDUNGSSICHERHEIT

Autonomous AI Tool Finds 2-Year-Old RCE Flaw in Redis (CVE-2026-23479)

Redis has patched a use-after-free in its blocking-client code that lets an authenticated user run arbitrary OS commands on the...

04. Juni 2026 Keine Kommentare
Beyond the Zero-Day: See Your Network Like an Attacker | Webinar with HD Moore ANWENDUNGSSICHERHEIT

Beyond the Zero-Day: See Your Network Like an Attacker | Webinar with HD Moore

Assume the breach. Zero-days keep shipping, AI is writing exploits faster than anyone patches, and "patch everything in time" stopped...

04. Juni 2026 Keine Kommentare