Endpunktsicherheit

🔴 CVE-2026-35906: Critical Schwachstelle ENDPUNKTSICHERHEIT

🔴 CVE-2026-35906: Critical Schwachstelle

An undocumented debug CGI endpoint in T3 Technology CPE models T625Pro v1.0.07, T6825G v1.0.03 allows unauthenticated attackers to execute arbitrary...

06. Juni 2026 Keine Kommentare
🔴 CVE-2026-8037: Critical Schwachstelle ANWENDUNGSSICHERHEIT

🔴 CVE-2026-8037: Critical Schwachstelle

OS Command Injection Remote Code Execution Vulnerability in API in Progress ADC Products allows an un-authenticated attacker to execute arbitrary...

06. Juni 2026 Keine Kommentare
🔴 CVE-2019-25738: Critical Schwachstelle ENDPUNKTSICHERHEIT

🔴 CVE-2019-25738: Critical Schwachstelle

WordPress Hybrid Composer 1.4.6 contains an unauthenticated settings change vulnerability that allows unauthenticated attackers to modify WordPress options by exploiting...

06. Juni 2026 Keine Kommentare
🔴 CVE-2019-25727: Critical Schwachstelle ANWENDUNGSSICHERHEIT

🔴 CVE-2019-25727: Critical Schwachstelle

WordPress Plugin ad manager wd 1.0.11 contains an arbitrary file download vulnerability that allows unauthenticated attackers to download sensitive files...

06. Juni 2026 Keine Kommentare
China-Linked TA4922 Expands Phishing Attacks to U.K., Germany, Italy, and South Africa ENDPUNKTSICHERHEIT

China-Linked TA4922 Expands Phishing Attacks to U.K., Germany, Italy, and South Africa

A new China-linked cybercrime group known as TA4922 has expanded its targeting focus to target European organizations in the U.K.,...

05. Juni 2026 Keine Kommentare
FIFA World Cup 2026 Scams Are Already Live: Fake Sites, Banking Malware, and Stolen Logins ENDPUNKTSICHERHEIT

FIFA World Cup 2026 Scams Are Already Live: Fake Sites, Banking Malware, and Stolen Logins

Security researchers and the FBI are warning that a wave of FIFA-themed fraud is already hitting World Cup 2026 fans,...

05. Juni 2026 Keine Kommentare
🟠 CVE-2026-4035: High Luecke in Lfprojects Mlflow CLOUD-SICHERHEIT

🟠 CVE-2026-4035: High Luecke in Lfprojects Mlflow

A vulnerability in mlflow/mlflow versions prior to 3.11.0 allows for the resolution of environment variables in AI Gateway secrets, which...

05. Juni 2026 Keine Kommentare
🟠 CVE-2026-40290: High Luecke in Linaro Op-Tee ENDPUNKTSICHERHEIT

🟠 CVE-2026-40290: High Luecke in Linaro Op-Tee

OP-TEE is a Trusted Execution Environment (TEE) designed as companion to a non-secure Linux kernel running on Arm; Cortex-A cores...

05. Juni 2026 Keine Kommentare
🟠 CVE-2026-36607: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-36607: High Schwachstelle

Mercusys AC12G (EU) V1 router with firmware AC12G(EU)_V1_200909 allows unauthenticated brute-force attacks via the TDDP password change endpoint (code=10), which...

05. Juni 2026 Keine Kommentare
Microsoft 365 Android Apps Let Any App Steal Account Tokens via Leftover Debug Flag ENDPUNKTSICHERHEIT

Microsoft 365 Android Apps Let Any App Steal Account Tokens via Leftover Debug Flag

A development flag left switched on in production builds of several Microsoft 365 Android apps disabled the check that limits...

04. Juni 2026 Keine Kommentare